
Technology Auditor, Senior
BMG
full-time
Posted on:
Location Type: Hybrid
Location: São Paulo • Brazil
Visit company websiteExplore more
Job Level
About the role
- Ensure that processes, systems and controls related to information technology and cybersecurity comply with internal policies, external regulations and best practices, mitigating risks and ensuring the integrity, confidentiality and availability of information.
- Plan and execute audits in IT and security environments.
- Assess internal controls, technological and cyber risks.
- Verify compliance with standards and regulations (ISO 27001, LGPD, SOX, PCI-DSS).
- Perform vulnerability testing and monitor penetration test results.
- Prepare reports with findings, risks and recommendations.
- Support audited areas in implementing action plans.
- Monitor security policies, incident management and business continuity.
Requirements
- Bachelor's degree in IT, Information Security or related fields.
- Knowledge of frameworks (COBIT, ITIL, ISO 27001).
- Experience in audit, risk management and compliance.
- Familiarity with vulnerability assessment and log analysis tools.
- Desirable certifications: CISA, CISSP, ISO 27001 Lead Auditor, CEH, OSCP.
Benefits
- Health plan with no monthly fee + Telemedicine
- Dental plan with no monthly fee
- Meal and Food Allowance
- Life insurance
- Funeral assistance
- Private pension plan
- Competitive annual variable compensation (bonus)
- PPR - Profit Sharing Program
- Único Skill (free Education benefit)
- Bicycle parking and locker rooms
- Childcare assistance
- Internet allowance
- Wellness programs
- Onsite clinic
- Pregnant employee program
- Extended maternity and paternity leave
- Copay exemption for pregnant employees and babies up to 1 year
- Personalized baby kit
- Dr. BMG – Telepsychology, Telemedicine, Nutritionist, Nurse and Physical Educator, extendable to dependents
- PAP - Financial, legal and psychological advisory program
- Gympass/Wellhub - Discounts on gyms
- Pharmacy discount program
- Fresh fruit every day
- Birthday Day Off
- Flexible dress code
- Hybrid work model
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
auditrisk managementcompliancevulnerability testingpenetration testinglog analysisinternal controlscybersecurityinformation technology
Soft skills
communicationreport writingproblem solvinganalytical thinking
Certifications
CISACISSPISO 27001 Lead AuditorCEHOSCP