Ingeniero/a de senior de GRC
```html
Ingeniero/a de senior de GRC
You will join a technology company leading strategic projects to protect the information and systems of leading organizations.
Your mission will be to act as CISO as a Service, providing strategic and operational guidance on information security, risk management, and regulatory compliance for a leading international client, working from our Bogotá offices.
You will take on a highly autonomous and responsible role, combining expertise in Governance, Risk and Compliance (GRC) with the ability to engage with clients, define security strategies, and coordinate cybersecurity initiatives.
In addition, you will work in an international environment, bringing a cross-functional security perspective and contributing to the continuous improvement of the organization's cybersecurity capabilities.
We like to get straight to the point, so we'll tell you what you won't find online. If you'd like to learn more about us, visit the GMV website.
WHAT CHALLENGE WILL YOU TAKE ON?
Act as CISO as a Service, advising the client on defining and evolving their cybersecurity strategy.
Lead Governance, Risk and Compliance (GRC) activities.
Define, review, and maintain security policies, procedures, standards, and frameworks.
Identify and assess security risks, proposing mitigation plans and monitoring their implementation.
Coordinate with business and technology teams to ensure security is integrated into corporate processes.
Oversee compliance with applicable regulations, standards, and regulatory requirements.
Collaborate in incident management, CERT capabilities, and business continuity and disaster recovery planning.
Prepare executive reports, metrics, and KPIs for management and security committees.
Participate in international projects and collaborate with geographically distributed teams.
WHAT ARE WE LOOKING FOR IN OUR TEAM?
We are looking for a senior professional with experience in Governance, Risk and Compliance (GRC) and the ability to act as a trusted cybersecurity advisor to clients. Essential requirements include:
Degree in Engineering, Computer Science, Telecommunications, or a related field.
Solid experience (5+ years) in cybersecurity, particularly in GRC.
Experience in risk management and defining security controls.
Knowledge of security frameworks and standards (ISO 27001, NIST, ENS, or similar).
Experience working directly with clients and participating in security committees.
General knowledge of IT technologies and architectures.
English proficiency at B2 level or higher.
We will particularly value:
Technical knowledge of incident management, CERT capabilities, and business continuity.
Certifications such as CISM, CRISC, CISA, ISO 27001 Lead Implementer/Auditor, or similar.
Knowledge of Cloud environments and security technologies.
Experience in international projects or CISO as a Service delivery models.
Leadership skills, autonomy, and a client-oriented mindset.
WHAT DO WE OFFER?
Hybrid working model and 8 weeks of remote work per year from outside your usual geographical area.
Flexible working hours with flexible start and finish times, plus shorter working hours on Fridays and during the summer.
A personalized career development plan, training opportunities, and support for language learning.
Competitive compensation with regular salary reviews, flexible benefits, and discounts on leading brands.
Wellbeing Program: private health, dental, and accident insurance; free fruit and coffee; physical, mental, and financial wellbeing initiatives, and much more!
Throughout our recruitment process, you will always have direct contact—by phone and in person or online—with our Talent Acquisition team. We will never ask you to make bank transfers or provide bank card details. If someone contacts you through a different process, please get in touch with the person responsible for this recruitment process.
We promote equal employment opportunities and are committed to fostering an inclusive and diverse workplace.
WHAT ARE YOU WAITING FOR? JOIN US!
If you have any questions, please don't hesitate to contact Clara Sánchez Lobato, the recruiter responsible for this vacancy.
Clara Sánchez Lobato
```
Ingeniero/a de senior de GRC
You will join a technology company leading strategic projects to protect the information and systems of leading organizations.
Your mission will be to act as CISO as a Service, providing strategic and operational guidance on information security, risk management, and regulatory compliance for a leading international client, working from our Bogotá offices.
You will take on a highly autonomous and responsible role, combining expertise in Governance, Risk and Compliance (GRC) with the ability to engage with clients, define security strategies, and coordinate cybersecurity initiatives.
In addition, you will work in an international environment, bringing a cross-functional security perspective and contributing to the continuous improvement of the organization's cybersecurity capabilities.
We like to get straight to the point, so we'll tell you what you won't find online. If you'd like to learn more about us, visit the GMV website.
WHAT CHALLENGE WILL YOU TAKE ON?
Act as CISO as a Service, advising the client on defining and evolving their cybersecurity strategy.
Lead Governance, Risk and Compliance (GRC) activities.
Define, review, and maintain security policies, procedures, standards, and frameworks.
Identify and assess security risks, proposing mitigation plans and monitoring their implementation.
Coordinate with business and technology teams to ensure security is integrated into corporate processes.
Oversee compliance with applicable regulations, standards, and regulatory requirements.
Collaborate in incident management, CERT capabilities, and business continuity and disaster recovery planning.
Prepare executive reports, metrics, and KPIs for management and security committees.
Participate in international projects and collaborate with geographically distributed teams.
WHAT ARE WE LOOKING FOR IN OUR TEAM?
We are looking for a senior professional with experience in Governance, Risk and Compliance (GRC) and the ability to act as a trusted cybersecurity advisor to clients. Essential requirements include:
Degree in Engineering, Computer Science, Telecommunications, or a related field.
Solid experience (5+ years) in cybersecurity, particularly in GRC.
Experience in risk management and defining security controls.
Knowledge of security frameworks and standards (ISO 27001, NIST, ENS, or similar).
Experience working directly with clients and participating in security committees.
General knowledge of IT technologies and architectures.
English proficiency at B2 level or higher.
We will particularly value:
Technical knowledge of incident management, CERT capabilities, and business continuity.
Certifications such as CISM, CRISC, CISA, ISO 27001 Lead Implementer/Auditor, or similar.
Knowledge of Cloud environments and security technologies.
Experience in international projects or CISO as a Service delivery models.
Leadership skills, autonomy, and a client-oriented mindset.
WHAT DO WE OFFER?
Hybrid working model and 8 weeks of remote work per year from outside your usual geographical area.
Flexible working hours with flexible start and finish times, plus shorter working hours on Fridays and during the summer.
A personalized career development plan, training opportunities, and support for language learning.
Competitive compensation with regular salary reviews, flexible benefits, and discounts on leading brands.
Wellbeing Program: private health, dental, and accident insurance; free fruit and coffee; physical, mental, and financial wellbeing initiatives, and much more!
Throughout our recruitment process, you will always have direct contact—by phone and in person or online—with our Talent Acquisition team. We will never ask you to make bank transfers or provide bank card details. If someone contacts you through a different process, please get in touch with the person responsible for this recruitment process.
We promote equal employment opportunities and are committed to fostering an inclusive and diverse workplace.
WHAT ARE YOU WAITING FOR? JOIN US!
If you have any questions, please don't hesitate to contact Clara Sánchez Lobato, the recruiter responsible for this vacancy.
Clara Sánchez Lobato
```
Empleos Recomendados
Executive Assistant (Junior)
Publicado hace 44 minutos
Líder de Soporte y Desarrollo
Publicado hace 44 minutos
Business Development Representative (Junior)
Publicado hace 1 hora
Marketing Specialist (Junior)
Publicado hace 1 hora
Gerente de Estrategia Analítica
Publicado hace 1 hora

