Core Responsibilities

The main mission is to act as a technical and strategic reference, supporting clients or internal areas in defining, implementing, and continuously improving technology governance, compliance, and security programs to strengthen the GRC framework. Key tasks include leading projects for evaluation, implementation, and certification under standards like PCI DSS and ISO 27001, executing risk and compliance gap assessments, and coordinating internal/external audits.

Requirements

Candidates must have a degree or be studying Systems Engineering, Informatics, Cybersecurity, or related fields, along with a minimum of 5 years of proven experience in GRC projects or security auditing, covering risk management, technical IT audits, and cloud security controls. Mandatory knowledge includes frameworks like PCI DSS, ISO 27001/27002, NIST CSF, and CIS Controls, with desirable knowledge in data privacy regulations.

Additional Information

Experience Level

5-10

Job Language

Spanish

Work Mode

On-site