Job Description
In this role, you will be responsible for designing, implementing and maintaining systems based on ISO 27001, ISO 9001 and other related regulations. You will participate in the development of Information Security policies and procedures, act as a compliance and cybersecurity consultant for the different business units, and promote good practices through training and effective communications. You will work in a dynamic, collaborative and results-oriented environment, with opportunities for professional development and participation in high-impact projects for the region.
Find this job and more at Get on Board.
Main functions and responsibilities
Design, implement and maintain management systems in accordance with ISO 27001, ISO 9001 and regulations related to cybersecurity.
Train and sensitize internal teams and clients on controls, good practices and compliance programs.
Develop, review and update Information Security and Cybersecurity policies and procedures that respond to legal and business requirements.
Advise different business units on regulatory compliance and risk management, acting as an internal consultant for projects and processes.
Conduct audits, manage findings and coordinate action plans to effectively close gaps.
Maintain documentation, metrics and compliance reports for senior management and clients, ensuring traceability and continuous improvement.
Participate in process improvement initiatives and the evolution of the company's cybersecurity strategy.
What are we looking for?
We are looking for a professional with 1 to 2 years of experience in regulatory compliance and/or cybersecurity roles. Certifications or courses in ISO 27001 and knowledge of ISO 9001, NIST, CIS Controls or other relevant regulations will be valued. Must possess clear and effective communication, ability to facilitate training, and a proactive attitude to learn and adapt to a dynamic environment. Attention to detail, organization and discipline are required to manage documentation and large volumes of information. Teamwork skills, business orientation and the ability to communicate risks and controls in a way that is understandable to non-technical stakeholders will be valued.
Ideal profile: proactivity, focus on results, ability to work with multiple stakeholders, and desire to grow in a critical area for clients and the organization.
Desirable knowledge and skills
Working knowledge of risk management, change control and business continuity. Familiarity with frameworks such as NIST CSF, CIS Controls and data protection regulations. Ability to design training programs for end users and technical teams. Technical English for reading international standards and documentation.
Benefits
We offer hybrid work arrangements from Santiago, Chile, with flexible hours for a healthy balance between professional and personal life.
Collaborative, dynamic environment with cutting-edge technologies that facilitate professional growth and technological innovation.
Competitive salary package based on experience and profile, with an inclusive culture that values diversity, creativity and teamwork.
You will participate in challenging projects with real impact on the technological transformation of the region, in an environment that promotes innovation and continuous professional development.
Computer: Factor IT provides a computer for your work.