Join the Information Assurance Services team and assist clients in meeting their security needs. As an IAS Intern, youβll play a key role in helping businesses navigate risk and compliance by assisting audit teams on various projects, drafting project plans, developing document request lists, reviewing evidence, and communicating with clients.
Job listings
We have a GRC team helping our Clients ensure Security in the Supply Chain and are looking for profiles to join and strengthen our teams. Main activities include definition of methodologies, processes and work procedures; data analysis, generation and monitoring of indicators; ad hoc review of suppliers; homologation of suppliers according to the defined process; update of follow-ups; support to users; and communication with suppliers.
Lead the strategy, governance, and security operation of the CI&T Flow platform, ensuring compliance with international standards (ISO 27001, NIST, LGPD, SOX) and strengthening the trust of CI&T's corporate clients. Act strategically with Product, Engineering, and Business areas to make security a competitive differentiator and innovation accelerator.
Tackle complex customer security challenges at the intersection of technical architecture and business requirements. Provide technical guidance, create security content, and help customers understand how GitLab's security controls meet their compliance and risk management needs. Serve as the primary security point of contact for enterprise customer questions, requests, and concerns.
As a Post-Sales Subject Matter Expert, GRC at Vanta, you will be responsible for representing Vantaβs Trust Management Platform, providing hands-on guidance during onboarding, and collaborating with product teams to help drive and implement new features in the product; this role involves using your Security and GRC experience to help grow and sell our product.
The Information Security Officer supports Kilnβs VP of Security in defining and executing the companyβs information security program. Acting as the GRC (Governance, Risk & Compliance) lead, the ISO aligns security strategy with business goals and regulatory standards. The role includes leading risk assessments, compliance initiatives, KPI development, and driving a strong security culture across the organization.
Shape and elevate security across our product, infrastructure, and organisation by deploying cutting-edge tools, writing impactful code, designing robust processes, and navigating audits. Collaborate with engineering, product, and operations to embed security into everything we do and architect and scale our security function from the ground up.
As Marqetaβs Senior Technical Compliance Analyst, you'll be responsible for driving implementation of security controls and supporting our technical compliance program. You will collaborate with cross-functional teams to assess internal control effectiveness, facilitate external audits, drive remediation of findings and risks and articulate the Companyβs compliance posture to our auditors, customers and partners.
The ISO Analyst supports the audit and assurance teams in performing ISO 27001 certification assessments and related information security audits. Working under the supervision of an Auditor, Lead Auditor, or Manager, the ISO Analyst assists in audit planning, evidence review, report preparation, and overall quality assurance. This role requires attention to detail, strong communication skills, and a foundational understanding of management systems and information security principles.
The Director, Information Security will provide both strategic input and hands-on technical acumen across all areas of Suzyβs security program β including endpoint protection, identity and access management, data loss prevention, cloud security, and compliance implementation. This role requires a hybrid mindset: someone who can architect and manage enterprise security infrastructure while also mentoring a growing team of engineers and analysts to operationalize best practices.