Viver ambientes.
Senior Information Security Analyst
Location
Brazil
Posted
5 days ago
Salary
0
Seniority
Senior
Job Description
Senior Information Security Analyst
Dexco
• Access Management (IAM – SAP and non-SAP); • Responsible for the full access management lifecycle (Joiner, Mover, Leaver), including creation, modification and removal of users, as well as administration of profiles and roles in SAP environments (ECC / S/4HANA and SAP GRC); • Ensuring security controls such as the principle of least privilege and segregation of duties (SoD), supporting risk analyses and remediation prioritization; • Conducting periodic access reviews (recertification), managing critical accesses (generic and emergency) and identifying control gaps, proposing structural improvements and ongoing process enhancement; • Defining, documenting and standardizing processes, approval flows and integration between systems (SAP, Active Directory/Azure AD and HR systems); • Participating in profile redesign and provisioning automation initiatives, ensuring alignment between access and business processes, balancing security and operational continuity; • Supporting internal and external audits, addressing non-conformities and ensuring adherence to regulations and best practices (LGPD, NIST); • Using artificial intelligence for detection of anomalous behavior, risk analysis, process automation and documentation, including application of predictive models and NLP. Also participating in AI governance to ensure ethics, auditability and explainability.
Job Requirements
- Bachelor's degree in Computer Science, Information Systems, Engineering or related fields;
- Hands-on experience with SAP Security (roles, profiles, users) and SAP GRC Access Control;
- Experience in industrial/manufacturing companies;
- Solid knowledge of IAM, RBAC and Joiner-Mover-Leaver (JML) processes;
- Segregation of Duties (SoD) and access risk analysis;
- Governance and compliance of access in complex environments;
- Interaction with Active Directory / Azure AD, IAM tools and HR systems;
- Familiarity with Machine Learning concepts applied to security: anomaly detection, risk classification models, clustering of similar profiles;
- Basic understanding of Generative AI (LLMs) and their applications in documentation, policies and security analysis assistance;
- Knowledge of AI governance frameworks applied to security;
- Ability to assess risks of third-party AI solutions: data privacy, leakage of sensitive information, adversarial attacks;
- Notions of prompt engineering for safe and effective use of AI assistants in security contexts.
Benefits
- Medical assistance for you and your dependents;
- Dental assistance for you and your dependents;
- Life insurance;
- Wellhub: access to gyms and wellness apps for physical, emotional and nutritional well-being — including a complimentary digital plan;
- Pharmacy agreement: medications at special prices with payroll discount;
- De Bem com a Mente: program dedicated to mental health, offering support and rehabilitation;
- Pronto Atendimento Pessoal: personal immediate assistance providing financial, psychological, legal and social support;
- Gestar Juntos: support and guidance program for pregnant employees and dependents;
- Daycare allowance for children up to 24 months;
- Meal voucher or company cafeteria and basic food basket (depending on the location);
- Transportation voucher or company shuttle (depending on the location);
- Profit Sharing (PLR) according to company results and individual targets;
- Private pension: company contributions to your retirement savings;
- Special loans via the Itaúsa Foundation and payroll-deductible loans with preferential rates;
- UniDexco: online platform for courses and training;
- Dexco Partnership Club: discounts with nearly 700 partners;
- Dexco Store: discounts on products from Dexco brands;
- Christmas card.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Data Security Analyst
ClarivateHeadquartered in Philadelphia, Pennsylvania, Clarivate offers a patent search and analytics platform to help users worldwide discover, protect, and commercialize their ideas more q
If you have experience with Microsoft Purview, data classification, and DLP frameworks, we’d love to connect. Configure and maintain Microsoft Purview features including data classification, sensitive data types, sensitivity labels, and Data Loss Prev...
• Responsible for managing and maintaining all documentation and related tasks to attain and maintain information security standards. • Assists in the development of security architecture with the management of security architecture, frameworks, policies, principles, and standards. • Advises on the security configuration and operations standards for security systems and applications, including policy assessment and compliance tools, network appliances, and host-based security systems. • Participates in incident responses, assessments, audits, and compliance reviews. • Evaluate current information security policies, standards, and procedures and make necessary changes to ensure compliance with information security standards and frameworks. • Work with a cross-functional team of local and remote subject matter experts (product, service, QA, support, system, and sales engineers, and product managers) to plan, write, and edit technical information while meeting compliance requirements. • Manages responses to risk security requests and identifies risk within the business relationship. • Manages content creation, information architecture, and document control processes to ensure compliance with established quality and style standards. • Create and coordinate the creation of technical written content and diagrams for contract deliverables and compliance documents. • Supports current system analysis to identify and propose required technical solutions for the successful implementation of information security controls. • Collaborates with and consults SMEs to create content and validate content for technical documentation in support of auditing initiatives. • Ensures compliance with framework requirements to obtain/retain certification.
Senior Information Security Analyst
GovCIOGovCIO is a service-disabled-veteran-owned small business (SDVOSB) that offers technology services to improve business performance for government organizations. Headquartered in Fa
Role Description GovCIO is currently hiring for Senior Information Security Analyst with an active Secret clearance to plan and coordinate IT security programs and policies. This position will be located in Arlington, VA and will be a fully remote position. - Plan and coordinate IT security programs and policies. - Manage and control changes to systems, assessing the security impact of related changes. - Provide security testing for code changes/development, and prepare/review documentation to include: - System Security Plans (SSPs) - Risk Assessment Reports - Certification and Accreditation (C&A) packages - System Requirements Traceability Matrices (SRTMs) - Provide Subject Matter Expertise (SME) for disaster recovery (DR) contingency plans (ISCP). - Write expert IT Security evaluations of audits findings. - Assist with creating, updating and closing all Plans of Action and Milestones (POAMs). - Develop security guidelines and processes for new and existing networks as needed. - Provide IT Security analysis by reviewing all System Change Requests (SCR). - Review vulnerability scan reports and work with technical SMEs to develop and track plans to remediate findings. Qualifications - Bachelor's with 5 - 8 years system security (or commensurate experience) Requirements - Clearance Required: Active Secret with the ability to obtain and hold DEA suitability Benefits - Posted Salary Range: USD $115,000.00 - USD $115,000.00 /Yr.
Information Governance Analyst
National Cooperative Bank - NCBNational Cooperative Bank (NCB) is a mission-driven financial institution dedicated to serving cooperatives, member-owned organizations, socially responsible en
Title: Information Governance Analyst Location: Arlington, Virginia, 22932, United States Department: Information Technology Job Category: Information Technology Requisition Number: INFOR001511 Job Description: Information Governance Analyst VA Office Role Description Summary: The Enterprise Content Management (ECM) Information Governance Analyst supports the ECM Information Governance Lead in managing the ECM system and ensuring regulatory compliance and proper records governance. This role assists with content stewardship, maintaining high-quality metadata and aligning the ECM platform with business processes. The Analyst will have exposure to information governance frameworks, records management policies, and business process enablement, while developing foundational skills in ECM operations and compliance. Role Responsibilities: Information Governance Support - Assist in maintaining ECM governance documentation, policies, and procedures - Help monitor metadata quality and document classification, escalating issues to the Lead - Support alignment with regulatory requirements (FFIEC, state/federal laws, privacy, legal hold) under Lead’s guidance - Collaborate with business units to validate metadata and template usage Business Process Enablement - Support onboarding of new business processes, repositories, and workflows into the ECM platform - Help ensure standardized use of templates, metadata, and naming conventions - Assist in translating business requirements into ECM documentation and specifications Risk, Audit & Regulatory Support - Assist with audit, exam, and risk assessment activities related to ECM usage - Help track and document governance findings, issues, and remediation actions - Support validation of retention schedules, privacy requirements, and access models Training & Adoption - Assist in delivering training sessions on ECM use and governance expectations - Guide users to documentation and training to promote self-serve capabilities Metrics & Value Management - Help collect data for ECM governance KPIs, including metadata compliance and adoption rates Minimum Qualifications: - 2+ years of experience in information governance, records management, data stewardship, or business analysis. - Experience using or managing ECM platforms (e.g., Laserfiche) and Microsoft Office applications. - Understanding of information lifecycle, metadata, and records management concepts. - Strong attention to detail, willingness to learn, and ability to follow established procedures. - Good communication and documentation skills. - Ability to work collaboratively and take direction from senior team members. Education: - Bachelor’s Degree in the field of business, information sciences, information systems, or comparable field of study and/or related experience is required. Work Environment: Hybrid – Employees will work from both remote and onsite locations. Employees must live within a reasonable commuting distance of the office and are required to be onsite at least two (2) days per week, specifically on Tuesdays and Wednesdays. Certain positions or business needs may require additional in-office days.



