Similar Jobs
See allGRC Program Manager
Velera
North America
GRC
PCI DSS
Risk Management
Senior Risk Analyst
AlphaSense
India
Risk Management
GRC
AI
Senior InfoSec GRC Analyst
Camunda
Global
ISO 27001
SOC 2
GRC
Principal Security Engineer – GRC Team Lead
Smartsheet
US
GRC
Cloud Architecture
Audit Management
GRC Engineer
ButterflyMX
US
GRC
SOC 2
Risk Management
About the Role:
- You will lead the GRC strategy, building a roadmap aligned with business objectives and risk appetite.
- You will own the security service channel and portfolio, acting as the primary intake for security requests.
Key Responsibilities:
- Lead end-to-end cyber risk management using FAIR methodology and ensure continuous compliance.
- Drive AI governance, IAM governance, and third-party risk management programs.
- Manage the GRC team, develop KPIs/KRIs, and report to executive leadership.
Requirements:
- 10+ years of experience in Information Security GRC with 5+ years in leadership roles.
- Deep expertise in NIST CSF 2.0, ISO 27001, SOX, and risk quantification.
- Fluency in Portuguese and advanced English.
Benefits:
- Competitive salary, profit sharing, meal allowance, and health/dental insurance.
- Extended parental leave, birthday off, and home office allowance.
- Access to Wellhub, employee assistance program, and discounts.
Grupo QuintoAndar
Grupo QuintoAndar is the largest real estate ecosystem in Latin America, covering all phases of the housing journey. The company is valued at over USD 5.1 billion, with a culture of innovation, collaboration, and high performance working with top professionals.