At CI&T;, we help large enterprises transform the potential of AI into real business impact with AI Deployment, AI-native execution, and tech-integrated business solutions.With 30 years of experience in technological transformation, we accelerate innovation with expertise in Agentic SDLC, Application modernization, Data & AI, Martech and Business strategy.We are 8,000 CI&Ters; across more than 25 countries, collaborating to build solutions with real impact. AI is already part of how we work, evolve, and innovate every day.Hi There, This isLaura from CI&T;!I am a Talent Attracting Analyst looking for people located in Colombia for a Senior GRC Security Analyst to join our team. The GRC Security Analyst will play a key role in maintaining and enhancing our Cybersecurity Risk Management Process while ensuring adherence to industry standards and regulatory requirements in the medical device sector. This position requires a detail-oriented and proactive individual.Responsibilities:- Enterprise Cybersecurity Risk Management: Continuously identify, log, and analyze control nonconformities and unresolved/high-risk vulnerabilities across different sources. Maintain the Risk Registry and deliver timely risk treatment updates and reports to stakeholders.- Third-party Cybersecurity Risk Assessments: Executed annually, ensuring alignment with internal risk standards and external compliance requirements.- Cybersecurity Controls Management: Maintain and enhance the cybersecurity control framework by mapping existing controls, collecting evidence of execution, identifying gaps or nonconformities, and aligning overlapping requirements under a unified structure. Ensure adherence to frameworks such as HITRUST, HIPAA,
Spain ENS certification.- Policies and Procedures Development: Create and maintain cybersecurity-related policies and procedures. Ensure documentation complies with regulatory and contractual standards.Requirements for this challenge:- Advanced english for communication with international clients- Excellent communication skills, with the ability to collaborate effectively with technical and non-technical stakeholders.- Strong analytical and problem-solving skills, with the ability to make informed decisions in high-pressure situations.- Conduct cybersecurity risk assessments, identify potential vulnerabilities, and recommend strategies to mitigate risks.- Collaborate with cross-functional teams to ensure that GRC policies, procedures, and controls are effectively communicated and implemented.- Lead efforts to maintain and update documentation related to GRC processes, including risk assessments, policies, and procedures.- Participate in internal and external audits, providing support and documentation as needed to demonstrate compliance.- Strong understanding of GRC frameworks, industry standards, and regulatory requirements.- Excellent analytical skills, attention to detail, and the ability to work independently and in cross-functional teams.#LI-LO1Our benefits include:- Premium Healthcare- Meal voucher- Maternity and Parental leaves- Mobile services subsidy- Sick pay-Life insuranceCI&T; University- Colombian Holidays- Paid VacationsAnd many others.Collaboration is our superpower, diversity unites us, and excellence is our standard.We value diverse identities and life experiences, fostering a diverse, inclusive, and safe work environment. We encourage applications from diverse and underrepresented groups to our job positions.#J-18808-Ljbffr
📌 Job-32034 Senior Grc Security Specialist, Colombia
🏢 Ci&T
📍 Colombia