Cyber Security Analyst
Risk Evaluation & Compliance Verif MED
Colombia - Medellin
Responsabilidades Generales
Key Responsibilities
- Lead the security oversight of change management processes, ensuring alignment with organizational policies and regulatory requirements.
- Collaborate with IT, DevOps, and business units to assess the security impact of proposed changes.
- Develop and maintain security controls and documentation for change management workflows.
- Monitor and report on change-related security incidents, risks, and mitigation strategies.
- Conduct risk assessments and provide recommendations for secure implementation of changes.
- Ensure compliance with frameworks such as NIST, ISO 27001, HIPAA, PCI-DSS, and internal governance standards.
- Support audits and provide evidence of secure change management practices.
- Train and guide teams on secure change practices, including configuration management and version control.
- Continuously improve change management processes through automation, metrics, and feedback loops.
Educación y Experiencia Requerida
Minimum Education:
Bachelor's degree in one of the following fields:
- Information Security
- Cybersecurity
- Computer Science
- Information Technology
- Management Information Systems (MIS)
Security Certifications (Recommended):
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CompTIA Security+
- GIAC certifications (e.g., GSEC, GCCC)
Change Management Certifications:
- ITIL Foundation or Intermediate (especially in Change Management)
- PMP (Project Management Professional) or CAPM (Certified Associate in Project Management)
Conocimiento y Destrezas Requeridas
- 3+ years of experience in information security, with direct involvement in change management or IT governance.
- Strong understanding of security frameworks, risk management, and compliance standards.
- Experience with ITIL-based change management processes.
- Excellent communication and stakeholder engagement skills.
- Ability to analyze complex systems and propose secure, scalable solutions.
- Familiarity with SIEM tools, vulnerability management platforms, and configuration management databases (CMDBs).
Información Adicional
Lunes a Viernes de 8am a 6pm
Evertec Group, LLC es un Patrono con Igualdad de Oportunidades de Empleo