Remote job
IT Security & Compliance Lead (São Paulo, BR)
Job details
About this role
Role overview Lead information security governance across a distributed, international organization undergoing technology and operational consolidation. The role establishes consistent security standards, assesses risk, coordinates incident response, and works with IT, engineering, product, and data teams to improve security maturity.
Responsibilities - Audit systems, applications, and processes; maintain a prioritized risk register and report security posture using clear measures. - Establish a network-wide security baseline aligned with a recognized framework, such as ISO/IEC 27001. - Review vendors and technology platforms, coordinate penetration testing and vulnerability scans, and track remediation with system owners. - Set access-control standards for core platforms, including multifactor authentication, single sign-on, least privilege, and account lifecycle processes. - Partner with regional IT teams on device security and advise product and engineering teams on secure design. - Maintain security policies and coordinate incident response, while supporting data protection compliance across operating jurisdictions.
Requirements - The role is full time, 40 hours per week; part-time work is not available. - Must reside in the Netherlands or the United Kingdom when employment begins and live within commuting distance of the Amsterdam or London office.
Benefits and work setup - Remote-first work arrangement, with the location and commuting requirements above.