Information Security Internal Compliance & Regulatory Specialist at Bitso

Bitso logo
Bitso

Information Security Internal Compliance & Regulatory Specialist

ag flag
AG, AR, +37 more

Remote

Full Time

#Risk Management

#Information Security

#Regulatory Compliance

#Agile Methodologies

#IT Audit

Bitso is looking for a Information Security Internal Compliance & Regulatory Specialist

Working At Bitso

We are a diverse team that takes pride in understanding the perspectives of others. We fully embrace working remotely and we are eager to act, improve and accelerate progress inside and outside of our organization.

To drive revolutionary changes in society and make crypto useful, we delight our customers with world-class products, deep care, and intentional empathy.

Your Purpose

As our Information Security internal and Regulatory Compliance Specialist, you will be an integral part of the Information Security Governance, Risk, and Compliance team. Your role will involve defining, managing, enhancing, and maintaining the information security compliance program, as well as monitoring the effectiveness and maturity of Bitso's information security controls. Your role is essential to ensure company policies, technical standards and procedures are met, as well as support the definition of plans and mitigation activities for any identified gaps. Additionally, you will be responsible for coordinating and supporting external/internal audit and compliance exercises, including technical assessments.

As part of the information security governance, risk, and compliance team you will:

  • Use holistic approaches interconnecting governance, risk, and compliance through project management and the application of industry best practices and standards
  • Connect information security with other teams
  • Ensure that the different lines of business are aligned with the defined security culture
  • Use Agile approaches in your projects
  • Focus on quality and excellence in your results

Beyond our team, you will collaborate closely with:

  • Organizational risk, compliance, and regulatory internal and external teams to ensure proper adherence to information security compliance processes
  • Technical groups to assist in implementing technical standards, controls, and configurations aligned with security policies, legal requirements, and audit standards

Reports To

Information Security Engineering Manager

Who You Are

  • Proven English fluency.
  • You are an information security professional with a minimum of 5 years of experience in information security roles
  • You possess at least 3 years of experience leading internal compliance assessments, leading internal audits, or acting as a strategic consultant with a focus on maturity assessments
  • You have expert knowledge of information security frameworks and best practices (e.g., ISO 27k, COBIT, NIST 800, CSF, SANS CIS)
  • You have proficiency in IT audit, compliance, and maturity assessments
  • You are a Certified Information Systems Auditor (CISA) or possess an equivalent certification with a focus on IT audit
  • You possess a competent understanding of the risk management process, with emphasis on risk treatment, monitoring, and control assessment phases
  • You possess strong communication skills. These are crucial as the role involves coordinating with internal teams, external auditors, and various technical and non-technical groups. Being able to effectively communicate findings, recommendations, and remediation strategies to different levels of stakeholders is key
  • You are detail-oriented. Given the role's responsibilities in monitoring compliance, identifying gaps, and managing security controls, attention to detail is vital. You should be meticulous in your work to ensure effective compliance and security measures are in place
  • You are an agile and avid learner. Information security is a rapidly evolving field, so you have a willingness to continuously learn and stay updated on the latest trends, threats, and best practices in the industry. Keeping up-to-date will help in effectively implementing security measures
  • Proven English proficiency. You are comfortable presenting to English speaking audiences and creating deliverables in that language. You are able to maintain a fluid conversation in English
  • Finally, you are passionate about information security and you can see beyond the technology and controls. You find confluence points and create synergies. You believe in teamwork and you believe that by empowering an organization to protect itself you are on the side of a noble and much needed cause
  • Optionally it is nice if you have:
    • Minimum 2 years of strategic consulting experience, particularly within financial institutions.
    • Additional certifications such as Certified ISO 27k Lead Auditor, CISSP, or PMP.
    • Working knowledge with maturity models and frameworks (e.g. CMMI), cloud security best practices, project management (PMI), and Agile methodologies (e.g Kanban).
    • Familiarity with Gibraltar Financial Services Commission regulations, General Data Protection Regulation (GDPR), and configuration management programs best practices.

What You Will Do

  • Enhance and maintain the Information Security Compliance Program.
  • Conduct regular information security and maturity assessments of Bitso’s information security controls, and follow up on treatment plans across the organization.
  • Continually validate the organization against the internal information security governance framework to ensure compliance, monitor for non-conformities, and prepare reports and metrics with recommended remediation strategies.
  • Collaborate with internal and external security audits, proactive technical assessments, and tracking findings and recommendations for appropriate action will be crucial aspects of your responsibilities.
  • Design technical testing protocols.
  • Define, implement, and maintain a configuration program of enterprise assets
  • Guide the security engineering team, liaise with various departments as necessary, and ensure the quality of information security programs and projects.

Research in Diversity, Equity, and Inclusion suggests that individuals may hesitate to apply for jobs if they do not meet all the listed criteria. At Bitso, we value diversity and your unique strengths could be just what we're looking for. If this role excites you but you don't match every point in the description, we still want to hear from you.

Who We Are

With over 7 million users, Bitso is the leading cryptocurrency platform in Latin America. We are developing the cryptocurrency ecosystem in the region and enabling financial inclusion. We believe crypto is the future of finance, and we’re committed to making it useful by providing equal access to safe and intuitive financial products.

We are here to make a lasting impact on our customer’s lives and we do so by embracing our core values:

  • Be Human: we delight our customers through great products, deep care and true empathy. We are humble and we take pride in understanding the views of others to help us see the full picture.
  • Drive Change: we're fearless pioneers committed to unlocking the crypto revolution for humanity. We move fast, take risks and work together to drive lasting impact.
  • Choose Bold Honesty: we seek the truth, especially when it’s uncomfortable, in our teams, products and business reality because that will uncover where we need to focus.
  • Be An Owner: our sense of urgency makes us have a bias towards action, where we prioritize exceptionally and are wise in allocating our time to ensure we always deliver creative and innovative results.

Learn more about our culture and values.

Compensation & Benefits

At Bitso, you are taking the front seat on the edge of crypto innovation, creating the next generation of crypto-powered products.

So for those willing to commit, adapt and pioneer the most important change of the century we offer:

  • Me Time program, including unlimited paid time off.
  • Remote-first work environment.
  • Employee Stock Option program.
  • Zero trading fees through our Bitso app.
  • Extended Family Leave policy: all birthing parents, non-birthing parents and adopting parents are eligible for a 4-months leave.
  • Premium health, dental and life insurances in Mexico, Brazil and Argentina.
  • Volunteering days.
  • Monthly stipend for gym memberships, relaxation activities, sports equipment, cooking classes, books, entertainment and more.

Want to leave an undoubtedly legacy with us? Fasten your seatbelt and join this spaceship, where you will find exponential growth and the opportunity to thrive!

  • These are the applicable requisites, although equivalent competencies in any of the above will also be considered.
  • This role is expected to work remotely.
  • To see our Privacy Policy please click here.
Bitso logo

Bitso

3 views

0 applied

Company Size

51-100

Markets

Fintech
Financial Services
Blockchain
Cryptocurrency
Finance
Finance Technology
Bitcoin
Visit Bitso
Share this job
Copy Permalink
Open roles at Bitso
Bitso logo
Bitso

Customer Lifecycle Manager

Remote

Full Time

#Marketing

#Cryptocurrency

#Fintech

#Lifecycle Marketing

#Retention

#Growth Marketing

#CRM Tools

#Data Analysis

#A B Testing

#Customer Engagement

#Campaign Management

Bitso logo
Bitso

Engineering Manager

Remote

Full Time

#Cryptocurrency

#Engineering

#Finance

#Software Architecture

#Distributed Systems

#Security

#Git

#CI CD

#Observability

#Splunk

#Datadog

#Leadership

Discover similar jobs
Sakurafinetekeureop logo
Sakurafinetekeureop

Manager Field Service Engineer

Remote

Full Time

#Engineering

#People Management

#Coaching

#Performance Management

#Commercial Awareness

#Stakeholder Management

#Regulatory Compliance

Spring Fertility logo
Spring Fertility

Information Security and Network Services Manager

120k - 160k USD

Remote

Full Time

#Technology

#Healthcare

#Network Engineering

#Information Security

#HIPAA

#Management

#SIEM

#IAM

#Incident Response

#VPN

Binance logo
Binance

Affiliate Relationship Manager

Remote

Full Time

#Marketing

#Cryptocurrency

#Relationship Management

#Affiliate Marketing

#Risk Management

#Communication

#Data Analysis

#Negotiation

I
Intuitionstaffing

Senior IT Project Manager

Remote

Full Time

#Software Engineering

#Project Management

#Confluence

#Jira

#SDLC

#Stakeholder Management

#Budget Management

#Risk Management

#Sprint Planning

Prosper logo
Prosper

Sr. Infrastructure Security Engineer

Remote

Full Time

#Technology

#Information Security

#Google Cloud Platform

#Microsoft Azure

#Terraform

#Wiz

#Google

#Python

#IAM

#Okta

#SIEM

QuestResourceLLC logo
QuestResourceLLC

Project Manager

Remote

Full Time

#Project Management

#Management

#Budget Management

#Design

#Procurement

#Quality Control

#Client Communication

#Risk Management

ShipBob, Inc. logo
ShipBob, Inc.

Security Engineer II (Cloud Security)

in flag
India

Remote

Full Time

#Information Security

#Cloud Security

#Azure Active Directory

#Python

#PowerShell

#SIEM

#IAM

#RBAC

#OAuth

#SAML

#MITRE

#Trust

Pnlfin logo
Pnlfin

Credit Risk Manager

Remote

Full Time

#Risk

#Risk Management

#Credit Risk

#Underwriting

#Data Strategy

#Monitoring

#Regulatory Compliance

#Stakeholder Management

Bitfinex logo
Bitfinex

Junior Risk Monitoring Analyst

Remote

Full Time

#Risk Management

#Financial Markets

#Risk

#Data Analysis

#SQL

#Python

#Trading

#Attention To Detail

#Written Communication

3E logo
3E

Account Manager

130k - 170k USD

Remote

Full Time

#Account Management

#SaaS Sales

#Regulatory Compliance

#Customer Retention

#Growth

#Relationship Building

#Salesforce

#AI Tools

#Data Analysis

#Renewal Management

#Consultative Sales

N
NewPageSolutionsInc

Python Developer

Remote

Contractor

#Technology

#Digital Health

#Software Development

#Python

#AWS Lambda

#AWS ECS

#Automated Testing

#Agile Methodologies

#Terraform

#Drupal

#PHP

Prosper logo
Prosper

Infrastructure Security Engineer

Remote

Full Time

#Fintech

#Cloud Security

#Information Security

#GCP

#Azure

#Terraform

#Wiz

#SIEM

#Python

Orium logo
Orium

Engagement Manager

Remote

Full Time

#Technology

#Digital

#Project Management

#Agile

#Risk Management

#Client Communication

#Teams

#Scrum

#Stakeholder Management

Magnesium Elektron logo
Magnesium Elektron

Business Development Manager

Remote

Full Time

#Business Development

#Sales Strategy

#Technical Sales

#Market Penetration

#Design

#Regulatory Compliance

#Account Management

O
Optain

Senior QA/RA Specialist

85k - 115k USD

Remote

Full Time

#Artificial Intelligence

#Health Care

#Medical Devices

#FDA Compliance

#Management

#Design

#ISO 13485

#ISO

#Risk Management

#Reporting

Everbridge logo
Everbridge

Senior Account Executive

120k - 130k USD

Remote

Full Time

#Event Management

#Risk Management

#Security

#Salesforce

#Access Control

#Pipeline Management

#Sales Methodology

#Enterprise Sales

#Consultative Selling

Heartbeat Health logo
Heartbeat Health

Principal Quality Engineer

Remote

Full Time

#Healthcare Technology

#Quality Engineering

#Test Automation

#Strategy

#Testing

#Risk Management

#Integrations

#FHIR

#HL7

#Kanban

Numan logo
Numan

Head of Engineering

Remote

Full Time

#Health Tech

#Engineering Leadership

#Digital Health

#Team Building

#Product Engineering

#Regulatory Compliance

#AI Tools

#Cross Functional Collaboration

#Technical Architecture

Quest Resource LLC logo
Quest Resource LLC

Project Manager

Remote

Full Time

#Project Management

#Scheduling

#Budget Management

#Design

#Risk Management

#Procurement

#Coordination

#Quality Control

#Client Communication

N
NewPage Solutions Inc

Python Developer

Remote

Contractor

#Technology

#Digital Health

#Continuous Delivery

#Python

#AWS Lambda

#AWS ECS

#Automated Testing

#Agile Methodologies

#Terraform

#Drupal

#PHP

#S3

#DynamoDB

Your dream job awaits.

Explore exciting opportunities, connect with top employers, and ignite your career.