
Senior Risk and Controls Analyst – IT
Afya
full-time
Posted on:
Location Type: Hybrid
Location: Belo Horizonte • Brazil
Visit company websiteExplore more
Job Level
About the role
- Map, document, test and evaluate ITGC (IT General Controls) including Access, Changes, Operations and Information Security;
- Conduct design testing of non-SOX controls;
- Identify control deficiencies, assess impacts and support the development and tracking of remediation action plans;
- Collaborate with IT, Business, Internal Audit and External Audit teams;
- Prepare reports, evidence and supporting documentation for audits and committees;
- Support continuous improvement of IT processes and controls with a focus on automation, efficiency and risk mitigation;
- Serve as a technical reference and mentor for less-experienced analysts.
Requirements
- Bachelor’s degree in Business Administration, Information Systems Engineering, Information Systems, Systems Analysis and Development, Information Security or related fields;
- Previous experience testing internal controls and working with SOX (Sarbanes-Oxley);
- Experience developing and implementing action plans to mitigate control deficiencies;
- Knowledge and experience with Sarbanes-Oxley (SOX), the Brazilian General Data Protection Law (LGPD), Information Security or related areas and Governance, Risk and Compliance (GRC) practices;
- Experience with process mapping and risk assessment;
- Experience in internal/external audit or consulting, preferably at a Big Four firm;
- Desirable experience with frameworks and methodologies such as ISO/IEC 27000 series, ITIL and NIST.
Benefits
- Meal and/or food allowance;
- Flexible working hours and arrangements (for Remote positions);
- Transportation voucher (for Hybrid or On-site positions);
- Profit sharing (PLR);
- Multibenefits: flexible benefits via Flash Card to use as you prefer;
- Gympass / Wellhub;
- Psicologia Viva (online platform for consultations with psychologists and nutritionists);
- Health and Dental insurance;
- Life insurance;
- Extended parental leave (up to 6 months for mothers and 20 days for fathers);
- Rede D'Or: support and important information for maternal and newborn health with a network of accredited nurses;
- Partnership with the local SESC (varied programming in education, health, culture, leisure and social assistance);
- Birthday Day Off (one paid day off to take on your birthday or during your birthday month);
- Learning platform with a variety of courses to enhance your knowledge (UCA);
- Language academy (AIA);
- Leadership development program;
- Mentoring program for women at Afya (MMA);
- Discounts on undergraduate and postgraduate courses at Afya educational units;
- Premium subscriptions to Afya iClinic and Afya Whitebook.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
IT General ControlsSOX controlsprocess mappingrisk assessmentISO/IEC 27000 seriesITILNISTaction plan developmentcontrol deficiency assessmentinformation security
Soft Skills
collaborationmentoringcommunicationreport preparationcontinuous improvementproblem-solvingorganizational skillsanalytical skillsattention to detailtechnical reference