Description
Job Summary:
Responsible for governing the application portfolio, ensuring compliance with corporate policies, regulatory requirements, and industry best practices.
Key Highlights:
1. Powerful, collaborative, agile, and flexible culture.
2. GPTW certified for the second consecutive year.
3. Revolutionize businesses and impact people through technology.
FCamara supports disruptive companies through comprehensive, scalable digital solutions aligned with the market’s leading trends and needs. We foster a powerful culture — fully connected end-to-end, collaborative, agile, and flexible to embrace innovation; transparent in our actions; united by a bold purpose: to revolutionize businesses and impact people by solving complex challenges through our culture and technology. Additionally, we have been certified by GPTW for the second consecutive year, ranking among the best companies to work for in Brazil.
**Responsibilities and Duties**
* Govern the organization’s application portfolio, ensuring adherence to corporate policies, regulatory requirements, and industry best practices.
* Develop, review, and maintain policies, standards, procedures, and controls related to the application lifecycle, ensuring compliance with governance and risk management frameworks.
* Design and implement Application Management Governance processes, defining responsibilities, controls, key performance indicators (KPIs), and operational workflows.
* Conduct periodic assessments of corporate applications to identify operational, technological, information security, and compliance risks.
* Proactively anticipate internal and external audit findings by performing assessments, compliance analyses, and technological control validations.
* Manage and track findings, observations, and action plans arising from internal audits, global audits, regulatory bodies, and compliance evaluations.
* Conduct analyses to verify application compliance with corporate policies, information security requirements, LGPD, access controls, segregation of duties, and other internal regulations.
* Support technological risk management initiatives by assessing system criticality, impact, and exposure.
* Design and maintain executive dashboards, governance KPIs, and compliance metrics to provide visibility for management and stakeholders.
* Produce managerial and executive reports on application health, identified risks, compliance indicators, and progress of action plans.
* Collaborate with IT, information security, compliance, operational risk, internal audit, external audit, and global stakeholders.
* Support technological due diligence processes related to systems, vendors, and intangible assets.
* Participate in defining and evolving application lifecycle controls, including development, testing, deployment, maintenance, and retirement.
* Promote continuous improvement initiatives to enhance the maturity of application governance processes.
**Requirements and Qualifications**
* Solid knowledge of IT Governance and Application Governance.
* Experience in defining and implementing corporate policies, processes, and procedures.
* Familiarity with ITIL, COBIT, ISO 27001, NIST frameworks, and best practices for technological risk management.
* Experience in internal and external audit processes and action plan management.
* Knowledge of information security controls, access management, segregation of duties, and regulatory compliance.
* Understanding of LGPD and other regulatory requirements applicable to the financial sector.
* Experience building KPIs, executive dashboards, and managerial reports.
* Ability to perform risk analyses and compliance assessments for corporate applications.
* Knowledge of Application Lifecycle Management (ALM) and application management processes.
**Additional Information** **Competencies**
* Analytical profile focused on risk mitigation.
* Ability to interact with multiple stakeholders and corporate departments in complex environments.
* Strong verbal and written communication skills.
* Organized, detail-oriented, and critically minded.
* Crisis management capability.
* Ability to operate in highly regulated and complex environments.
**Education**
* Bachelor’s degree in Information Technology, Information Systems, Computer Engineering, Business Administration, Accounting, Economics, or related fields.
* Postgraduate studies in IT Governance, Risk Management, Compliance, Information Security, or related areas are considered a plus.
**Languages**
* Advanced or fluent English (mandatory), with ability to lead meetings, draft documents, and interact with global teams and international audits.
**Here, we are \#SangueLaranja!**
We have been in the market for 17 years, side-by-side with our clients, delivering transformative experiences.
We are a technology and innovation ecosystem with global expansion; beyond Brazil, we operate in Europe and the UK, with offices in Portugal, London, Dubai, and the Netherlands.
**F for Formation: we believe in practicing a culture of knowledge sharing, community spirit, and that knowledge has the power to transform!**
We run social initiatives and programs promoting development, such as the Orange Juice tech community, the Formation Program, our leadership academy, and numerous partnerships with NGOs and Edtechs.
**At FCamara, everyone is welcome. For us, Diversity, Respect, and Ethics are non-negotiable elements embedded in our DNA.**
**So, are you ready to join an amazing team and become the protagonist of your own story?**