Назад
Company hidden
обновлено 2 дня назад

Information Security Specialist Lead

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
CR
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Information Security Specialist Lead (Cybersecurity): Lead the identification, documentation, and formalization of security risk and controls framework across the Enterprise to meet cybersecurity and risk requirements. Focus on designing and operating best practice cyber risk management, collaborating with Security and IT teams, and ensuring alignment with industry standards.

Location: Hybrid, based in Heredia, Costa Rica

Company

hirify.global is a global data and technology company providing data, analytics, and software solutions across multiple industries including financial services and healthcare.

What you will do

  • Lead the security risk and controls team engaging with business units and control owners to maintain the controls library.
  • Maintain and update the integrated risk and controls framework based on policies and best practices.
  • Review control activities for alignment with standards and identify gaps with remediation recommendations.
  • Compile management reports and present content for controls implementation workshops.
  • Ensure security controls are mapped to risks in the Archer GRC platform.
  • Monitor internal and external risk indicators and contribute to program efficiency and stakeholder engagement.

Requirements

  • Location: Must be based in or near Heredia, Costa Rica with hybrid work format.
  • 5+ years experience in IT audit and information security control assessments.
  • Experience with GRC tools such as Archer and knowledge of security frameworks (ISO 27001/2, NIST CSF, PCI DSS, HIPAA).
  • Knowledge of risk management frameworks (Open FAIR, NIST 800-37/39) and cybersecurity governance.
  • Proficient in security control design, implementation, evaluation, and impact/risk assessment.
  • Bachelor's degree or equivalent experience; relevant certifications (CISA, CISM, CRISC, CISSP, ISO 27001 Lead Auditor) required.

Nice to have

  • Working knowledge of AWS cloud environment.
  • Experience guiding teams using AI and ML technologies.

Culture & Benefits

  • Medical, life, and dental insurance; international share save plan.
  • Flexible work arrangements including work from home.
  • Paid time off, birthday day off, family bonding, bereavement leave.
  • Annual performance bonus and education reimbursement.
  • Inclusive culture focused on DEI, work/life balance, development, and wellness.
  • Award-winning workplace recognized globally for culture and employee experience.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →