Security Grc Analyst Iii Buenos Aires, Argentina

Onapsis Inc.

  • Buenos Aires
  • Permanente
  • Tiempo completo
  • Hace 2 días
Managing our Third Party (providers) and Customer Assessment processes and tool, maintaining our ISMS and supporting our security Audits like ISO 27001, SOC 2, TISAX Lv3, and the Risk Management process, where you'll be interacting with externals, our leads and Company teams as Engineering, Legal, Product management, HR, Finance, Sales, IT, and InfoSec.
You will be the GRC liaison and monitor the compliance of our providers, our policies.
You will be creating InfoSec training and awareness materials.
Key activities and responsibilities: Develop and maintain a formal set of Information Security policies, procedures, and standards according to the ISO/IEC 27001:2013 Conduct and complete an annual review of the company's information security policies, procedures, and standards Oversee and/or assist in performing ongoing assessments testing the company's security procedures, mechanisms, and controls Serve as a liaison for the implementation of security controls derived from policies, standards, and procedures.
Perform and manage the Vendor Security Assessment process before contracting services or applications with third parties.
Perform periodic Risk Assessment reviews and coordinate the remediation plan of risks with the corresponding Data Owners.
Support the coordination of the security audits such as ISO 27001, SOC 1 and SOC 2 audits, including preparing meetings, communicating with auditors and internal stakeholders, and reviewing controls and evidence accuracy.
Assist in the evaluation and settings of physical security for company sites Oversee the development of a Disaster Recovery Plan Develop a set of Performance Indicators to evaluate the effectiveness of security standards and controls Create training materials and ensure compliance through adequate training/awareness programs and periodic security audits.
These audits should be both internal and external in nature Provide development guidance and assistance in the identification, implementation, and maintenance of organization information privacy policies and procedures in coordination with the Data Privacy team Manage the Customer Security Assessments by collaborating with Sales, Customer Success and Legal departments to review agreements with customers, answering questionnaires or sharing compliance documentation, in order to ensure compliance with customers requirements.
Required Education / Aptitudes / Qualifications: At least 3 years in a similar role.
ISO/IEC ISO 27001, CISSP, CISA, or other security certifications desired.
Jira usage knowledge Spoken and written English level.
Practical experience on audit and risk assessment.
Knowledge of Information Security and Privacy related laws and regulations in the US and EU.
Knowledge of other information security standards apart from ISO/IEC 27001:2013 and SOC 1 and SOC 2 audits (e.g., NIST 800-53, CIS Critical Security Controls, etc.), rules and regulations related to information security and data privacy (e.g., GDPR, FERPA, CCPA, etc.) and related security principles for risk identification and analysis.
What we offer: A role in shaping the future of protecting the most critical applications that run the world's business and a career that grows as the company grows.
A unique culture of high achievement and teamwork.
Supportive and humble colleagues are the space's top problem solvers and innovators.
Financial security through competitive compensation and incentives.
Employment: Onapsis hires full-time employees in Argentina.
We do not engage with SRLs or B2B contractors.
About Onapsis: Onapsis protects the business applications that run the global economy.
The Onapsis Platform delivers vulnerability management, change assurance, and continuous compliance for business applications from leading vendors such as SAP, Oracle, and others.
The Onapsis Platform is powered by the Onapsis Research Labs, the team responsible for the discovery and mitigation of more than 1,000 zero-day vulnerabilities in business applications.
Onapsis is headquartered in Boston, MA, with offices in Heidelberg, Germany and Buenos Aires, Argentina, and proudly serves hundreds of the world's leading brands, including close to 30% of the Forbes Global 100, six of the top 10 automotive companies, five of the top 10 chemical companies, four of the top 10 technology companies, and three of the top 10 oil and gas companies.
Interested in building your career at Onapsis?
Get future opportunities sent straight to your email.
Apply for this job * indicates a required field First Name * Last Name * Email * Phone * Location (City) * Resume/CV * Enter manually Accepted file types: pdf, doc, docx, txt, rtf Education School * Select...
Degree * Select...
Select...
Select...
Start date year End date month Select...
End date year Are you legally authorized to work in Argentina?
  • Select...
Will you now or will you in the future require work visa sponsorship for employment in Argentina?
  • Select...
What are your gross annual salary expectations in USD * LinkedIn Profile * Onapsis, Inc. ("Onapsis", "We" or "us"), respects your privacy and is committed to protecting it through our compliance with our Privacy Policy, a copy of which can be found at (the "Policy") .
This Policy is designed to describe to you the basis for the processing of the personal data we collect from you, or that is provided by you as part of our recruitment process.Onapsis engages with Greenhouse, a web-based hiring platform, as Sub-processor to assist in our recruiting process.
As part of that process, Greenhouse will be collecting and processing the personal data you have shared.
See Greenhouse's Privacy Policy.When you apply for a job posted by Onapsis and you provide us with your personal data, we and our Sub-processor will use that for the purposes of determining whether or not you're a good fit for current and future roles at Onapsis.Onapsis and our Sub-processor will keep your personal data for up to 12 months or for as long as required pursuant to applicable legal and/or regulatory requirements.
If it turns out we'd like to keep it around longer, we'll reach out to you to extend the consent.
Select... #J-18808-Ljbffr

Buscojobs

Empleos similares

  • (FZH139) Network Security Analyst

    • Buenos Aires
    Descripción del empleo: En Ecosistemas nos encontramos en la búsqueda de un Network Security Analyst Sr, para sumarse a nuestro equipo de trabajo: Zona de Trabajo: Recoleta Moda…
    • Hace 14 horas
  • Network Security Analyst

    • Buenos Aires
    Descripción del empleo: En Ecosistemas nos encontramos en la búsqueda de un Network Security Analyst Sr, para sumarse a nuestro equipo de trabajo: Zona de Trabajo: Recoleta Moda…
    • Hace 14 horas
  • Network Security Analyst

    • Buenos Aires
    Descripción del empleo: En Ecosistemas nos encontramos en la búsqueda de un Network Security Analyst Sr, para sumarse a nuestro equipo de trabajo: Zona de Trabajo: Recoleta Mod…
    • Hace 1 día