About the role
- Act on strategic initiatives focused on protecting information assets, regulatory compliance and risk management.
- Lead and continuously improve the cyber risk management process, focusing on risk identification, assessment and mitigation.
- Perform risk assessments of vendors and partners, ensuring adherence to security and compliance requirements.
- Develop and implement information security culture and awareness initiatives to promote engagement and secure behavior.
- Monitor and ensure regulatory compliance, including financial-sector regulations and laws such as LGPD and Bacen Resolution 4893.
- Manage and maintain compliance with the PCI DSS standard, supporting audits, remediation and controls.
- Draft, review and maintain information security policies, standards and procedures aligned with market best practices.
- Support internal and external audits by providing evidence and related action plans for information security.
- Work closely with technology, risk, legal and compliance teams to ensure security is integrated into corporate processes.
Requirements
- Knowledge of frameworks and standards such as ISO 27001, NIST, COBIT, PCI DSS and PCI PIN Security.
- Familiarity with GRC tools and risk management.
- Strong communication and interpersonal skills.
- Experience in financial institutions or the payments industry.
- Experience with Central Bank regulations (Bacen) and LGPD.
- Certifications such as CRISC, CISM, CISSP, PCI ISA/QSA, ISO 27001 Lead Implementer/Auditor.
- Advanced English.
- Profit Sharing Program (PPR)
- Medical insurance (Bradesco - co-payment)
- Optional dental plan (Bradesco)
- Life insurance (Banco do Brasil)
- Optional private pension (You may contribute up to 7.8% of your salary; Elo's contribution ranges from 100% to 200% according to plan rules)
- Meal/food allowance of R$1,800.00
- R$150.00 flexible balance to use on the credit function
- Christmas allowance of R$750.00
- Home office allowance of R$200 for hybrid and R$300 for remote roles
- Mobility allowance of R$400.00
- Free parking
- Childcare assistance for parents
- Culture allowance (benefit to be used for theater, cinema or bookstores)
- Extended parental leave (for same-sex couples, fathers, adoptive parents, etc.)
- Birthday day off
- Zenklub (psychotherapy - up to 4 sessions per month fully covered by Elo)
- WellHub and TotalPass (network of gyms and fitness studios)
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
risk managementrisk assessmentinformation security policiescompliance managementaudit supportvendor risk assessmentcyber risk managementregulatory complianceinformation security culturesecurity standards
Soft skills
communication skillsinterpersonal skills
Certifications
CRISCCISMCISSPPCI ISA/QSAISO 27001 Lead ImplementerISO 27001 Auditor