Information Security Analyst – ISO 27001

Posted 22 hours ago

This is a fully remote position, open to applicants in Brazil.

📋 Description

• Act as the main liaison with the consultancy managing the ISO/IEC 27001 certification initiative;

• Assist in the implementation, ongoing enhancement, and upkeep of the Information Security Management System (ISMS);

• Analyze and apply the requirements set forth by ISO/IEC 27001;

• Oversee and assess gap analyses, action plans, risks, and controls;

• Aid in the creation and evaluation of Information Security policies, standards, and procedures;

• Organize documentation and evidence necessary for audits;

• Supervise internal and external audits, nonconformities, and remediation strategies;

• Foster cooperation among Information Security, IT, Legal, Compliance, Human Resources, and other divisions;

• Monitor metrics, deadlines, risks, and advancement throughout the certification journey.


⛳️ Requirements

• Bachelor’s degree in Technology, Information Security, Information Systems, Computer Science, Engineering, Business Administration, or a similar field;

• Professional experience in Information Security, Governance, Risk, and Compliance (GRC);

• Demonstrated practical experience with ISO/IEC 27001, especially in implementation, compliance, certification, maintenance, or recertification;

• Understanding of ISMS and Information Security controls;

• Experience in risk management, gap assessments, and action planning;

• Proficient in preparing audit evidence and facilitating audits;

• Strong organizational abilities to handle multiple tasks, deadlines, and stakeholders;

• Certification as an ISO/IEC 27001 Lead Implementer, Lead Auditor, or Internal Auditor;

• Familiarity with ISO/IEC 27005, NIST, CIS Controls, or COBIT;

• Understanding of Brazil’s LGPD and data privacy regulations;

• Experience with GRC tools;

• Background in companies that have undergone ISO/IEC 27001 certification processes.


🏝️ Benefits

• Employment under Brazil’s CLT labor framework;

• Fully remote working environment;

• Flexible working hours with an emphasis on deliverables;

• Food and meal allowances (VA and VR);

• Health insurance;

• Access to Digital Hospital services;

• Dental insurance;

• Wellhub support;

• Partnership with Sesc;

• Life insurance;

• Funeral assistance.

People also viewed

SoftExpert - Software for Excellence22 hours ago

Junior GRC Analyst – Information Security

BR flagBrazil OnlyFull-timeSecurity Analyst
ApplyView job
SGA TI em Nuvem1 day ago

Information Security Analyst, Mid-Level – DevSecOps

BR flagBrazil OnlyFull-timeSecurity Analyst
ApplyView job
AeroVironment1 day ago

Cybersecurity Analyst

US flagAlabama, +6 more statesFull-timeSecurity Analyst$31 – $48/hour
ApplyView job
Valon1 day ago

Senior Security Analyst

US flagCalifornia, +1 more stateFull-timeSecurity Analyst$115k – $145k/year
ApplyView job
Base-IT GmbH1 day ago

Consultant – Global Security Analyst

AT flagAustria OnlyFull-timeSecurity Analyst€52k/year
ApplyView job
Rimini Street4 days ago

Legal Analyst, Security

US flagUnited States OnlyFull-timeSecurity Analyst$90k – $120k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers