Description
Job Summary:
We are seeking an IT Cybersecurity Expert to lead strategic initiatives in governance, risk management, incident response, and regulatory compliance, joining a high-performing team.
Key Highlights:
1. Lead strategic cybersecurity initiatives.
2. Be part of a high-performing team.
3. Strengthen regulatory compliance and information protection.
**IT Cybersecurity Expert**
Are you passionate about cybersecurity and looking to lead strategic initiatives within an organization with high standards for compliance and information protection?
We are currently seeking an **IT Cybersecurity Expert**, a professional with solid experience in governance, risk management, incident response, and regulatory compliance, to join a high-performing team.
**Key Responsibilities**
---------------------------------
### **Governance and Compliance**
* Lead the implementation and compliance with Law No. 21\.663\.
* Align internal controls with ANCI guidelines.
* Develop, implement, and maintain cybersecurity policies, procedures, and standards.
* Coordinate internal and external audits.
* Manage and safeguard evidence of regulatory compliance.
### **Risk Management**
* Identify, assess, and mitigate technological and cybersecurity risks.
* Manage vulnerabilities and define remediation plans.
* Assess risks associated with third parties and critical suppliers.
### **Monitoring and Incident Response**
* Oversee security event monitoring under a 24x7\ model.
* Lead detection, containment, and mitigation of cybersecurity incidents.
* Coordinate communication with competent authorities, including CSIRT and ANCI, as applicable.
* Manage crisis meetings in response to high-criticality cyber incidents.
**Requirements**
--------------
* Professional degree in Cybersecurity Engineering, Computer Science (Civil or Executive Engineering), Networks and Security Engineering, or related field.
* At least **5 years of experience** in corporate cybersecurity.
* Minimum **3 years leading SOC or CSIRT teams**.
* Proven experience managing critical incidents and operating in regulated environments.
* Experience in regulatory compliance and security frameworks.
* Experience in the healthcare sector is highly valued.
* Intermediate English proficiency.
**Desirable Certifications**
-----------------------------
* CISSP
* CISM
* ISO 27001 Lead Implementer or Lead Auditor
* CEH
* CompTIA Security\+
* Microsoft Security
* Azure Security Engineer
**Competencies**
----------------
* Analytical thinking and problem-solving.
* Leadership and decision-making.
* Effective communication with technical teams and business units.
* Organization and management of multiple priorities.
* Results orientation and continuous improvement.
* Collaborative work.
**Conditions**
---------------
* Fixed-term contract.
If you seek a new challenge where you can lead the cybersecurity strategy, strengthen regulatory compliance, and contribute to protecting critical information, we invite you to apply!