Swap
Swap
201 – 500 Қызметкерлер
B2BБанк ісіФинтех
Swap — бизнеске арналған Banking-as-a-Service және төлем инфрақұрылымына бағытталған бразилиялық финтех-компания. Оның платформасы компанияларға карта шығару және өңдеу, PJ және PF цифрлық шоттары, Pix, Boleto және TED төлем арналары, API интерфейстері әрі кодсыз ақ жапсырмалы порталдар арқылы брендтелген қаржылық өнімдерді іске қосып, басқаруға көмектеседі. Swap сонымен қатар парк және жанармай карталары, агробизнес, жалақы аванстары, корпоративтік карталар, ERP банкингі және саяхат сияқты қолдану жағдайларына бейімделген интеграциялармен бірге KYC, алаяқтыққа қарсы қорғаныс және реттеуші талаптарға сәйкестік мүмкіндіктерін ұсынады. Компания негізінен B2B серіктестіктер арқылы жұмыс істеп, компанияларға өз брендтерімен өнім жасау үшін қажет операциялық құралдар мен қаржылық инфрақұрылымды біріктіреді.

Senior Privacy and Data Protection Analyst

Senior privacy and data protection role at Swap, a Brazilian B2B Banking as a Service provider. Focus on LGPD, GRC, audits, and regulatory compliance.

Сипаттама

  • Build and continuously improve Swap’s privacy and personal data protection program.
  • Ensure compliance with Brazil’s LGPD and other applicable legal, regulatory, and contractual requirements.
  • Maintain personal data inventories and processing records, covering purposes, legal bases, sharing, retention, and disposal.
  • Assess privacy risks and prepare or coordinate Data Protection Impact Assessments (DPIAs).
  • Help handle data subject rights requests and other privacy matters.
  • Review new products, projects, processes, integrations, and vendors, embedding privacy requirements from the outset.
  • Help manage personal data incidents, including impact assessments, documentation, and applicable communications and notifications.
  • Promote privacy awareness and data protection training.
  • Help develop the GRC program by connecting regulatory requirements, enterprise risks, and Information Security controls.
  • Identify, assess, document, and monitor risks, control gaps, action plans, and supporting evidence.
  • Maintain risk and control matrices, tracking owners, deadlines, metrics, and corrective actions.
  • Help maintain and improve the Information Security Management System (ISMS) in line with ISO 27001.
  • Track regulatory requirements, including those of the Central Bank of Brazil, alongside customer, partner, and contractual obligations.
  • Support third-party risk management (TPRM).
  • Plan, coordinate, and track internal and external audits, independent assessments, and certification processes.
  • Organize and maintain evidence for Central Bank of Brazil, PCI DSS, ISO 27001, and other applicable compliance audits.
  • Coordinate evidence gathering and control questions among internal teams, auditors, consultants, and other stakeholders.
  • Track audit findings, nonconformities, recommendations, and remediation plans through resolution.
  • Evaluate control effectiveness and identify improvement opportunities and remaining risks.
  • Help respond to security questionnaires, customer assessments, and requests for compliance evidence.
  • Manage corporate policies, standards, procedures, and guidelines from drafting through approval, publication, review, and communication.
  • Keep documentation aligned with regulatory requirements, internal policies, and Information Security practices.
  • Maintain document governance, including version history, ownership, review schedules, and approvals.
  • Help teams define corporate procedures and controls.
  • Monitor policy adherence and help manage deviations and exceptions.

Талаптар

  • Bachelor’s degree in Information Security, Law, Business Administration, Information Systems, Risk Management, or a related discipline.
  • Substantial privacy and data protection experience, including hands-on implementation and maintenance of LGPD compliance programs.
  • Applied knowledge of personal data mapping, legal bases, processing records, and privacy risk assessments.
  • Experience preparing DPIAs and assessing risks tied to personal data processing.
  • Experience with GRC, risk management, internal controls, action plans, and process governance.
  • Experience preparing for and supporting internal and external audits, including gathering and validating evidence.
  • Knowledge of standards and frameworks such as ISO 27001, ISO 27701, and PCI DSS, plus financial-sector regulations.
  • Experience drafting corporate policies, standards, and procedures and managing their lifecycle.
  • Ability to work across Technical, Legal, Compliance, Product, Operations, Engineering, and vendor teams.
  • Strong written and spoken communication, organization, independence, and ability to manage several initiatives at once.
  • Experience in fintech, payment institutions, Banking as a Service (BaaS), or regulated financial services is an advantage.
  • Experience with Central Bank of Brazil audits and requirements, including Pix, cybersecurity, and outsourcing of relevant services, is an advantage.
  • Experience implementing or maintaining an ISMS and preparing for ISO 27001 certification is an advantage.
  • Knowledge of SOC 2, ISO 27701, and risk management frameworks is an advantage.
  • Experience with TPRM, vendor assessments, and reviewing security and privacy contract terms is an advantage.
  • Familiarity with GRC and document management tools, process automation, and evidence tracking is an advantage.
  • Experience defining risk, compliance, and privacy metrics and executive reports is an advantage.

Артықшылықтар

  • SulAmérica health coverage for employees and dependents, with no monthly premium or copayment.
  • SulAmérica dental coverage with no monthly premium or copayment.
  • Flexible meal and food allowance card.
  • Childcare support for parents of children up to 5 years and 11 months old.
  • Financial support for parents of children with disabilities.
  • Prudential group life insurance.
  • Wellhub partnership.
  • Onhappy leisure travel partnership.
  • Variable compensation program, depending on department and role.

Ұқсас жұмыс орындары

Red Hat

Consulting Cloud Architect, OpenShift

Red Hat

Design and deliver Red Hat OpenShift, Kubernetes, and hybrid cloud solutions for enterprise customers. Lead customer engagements focused on infrastructure, automation, and application delivery.

Ашу
Kreato Global | BPO and Language Solutions
Red Hat

Red Hat OpenShift Cloud Consultant

Red Hat

Implement Red Hat OpenShift, Ceph, and Ansible solutions for enterprise customers in Israel. Design cloud architectures and advance DevOps automation at customer sites.

Ашу
Taurus SA

IT Technician and Client Support Specialist

Taurus SA
51 – 200 Қызметкерлер
Банк ісіКриптовалютаФинтех

Support Taurus’s corporate users and external clients at a regulated digital-asset fintech. Handle Azure infrastructure, endpoint support, ticket triage, and client issue resolution.

Ашу
RecruitGo

Remote Executive Assistant, Outreach and Marketing — Philippines

RecruitGo

Handle administrative support, CRM, outreach, and marketing for RecruitGo, an Employer of Record serving global clients with talent from emerging markets. Support two UK-facing clients with day-to-day administration and creative campaigns.

Ашу
Mars

Mars Customer Manager, Wegmans Account, Illinois Remote

Mars

Lead Mars Snacking’s Accelerator account strategy for Wegmans. Drive retailer growth through assortment, merchandising, pricing, promotions, and forecasting.

Ашу
Outforce

Credit Control and Collections Analyst

Outforce

Manage receivables, collections, and cash flow reporting for an FMCG business. Use SAP, Vend, and Excel to assess customer accounts and credit risk.

Ашу
Salonkee

Sales Representative, Salon Software — Göttingen

Salonkee
51 – 200 Қызметкерлер
SaaSМаркетплейсСұлулық

Grow Salonkee’s salon software business across Göttingen through local prospecting, product demonstrations, and end-to-end sales. Build relationships with salon owners and guide them from first contact through to closing.

Ашу