Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Redbelt Security

Senior GRC Consultant – TPRM

Redbelt Security

. Lead and implement GRC projects for Redbelt Security clients .

Posted 10/7/2026full-timeSão Paulo • BrazilSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Governance, Risk, and Compliance (GRC) project management, with a strong focus on cybersecurity frameworks and standards. Capable of developing and implementing strategic recommendations, policies, and training programs to enhance organizational security and compliance.

Highest-signal resume keywords
GRC Project ManagementCyber Risk AssessmentNIST Cybersecurity Framework 2.0IT Governance CertificationThird Party Risk Management (TPRM)

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Governance, Risk, and Compliance (GRC)CybersecurityBusiness Continuity Plans (BCPs)Incident Response PlansDisaster Recovery Plans (DRPs)Privacy and Data ProtectionVendor AssessmentsInformation Security PoliciesRisk ManagementData Protection Legislation
Soft Skills
Strategic RecommendationsTraining DevelopmentCollaborationCommunication
Certifications & Qualifications
ISO 38500ISO 31000ISO 37301NIST CSF 2.0 Implementer
Industry Keywords
NIST SP 800-61ISO/IEC 27001:2022ISO/IEC 27005ISO/IEC 27031ISO/IEC 27035ISO/IEC 27037ISO/IEC 27701ISO 22301:2019ISO 31000:2018CIS Controls v8.1

Tech Stack

Tools & technologies
Cyber Security

About the role

Key responsibilities & impact
  • Lead and implement GRC projects for Redbelt Security clients
  • Assess governance, risk, and compliance processes, policies, and controls for cybersecurity
  • Provide strategic recommendations to improve technology controls and processes
  • Develop training and professional development programs for employees
  • Support the management of GRC projects and processes, as well as the monitoring of the department’s KPIs and KRIs
  • Support internal teams with GRC-related requests by participating in meetings, reviewing documentation, and issuing technical opinions
  • Monitor new standards, frameworks, laws, regulations, and industry best practices
  • Develop Information Security policies and standards for Redbelt Security and its clients
  • Lead and support TPRM processes, including the assessment and monitoring of risks related to vendors, partners, and third parties; due diligence; risk questionnaires; and remediation plans

Requirements

What you’ll need
  • Bachelor’s degree in Technology, Networking, Information Systems, Information Security, or a related field
  • Knowledge of industry frameworks, including NIST Cybersecurity Framework 2.0, ISO/IEC 27001:2022, ISO/IEC 27005, ISO/IEC 27031, ISO/IEC 27035, ISO/IEC 27037, ISO/IEC 27701, ISO 22301:2019, ISO 31000:2018, NIST SP 800-61, NIST SP 800-34, CIS Controls v8.1, and Brazilian data protection legislation
  • At least one certification in IT Governance (ISO 38500), Risk Management (ISO 31000), or Compliance (ISO 37301), as well as NIST CSF 2.0 Implementer certification
  • Proven knowledge of Cyber Risk Assessment, Business Continuity Plans (BCPs), Incident Response Plans and Disaster Recovery Plans (DRPs), Privacy and Data Protection, and Cybersecurity
  • Knowledge of TPRM processes, including due diligence and vendor assessments
  • In-depth knowledge of Information Technology (IT) environments
  • Fluency in English is a plus
  • Fluency in Spanish is a plus

Benefits

Comp & perks
  • Meal voucher, with no employee contribution (iFood Benefícios card)
  • Food allowance, with no employee contribution (iFood Benefícios card)
  • Transportation allowance, with no employee contribution as provided by law
  • Medical insurance, with no co-payment or employee contribution
  • Dental insurance, with no co-payment or employee contribution
  • Well-being benefits: Wellhub and TotalPass
  • Group life insurance
  • Piwi support
  • Starbem: healthtech care platform
  • Avus: healthcare benefits platform
  • Childcare allowance
  • Allowance for a child with a disability
  • Empresa Cidadã program: extended maternity and paternity leave
  • Birthday day off
  • Redbelt Referral Program
  • Redbelt School: educational sponsorship program for courses and certifications
  • Redbelt Celebra: awards based on length of service
  • Partnership with SESC
  • Partnerships with educational institutions and language schools offering discounts
  • PLR – profit-sharing plan, subject to achievement of the company’s targets
  • PBR (Redbelt Bonus Program), subject to achievement of the company’s targets
  • Breakfast and happy hour at the office on select days of the week