Cyber GRC

Posted Aug 21

This is a fully remote position, open to applicants in Europe.

📋 Description

• Design, implement, and maintain the Governance, Risk & Compliance (GRC) program in cybersecurity.

• Develop and update information security policies, standards, and procedures.

• Identify, assess, and monitor security risks in processes, systems, and suppliers, keeping the risk register up to date.

• Coordinate internal and external audits.

• Manage compliance with frameworks such as ISO 27001, PCI-DSS, SOC 2, and NIST.

• Conduct risk assessments for third parties and critical vendors (vendor risk management).

• Follow up on security findings and coordinate their resolution with the relevant technical areas.

• Monitor regulatory changes in the countries where Retorna operates and update policies and controls accordingly.

• Design and execute security awareness programs for employees.

• Collaborate with Engineering, Legal, and Operations to ensure the effective implementation of controls.


⛳️ Requirements

• Bachelor's degree in Systems Engineering, Computer Science, Cybersecurity, or related fields.

• At least 3 years of experience in GRC roles, compliance, or cybersecurity risk management.

• Previous experience in fintech, banking, or other regulated companies is valued.

• Knowledge of frameworks such as ISO 27001, PCI-DSS, SOC 2, or NIST CSF.

• Experience in developing information security policies and procedures.

• Experience conducting risk assessments for third parties.

• Familiarity with data protection and security regulations applicable to the financial sector in LatAm.

• Desirable: proficiency in GRC tools (Vanta, Drata, OneTrust, or similar).

• Valued: familiarity with technical cybersecurity concepts (pentesting, vulnerability management, cloud architecture).

• Strong written and verbal communication skills, with the ability to influence without direct authority.

• Ability to work autonomously 100% remotely and coordinate with multiple areas of the company.


🏝️ Benefits

• 100% remote work.

• Local holidays.

• Unlimited days off.

• People-first culture, focusing on results and flexibility.

People also viewed

Voyager Technologies1 day ago

Director of Global Trade Compliance

US flagUnited States OnlyFull-timeCompliance$200k – $230k/year
ApplyView job
Laboratorios Médicos Colonia del Valle - Olab2 days ago

Associate Regulatory Specialist, Drinking Water

US flagNew York OnlyFull-timeCompliance$57.8k – $86.8k/year
ApplyView job
Insight IT2 days ago

Senior Consultant, Regulatory Audit and Internal Controls

BR flagBrazil OnlyFreelanceCompliance
ApplyView job
White Hat Gaming2 days ago

Compliance Analyst

ZA flagSouth Africa OnlyFull-timeCompliance
ApplyView job
TRM Labs2 days ago

Senior Manager, Contracts & Compliance

US flagUnited States OnlyFull-timeCompliance
ApplyView job
Workstreet2 days ago

Senior GRC Engineer, Bilingual Spanish-English

PA flagPanama OnlyFull-timeCompliance
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers