CI&T
[Job-32034] Senior GRC Security Specialist, Colombia
CO · Remote (restrictions not stated) · Homeoffice
Apply on the employer’s site ↗See how well you match this job
You apply directly with the employer. ROLIVA does not submit applications from this page and is not the employer.
Role details
- Employer posted
- Added to ROLIVA
- Last checked
- SourceCI&T careers page
Does the apply link above not work?
About the employer
- EmployerCI&T
- Open roles on ROLIVA196 open roles
- Where this posting comes fromListed on the employer’s own careers site: jobs.lever.co
About the role
Description from the employer’s posting. Check the employer’s page for the current version.
At CI&T, we help large enterprises transform the potential of AI into real business impact with AI Deployment, AI-native execution, and tech-integrated business solutions. With 30 years of experience in technological transformation, we accelerate innovation with expertise in Agentic SDLC, Application modernization, Data & AI, Martech and Business strategy. We are 8,000 CI&Ters across more than 25 countries, collaborating to build solutions with real impact. AI is already part of how we work, evolve, and innovate every day.
Hi There, This is Laura from CI&T!
I am a Talent Attracting Analyst looking for people located in Colombia for a Senior GRC Security Analyst to join our team. The GRC Security Analyst will play a key role in maintaining and enhancing our Cybersecurity Risk Management Process while ensuring adherence to industry standards and regulatory requirements in the medical device sector. This position requires a detail-oriented and proactive individual.
Responsibilities: - Enterprise Cybersecurity Risk Management: Continuously identify, log, and analyze control nonconformities and unresolved/high-risk vulnerabilities across different sources. Maintain the Risk Registry and deliver timely risk treatment updates and reports to stakeholders. - Third-party Cybersecurity Risk Assessments: Executed annually, ensuring alignment with internal risk standards and external compliance requirements. - Cybersecurity Controls Management: Maintain and enhance the cybersecurity control framework by mapping existing controls, collecting evidence of execution, identifying gaps or nonconformities, and aligning overlapping requirements under a unified structure. Ensure adherence to frameworks such as HITRUST, HIPAA, Spain ENS certification. - Policies and Procedures Development: Create and maintain cybersecurity-related policies and procedures. Ensure documentation complies with regulatory and contractual standards.
Requirements for this challenge: - Advanced english for communication with international clients - Excellent communication skills, with the ability to collaborate effectively with technical and non-technical stakeholders. - Strong analytical and problem-solving skills, with the ability to make informed decisions in high-pressure situations. - Conduct cybersecurity risk assessments, identify potential vulnerabilities, and recommend strategies to mitigate risks. - Collaborate with cross-functional teams to ensure that GRC policies, procedures, and controls are effectively communicated and implemented. - Lead efforts to maintain and update documentation related to GRC processes, including risk assessments, policies, and procedures. - Participate in internal and external audits, providing support and documentation as needed to demonstrate compliance. - Strong understanding of GRC frameworks, industry standards, and regulatory requirements. - Excellent analytical skills, attention to detail, and the ability to work independently and in cross-functional teams.
We are looking forward to receiving your application and working together to drive our success.
#LI-LO1
Our benefits include:
- Premium Healthcare - Meal voucher - Maternity and Parental leaves - Mobile services subsidy - Sick pay-Life insurance - CI&T University - Colombian Holidays - Paid Vacations And many others.
Collaboration is our superpower, diversity unites us, and excellence is our standard. We value diverse identities and life experiences, fostering a diverse, inclusive, and safe work environment. We encourage applications from diverse and underrepresented groups to our job positions.
Staying safe while you apply
- Never pay to apply, interview or accept an offer — ROLIVA never asks you for payment to apply to a job.
- Apply only through the official button above, on the employer’s own site, and check that a recruiter’s email uses that employer’s own domain rather than a free email address.
- Be cautious of an offer made with no real interview, or pressure to decide quickly or share financial details early.
Does something look wrong with this listing? Use “Report broken link” above, or read ROLIVA’s full job-safety guidance ↗.
Preparing for this role with ROLIVA
- Check the fit.
Compare the requirements with the experience you have confirmed, including gaps.
- Prepare honestly.
Build interview stories and application drafts from your own evidence.
- Keep track.
Save the role and record your own application status and follow-ups.