Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Positivo Tecnologia

Senior Information Security Analyst

Positivo Tecnologia

. Support LGPD and Privacy initiatives, including personal data mapping, responding to data subject rights requests (DSRs), and conducting data protection-related contract reviews .

Posted 9/29/2026full-timeCuritiba • BrazilSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Information Security and Privacy management, with a strong focus on LGPD compliance, risk management, and ISO 27001 standards. Proficient in conducting audits, drafting policies, and leading Privacy by Design initiatives.

Highest-signal resume keywords
Information Security ManagementLGPD ComplianceISO 27001 ExperienceRisk ManagementPrivacy by Design

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Data MappingRisk AssessmentPolicy DraftingContract ReviewInternal AuditsCompliance MonitoringNonconformity ManagementGRC ActivitiesPrivacy StandardsInformation Security Policies
Tools & Technologies
GRC ToolsSECURITIISO 27001 Lead ImplementerISO 27001 Lead AuditorNIST CSFCIS Controls
Certifications & Qualifications
EXIN PDPFCIPP/ECIPMISO 27701CISMCRISCCISASecurity+
Industry Keywords
Information SecurityCybersecurityPrivacyData Subject RightsThird Party Risk ManagementPCI DSSPCI PINISO 20000

Tech Stack

Tools & technologies
Cyber Security

About the role

Key responsibilities & impact
  • Support LGPD and Privacy initiatives, including personal data mapping, responding to data subject rights requests (DSRs), and conducting data protection-related contract reviews
  • Lead Privacy by Design and Security by Design assessments for projects and new solutions
  • Maintain and continuously improve the Information Security Management System (ISMS), supporting ongoing compliance with ISO 27001
  • Plan and conduct internal audits, gather evidence, document nonconformities, and monitor the related action plans
  • Draft, review, and maintain up-to-date Information Security and Privacy policies, standards, and procedures
  • Manage the Information Security and Privacy risk management lifecycle, from identification through treatment and monitoring
  • Conduct risk assessments for vendors, partners, and new solutions
  • Serve as the focal point for customer and regulatory audits
  • Monitor risk and compliance indicators, including KPIs and KRIs, supporting the preparation of reports and executive presentations
  • Provide internal consulting to business areas and support Information Security and Privacy awareness initiatives

Requirements

What you’ll need
  • Bachelor’s degree in Information Security, Cybersecurity, Information Systems, Computer Science or Engineering, Networking, or a related field
  • Professional experience in Information Security, particularly in GRC-related activities
  • Practical experience with LGPD and Privacy, including data mapping, legal bases, DSRs, contract reviews, and Privacy by Design
  • Experience supporting and maintaining ISO 27001 compliance
  • Knowledge and experience in Information Security risk management
  • Experience assessing risks related to third parties, vendors, or partners
  • Experience drafting and reviewing policies, standards, and procedures
  • Experience supporting audits and monitoring nonconformities and action plans
  • Graduate degree or postgraduate specialization in Information Security, Cybersecurity, Privacy, or LGPD
  • Security, GRC, or Privacy certifications, such as EXIN PDPF/PDPE, CIPP/E, CIPM, ISO 27701, ISO 27001 Lead Implementer/Lead Auditor, CISM, CRISC, CISA, or Security+
  • Knowledge of PCI DSS, PCI PIN, ISO 20000, NIST CSF, or CIS Controls
  • Experience with GRC, Privacy, or TPRM tools, such as SECURITI or similar solutions

Benefits

Comp & perks
  • Health and dental insurance
  • Zenklub: health and wellness platform, including psychological support
  • Casa da Saúde: medical and dental consultations, as well as clinical examinations
  • Gympass
  • On-site cafeteria or meal allowance
  • Pharmacy discounts
  • Medical Emergencies: health plan partnership providing in-home or telephone care
  • Semi-flexible working hours
  • Hybrid work
  • Childcare assistance and maternity kit
  • Discounts at Universidade Positivo (UP) for employees and dependents
  • Saber Mais: Professional Development Portal
  • Discounts at Colégio Positivo for employees’ children
  • Profit-sharing program (PPR)
  • Good Card: benefits card accepted at more than 130,000 establishments
  • Life insurance
  • Payroll-deductible loan
  • Private pension plan
  • Transportation allowance or parking
  • Parceiro Positivo: website offering discounts on our products