
Information Security Specialist – SoD Governance, Segregation of Duties
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Brazil.
• Serve as the technical and functional authority for Segregation of Duties (SoD) governance, Identity and Access Management (IAM), Role-Based Access Control (RBAC), and access risk mitigation.
• Oversee and sustain the Segregation of Duties (SoD) Matrix.
• Detect, assess, categorize, and resolve SoD conflicts within corporate systems.
• Establish and execute compensating controls.
• Conduct regular evaluations of critical, privileged, and conflicting access risks.
• Collaborate with business units, Audit, Compliance, and Internal Controls to resolve SoD conflicts.
• Engage in the definition and enhancement of RBAC models.
• Ensure access compliance with the principle of least privilege.
• Assist with access provisioning, reviews, recertifications, and revocation processes.
• Monitor privileged access and critical accounts.
• Aid in the automation and continuous improvement of IAM and PAM processes.
• Ensure adherence to internal policies, regulatory requirements, and corporate standards.
• Support audits concerning access controls.
• Generate metrics, executive reports, and SoD risk dashboards.
• Track action plans to address deviations.
• Evaluate the impacts of new projects, systems, and organizational changes on SoD risks.
• Define and assess access governance processes.
• Participate in the endorsement/validation of new profiles and roles for critical systems.
• Assist with the deployment of GRC, IAM, and PAM tools.
• Advocate for training and awareness regarding access risks and SoD among business and IT teams.
• Bachelor’s degree in Information Security, Computer Science, Information Systems, Computer Engineering, Business Administration, Accounting, or related fields.
• Experience and understanding of Segregation of Duties (SoD) governance.
• Familiarity with Identity and Access Management (IAM).
• Knowledge of Role-Based Access Control (RBAC).
• Understanding of Privileged Access Management (PAM).
• Awareness of access risk, regulatory compliance, and internal policies.
• Capability to manage and maintain the SoD matrix.
• Proficiency in identifying, analyzing, classifying, and resolving SoD conflicts.
• Competence in defining and implementing compensating controls.
• Ability to conduct risk assessments for critical, privileged, and conflicting access.
• Support for access provisioning, review, recertification, and revocation.
• Skill in preparing metrics, executive reports, and SoD risk dashboards.
• Capacity to assist with internal and external audits.
• Support for the implementation of GRC, IAM, and PAM tools.
• Availability to work as a contractor (PJ).
• iFood multi-benefit card.
• 10 paid working days of leave.
• Paid maternity and paternity leave.
• Employee referral program with financial bonus.
• Access to Wellhub/TotalPass and OnHappy.
• Equipment supplied by Avvale.
• Amil 400 health plan.
• Dental plan.
• Opportunities for growth within a young, dynamic team.
• Smart work policies to support work–life balance.
• Chance to advance your career in a meritocratic environment.
• Opportunity to engage with international partners.
• Positive and trustworthy work atmosphere.
• Commitment to diversity and inclusion.
ASG Technologies
CrowdStrike
Culmen International
Threatscape
Get handpicked remote jobs straight to your inbox weekly.