Information Security Manager
COP 71682K-75810K (estimate) Senior-level Full Time
Tasks
- Build information security team
- Conduct data control reviews
- Conduct penetration testing
- Coordinate privacy obligations with legal and compliance
- Coordinate response to emerging threats
- Define security KPIs and metrics
- Embed security into software development lifecycle
- Establish configuration compliance standards
- Lead audit and compliance programs
- Lead security assurance for customers
- Lead security incident decision making
- Maintain threat intelligence and risk guidance
- Manage client data protection program
- Manage security budget
- Manage security questionnaires and assessments
- Manage third-party risk management
- Oversee application security program
- Oversee incident response and escalation
- Own business continuity and disaster recovery planning
- Own information security policy framework
- Own information security strategy
- Own security awareness and training program
- Provide executive security risk reporting
- Represent security on change advisory board
- Run tabletop exercises
- Set vulnerability management program direction
- Support RFP and RFI security requirements
Perks/Benefits
- N/A
Skills/Tech-stack
Advisory Board | Application Security | Audit management | Awareness Training | Business Continuity | Change Advisory | Change Advisory Board | Configuration Compliance | Data Protection | Disaster Recovery | Incident Response | PCI DSS | Penetration Testing | Posture Management | Privacy Compliance | Risk Management | SOC 1 | SOC 2 | SSAE 18 | Secure Software | Secure Software Development | Security Awareness Training | Security Compliance | Security Governance | Security Posture | Security awareness | Security metrics | Security posture management | Software development | Third Party | Third-Party Risk | Third-party risk management | Threat Intelligence | Vulnerability Management
Education
N/A
Regions
Countries
States
Related jobs
-
SOC 2 Associate Manager - LATAM COP 34800K-37200KCompliance Automation | GRC | HIPAA | ISO 27001 | IT AuditFlexible paid time off | Paid Holidays | Performance bonuses | Remote workMid-level Full TimeColombia (Remote) R14d ago
-
API Security | Access Control | Application Security | Authentication | AuthorizationPaid time off | Remote work | Work autonomy | Work with top American companiesSenior-level Full TimeBogota R22d ago
-
AWS | Audit management | Awareness Training | CCPA | CCPA/CPRA)Flexible schedule | Fully remote | Health benefits | Work-life balanceMid-level Full TimeColombia R24d ago
-
Entry-level InternshipColombia, Remote R1mo ago
-
Awareness Training | By Design | Cloud Security | DevSecOps | IEC 27001Fitness budget | Flextime | Hybrid work | Mentorship | Personalized growth roadmapsSenior-level Full TimeUsaquen, Colombia R1mo ago