Faster chat, better deals — Get the App

Senior Information Security Analyst

Indeed

Company

Job typeFull-time
Workplace typeOnsite
Experience levelNo experience limit
Education levelNo degree limit

Description

Job Summary: BS2 is seeking an Information Security specialist to work in Governance, Risk, and Compliance (GRC), developing and disseminating policies, monitoring key performance indicators, and ensuring regulatory compliance. Key Highlights: 1. Work at a 100% digital bank focused on corporate clients 2. An environment that drives career growth 3. Opportunity to tackle challenges in the financial market **About BS2** We are a 100% digital bank focused on corporate clients, offering personalized, human-centered service and tailored solutions — after all, no business is identical to another. This same logic applies to our culture: we have an innovative DNA that constantly challenges our entire team to reinvent itself. Here, our employees (the bessers) can count on an environment that accelerates career growth and provides opportunities to address financial market challenges alongside those who understand them best. **Responsibilities and Duties:** * Develop, review, and disseminate Information Security policies, standards, and procedures aligned with frameworks such as ISO 27001, NIST CSF, and CIS Controls; * Define and monitor Information Security performance indicators (KPIs) and risk indicators (KRIs) for reporting to executive management and committees; * Conduct identification, assessment, mapping, and treatment of information security risks, maintaining an updated risk register; * Perform risk assessments for third parties, suppliers, and partners, issuing technical opinions with mitigation recommendations; * Lead internal and external audits (BACEN, PCI DSS, ISO 27001\), coordinating evidence collection and organization; * Ensure ongoing compliance with the PCI DSS standard, managing deadlines, evidence, and remediation activities; * Monitor and implement controls required by financial sector regulators (BCB, CMN); * Support LGPD compliance efforts, acting as liaison with the Data Protection Officer (DPO); * Prepare executive reports on security maturity and posture for senior management; * Serve as the technical reference for business and technology areas on GRC-related topics. **Requirements and Qualifications:** * Bachelor’s degree in Computer Science, Information Systems, Information Technology, or related fields; * Minimum of 5 years of experience in Information Security with a focus on GRC; * Proficiency in frameworks: ISO/IEC 27001, NIST CSF, CIS Controls v8, and PCI DSS v4; * Knowledge of LGPD and Central Bank regulations (CMN/BCB Resolutions); * Experience with risk management methodologies: ISO 31000 and COBIT; * Ability to prepare executive reports, risk matrices, and technical opinions; * Preferred: ISO/IEC 27001 Lead Auditor, Lead Implementer, or PCI DSS ISA certification. **Work Schedule**: Hybrid (3 days onsite, 2 days remote) **Work Location**: BS2 Bank Head Office\. Luxemburgo, Belo Horizonte \- MG **Our Benefits:** ️ Meal allowance of BRL 1,109.90 per month; Food allowance of BRL 882.45 per month; 13th-month food allowance; Profit-sharing program (PLR); * ️ Medical insurance; Dental insurance; ️ + Saúde Program: Telemedicine; Private pension plan; Childcare allowance of BRL 678.08 per child up to age 6; Maternar Program: Professional support throughout pregnancy and postpartum; Lactation room for returning mothers; Wellhub, formerly Gympass; ️ Birthday day off; Potencializa: Our internal e-learning platform; Employee loan program; * Reduced workweek: 40 hours per week;

Some content was automatically translated

Posted by

João Silva

Indeed · HR

Location

João Silva

Indeed · HR

Similar jobs

Senior Information Security Analyst job by Indeed in 2026 | ok.com