Stop applying to remote jobs that are already dead.
Every listing checked, aged honestly, expired when filled.

All listings

CI&T via Lever

[Job-32034] Senior GRC Security Specialist, Brazil

Brazil senior
still open verified 1h ago posted 1h ago seen just now
Apply at jobs.lever.co

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 1h ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 1h ago

The date the source published, not the day we noticed it (2026-10-01). Last seen at its source just now.

Is it remote?

Marked remote on the employer's board

Their board carries a remote setting on this posting — a field they filled in, not wording we read. The location field names somewhere specific, which is usually where the team or the entity sits.

Who may apply?

Brazil

The description states no restriction of its own. This is the source's own tag.

Skills named in the ad

HIPAAPartnershipsRisk Management

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

At CI&T, we help large enterprises transform the potential of AI into real business impact with AI Deployment, AI-native execution, and tech-integrated business solutions.

With 30 years of experience in technological transformation, we accelerate innovation with expertise in Agentic SDLC, Application modernization, Data & AI, Martech and Business strategy.

We are 8,000 CI&Ters across more than 25 countries, collaborating to build solutions with real impact. AI is already part of how we work, evolve, and innovate every day.


 
Hi There, This is Laura from CI&T!
 
I am a Talent Attracting Analyst looking for people located in Brazil for a Senior GRC Security Analyst to join our team. The GRC Security Analyst will play a key role in maintaining and enhancing our Cybersecurity Risk Management Process while ensuring adherence to industry standards and regulatory requirements in the medical device sector. This position requires a detail-oriented and proactive individual.
 
 
Responsibilities:
- Enterprise Cybersecurity Risk Management: Continuously identify, log, and analyze control nonconformities and unresolved/high-risk vulnerabilities across different sources. Maintain the Risk Registry and deliver timely risk treatment updates and reports to stakeholders.
- Third-party Cybersecurity Risk Assessments: Executed annually, ensuring alignment with internal risk standards and external compliance requirements.
- Cybersecurity Controls Management: Maintain and enhance the cybersecurity control framework by mapping existing controls, collecting evidence of execution, identifying gaps or nonconformities, and aligning overlapping requirements under a unified structure. Ensure adherence to frameworks such as HITRUST, HIPAA, Spain ENS certification.
- Policies and Procedures Development: Create and maintain cybersecurity-related policies and procedures. Ensure documentation complies with regulatory and contractual standards.
 
 
Requirements for this challenge:
- Advanced english for communication with international clients
- Excellent communication skills, with the ability to collaborate effectively with technical and non-technical stakeholders.
- Strong analytical and problem-solving skills, with the ability to make informed decisions in high-pressure situations.
- Conduct cybersecurity risk assessments, identify potential vulnerabilities, and recommend strategies to mitigate risks.
- Collaborate with cross-functional teams to ensure that GRC policies, procedures, and controls are effectively communicated and implemented.
- Lead efforts to maintain and update documentation related to GRC processes, including risk assessments, policies, and procedures.
- Participate in internal and external audits, providing support and documentation as needed to demonstrate compliance.
- Strong understanding of GRC frameworks, industry standards, and regulatory requirements.
- Excellent analytical skills, attention to detail, and the ability to work independently and in cross-functional teams.
 
We are looking forward to receiving your application and working together to drive our success.
 
 
#LI-LO1
 
Our benefits:
 
-Health and dental insurance
-Meal and food allowance
-Childcare assistance
-Extended paternity leave
-Partnership with gyms and health and wellness professionals via Wellhub (Gympass) TotalPass;
-Profit Sharing and Results Participation (PLR);
-Life insurance
-Continuous learning platform (CI&T University);
-Discount club
-Free online platform dedicated to physical, mental, and overall well-being
-Pregnancy and responsible parenting course
-Partnerships with online learning platforms
-Language learning platform
And many more!
 
More details about our benefits here: https://ciandt.com/br/pt-br/carreiras
 
At CI&T, inclusion starts at the first contact. If you are a person with a disability, it is important to present your assessment during the selection process. See which data needs to be included in the report by clicking here.This way, we can ensure the support and accommodations that you deserve. If you do not yet have the assessment, don't worry: we can support you in obtaining it.
 
We have a dedicated Health and Well-being team, inclusion specialists, and affinity groups who will be with you at every stage. Count on us to make this journey side by side.
Apply at jobs.lever.co