Coordinate GRC applied in Technology and Cybersecurity at UOL EdTech. Oversee risk management and compliance, ensuring regulatory alignment and cultural promotion of security.
Responsibilities
Serve as the GRC reference and coordinator for Technology and Cybersecurity, driving the advancement of maturity in Information Security, Risk Management and Compliance.
Lead the implementation and evolution of frameworks and standards (ISO 27001/27002, SOC 2, NIST, CIS Controls and LGPD), ensuring regulatory compliance and alignment with the organization’s risk strategy.
Coordinate IT and cybersecurity risk management, including identification, assessment, treatment, monitoring and executive reporting, integrated with the Corporate Risk Program.
Conduct maturity assessments and gap analyses, supporting structured improvement plans.
Develop and maintain Information Security and Technology policies, standards and controls, ensuring regulatory adherence and practical applicability.
Oversee security controls (IAM, SoD, logging, hardening and access management).
Coordinate Third-Party Risk Management (TPRM), including assessment and monitoring of supplier, cloud and SaaS risks.
Support data protection and LGPD compliance, including information classification and DLP initiatives.
Coordinate business continuity and operational resilience (BIA, BCP and DRP).
Prepare executive reports, KPIs and KRIs, acting as the interface with committees, senior management, auditors and regulators.
Promote a culture of security and governance, serving as the focal point for the GRC team.
Requirements
Solid experience in GRC applied to Technology and Cybersecurity.
Practical knowledge of frameworks and standards such as ISO 27001/27002, NIST CSF, CIS Controls, SOC 2 and LGPD.
Experience in IT, cybersecurity and third‑party (TPRM) risk management.
Experience leading teams and driving major/strategic projects.
Benefits
Meal and/or food allowance.
Health and dental insurance.
Life insurance.
Partnerships with TotalPass and ZenKlub.
Extended maternity and paternity leave.
Childcare assistance.
Up to 50% discounts on postgraduate programs and MBAs from leading institutions such as FIA, FAAP and PUCRS.
Senior Associate at PwC managing cybersecurity risk, compliance, and governance for clients. Leading security strategy initiatives to protect against cyber threats.
Senior Regulatory Affairs Specialist in Ultrasound focusing on regulatory submissions and product clearances. Collaborating with regulatory authorities to ensure compliance and timely product development.
Director leading compliance strategies at Walmart, enhancing operational integrity through tech collaboration and team leadership. Fostering partnerships to uphold ethical standards across the organization.
Manager, Field Compliance supporting US Psychiatry compliance program at Lundbeck. Driving and implementing all elements of Lundbeck US Compliance Program along with field - based teams.
Risk & Compliance Lead overseeing compliance management and statutory requirements at JLL. Leading audits and collaborating with cross - functional teams to mitigate legal risks and ensure compliance.
Senior Regulatory Affairs Analyst at Johnson & Johnson, responsible for ensuring compliance and regulatory strategy in São Paulo. Involves preparation and submission of regulatory dossiers and compliance assurance.
Coordinator for regulatory review assisting with product registration and compliance at e.l.f. Beauty, a leader in clean and cruelty - free cosmetics. Collaboration with cross - functional teams for global product launches.
Junior Compliance Manager supporting the development of a compliance management system at an international financial services company based in Cologne, focusing on digital processes and modern governance tools.
Senior Safety & PV Operations Specialist providing support to Safety and Pharmacovigilance. Identifying and maintaining worldwide regulatory requirements and serving as a subject matter expert in pharmacovigilance.