
Information Security Coordinator – GRC
UOL EdTech
full-time
Posted on:
Location Type: Hybrid
Location: São Paulo • Brazil
Visit company websiteExplore more
Tech Stack
About the role
- Serve as the GRC reference and coordinator for Technology and Cybersecurity, driving the advancement of maturity in Information Security, Risk Management and Compliance.
- Lead the implementation and evolution of frameworks and standards (ISO 27001/27002, SOC 2, NIST, CIS Controls and LGPD), ensuring regulatory compliance and alignment with the organization’s risk strategy.
- Coordinate IT and cybersecurity risk management, including identification, assessment, treatment, monitoring and executive reporting, integrated with the Corporate Risk Program.
- Conduct maturity assessments and gap analyses, supporting structured improvement plans.
- Develop and maintain Information Security and Technology policies, standards and controls, ensuring regulatory adherence and practical applicability.
- Oversee security controls (IAM, SoD, logging, hardening and access management).
- Coordinate Third-Party Risk Management (TPRM), including assessment and monitoring of supplier, cloud and SaaS risks.
- Support data protection and LGPD compliance, including information classification and DLP initiatives.
- Coordinate business continuity and operational resilience (BIA, BCP and DRP).
- Prepare executive reports, KPIs and KRIs, acting as the interface with committees, senior management, auditors and regulators.
- Promote a culture of security and governance, serving as the focal point for the GRC team.
Requirements
- Solid experience in GRC applied to Technology and Cybersecurity.
- Practical knowledge of frameworks and standards such as ISO 27001/27002, NIST CSF, CIS Controls, SOC 2 and LGPD.
- Experience in IT, cybersecurity and third‑party (TPRM) risk management.
- Experience leading teams and driving major/strategic projects.
Benefits
- Meal and/or food allowance.
- Health and dental insurance.
- Life insurance.
- Partnerships with TotalPass and ZenKlub.
- Extended maternity and paternity leave.
- Childcare assistance.
- Up to 50% discounts on postgraduate programs and MBAs from leading institutions such as FIA, FAAP and PUCRS.
- No dress code: wear what makes you comfortable.
- #TáDeParabéns: day off on your birthday.
- Baby gift for newborns.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
ISO 27001ISO 27002NISTCIS ControlsSOC 2LGPDIAMDLPBIABCP
Soft skills
leadershipcommunicationorganizationalteam managementstrategic project management