Grc Analyst

Zone & Co

Colombia, Colombia
On-site
3+ years it audit or grc experience
Hands-on soc 2 type ii and iso 27001 management
Deep knowledge of gdpr and ccpa regulations
The role involves leading the management and scaling of core security compliance frameworks like SOC 2 Type II and ISO 27001

Job Summary

  • The role involves leading the management and scaling of core security compliance frameworks like SOC 2 Type II and ISO 27001.
  • Candidates will serve as the primary security liaison for enterprise customers, directly supporting the sales cycle by demonstrating a robust security posture.
  • Zone & Co operates as a high-velocity, fully remote, global team where autonomy is the standard and micro-management is ditched.

Matching Summary

The role involves leading the management and scaling of core security compliance frameworks like SOC 2 Type II and ISO 27001.

Skills & Requirements

Must-have

  • 3+ years IT Audit or GRC experience
  • Hands-on SOC 2 Type II and ISO 27001 management
  • Deep knowledge of GDPR and CCPA regulations
  • Experience with AWS, Azure, or GCP cloud architectures
  • Ability to translate regulatory requirements into controls

Nice-to-have

  • Familiarity with Oracle NetSuite ERP systems
  • Strong written and verbal communication skills
  • Experience in B2B SaaS or FinTech environments
  • Proven ability to support sales cycles with security posture
  • Self-driven professional for remote global team

Key Requirements

  • Bachelor's degree in Information Systems, Cybersecurity, Business, or related field
  • Relevant certifications such as CISA, CISM, CIPP/E, CIPP/US, or Security+
  • 3+ years of direct experience in IT Audit, Information Security, Privacy Operations, or GRC

Work Rights

Not specified

Tailored Resume

Cover Letter