Hiring.Camp

Information Security Governance Manager

Ebanx

·

Jun 17, 2026

Location
Curitiba | On-site
Workplace
Onsite
Department
Cloud, Security & IT Ops
Seniority
Manager
Education
Master
Source
Greenhouse

Description

At EBANX, you’ll help expand access to payments and technology in some of the world’s most dynamic markets. We’re a unicorn-status fintech, AI-powered, and scaling fast across 29 countries and counting.

Our platform connects leading global companies to more than 1 billion consumers, enabling seamless cross-border payments where it matters most. We build with purpose, move with speed, and create solutions that are both innovative and inclusive.

If you’re looking to be part of a company that’s transforming the future of payments with clarity, ambition, and real-world impact — we’d love to meet you.
 

Your day-to-day impact:
  • Lead and develop a high-performing Information Security team focused on Risk Management and Security Governance;
  • Drive the identification, assessment, prioritization, and treatment of information security risks, ensuring clear visibility and effective communication of risk exposure to senior leadership;
  • Oversee the implementation, maintenance, and continuous improvement of compliance programs and certifications, including ISO/IEC 27001, ISO/IEC 27701, ISO/IEC 27018, and PCI DSS;
  • Define and maintain the Information Security governance framework, including policies, standards, procedures, and control oversight;
  • Coordinate internal and external audits, security assessments, and the execution of remediation and risk treatment plans;
  • Define, monitor, and report security KPIs, KRIs, and program effectiveness metrics, providing actionable insights to business and executive stakeholders;
  • Drive the organization's security awareness and culture strategy through training programs, phishing simulations, targeted campaigns, and employee engagement initiatives;
  • Partner with cross-functional teams (Legal, Risk, HR, Engineering, Product, and Compliance) to embed security and risk management practices into business processes and strategic initiatives;
  • Ensure security requirements are incorporated into new products, services, vendors, and third-party relationships from the earliest stages of engagement;
  • Provide regular reporting on security governance, compliance status, risk landscape, and strategic initiatives to leadership and relevant governance forums;
  • Foster a culture of accountability, continuous improvement, and security-first decision-making across the organization.

Must-haves to shine in this role:
  • Proven experience leading teams, with the ability to motivate, coach, and develop people;
  • Strong expertise in Information Security Risk Management, including risk identification, assessment, prioritization, treatment, and executive-level reporting;
  • Deep knowledge of Information Security Governance and Compliance, including risk management, internal controls, and security frameworks;
  • Hands-on experience with global standards and certifications such as ISO/IEC 27001, ISO/IEC 27701, ISO/IEC 27018, and PCI DSS;
  • Strong communication skills, with the ability to translate technical risks into business impacts for both technical and executive audiences;
  • Proven track record managing audits, assessments, and external regulatory demands;
  • Analytical mindset with a business-oriented approach, connecting security decisions, risk exposure, and compliance requirements with strategic goals;
  • Experience designing and running awareness programs that go beyond checklists and truly shift culture;
  • Passion for innovation and AI-driven efficiency, with a proactive approach to leveraging AI and automation to optimize processes, reduce operational overhead, and enhance operational effectiveness;
  • Advanced English — you’ll often interact with international stakeholders.

Bonus points if you have:
  • Advanced certifications in Information Security, Risk Management, or Governance, such as ISO/IEC 27001 Lead Auditor/Lead Implementer, CRISC, CISM, CISSP, or similar;
  • Experience working in global or multicultural environments, with distributed teams and international operations;
  • Familiarity with additional governance and risk frameworks such as NIST CSF, COBIT, SOX, or third-party risk management programs;
  • Knowledge of cloud security standards (e.g., AWS, GCP, Azure) and secure development practices;
  • Hands-on experience with awareness platforms (e.g., KnowBe4, Wombat, MetaCompliance) and phishing simulation tools;
  • Experience presenting security and risk topics to executive committees, boards, or senior leadership forums;
  • Previous involvement in security incident response, including coordination and post-incident reviews;
  • Passion for building a security culture, storytelling, and engaging people in non-technical areas;
  • Hands-on experience using Artificial Intelligence (AI) or Machine Learning to automate governance processes, enhance risk analysis, streamline controls management, or improve compliance monitoring.

 

EBANX offers:

  • WAVES Program: Annual bonuses based on the company’s performance.

  • Meal/Food Allowance: Credit provided on a flexible benefits card.

  • EBANX Education: Financial support for undergraduate, graduate, and MBA programs to support your professional growth.

  • EBANX Skills: Budget dedicated to workshops, courses, and certifications to encourage your continuous development.

  • Language Classes: Spanish, English, and Portuguese lessons for your personal and professional development.

  • EBANX Health: Comprehensive medical and dental plans fully covered for the employee, plus subsidies for dependents to take care of your and your family’s well-being.

  • EBANX Family: Childcare assistance, extended parental leave for caregivers, and support programs for pregnant employees and children.

  • Life Insurance: Fully paid by EBANX.

  • Transportation: Parking assistance or transportation vouchers, depending on your needs.

  • EBANX Flexible: A special day off on your birthday, semi-flexible working hours (8 hours/day, Monday to Friday), and year-end recess between Christmas and New Year’s without affecting your vacation days.

  • EBANX Play: Well-being program including access to Wellhub, e-Sports, and partnerships with SESC.

  • Blue Club: Exclusive discounts at bakeries, restaurants, stores, courses, and more.

 

Follow us on LinkedIn and check out our Instagram to learn more about the #ebanxlife.

Skills

AWSAzureGCPMachine LearningSOXRisk ManagementComplianceCISSP

Similar Jobs

28

Information Security Governance Specialist

Frontify · Sankt Gallen Metropolitan Area · Hybrid

2 weeks ago

Information Security Governance Specialist

Frontify · London Area · Hybrid

2 weeks ago

Information Security Governance Expert

Roche · Madrid Osiris, Spain

1 month ago

Working Student Information Security Governance & Culture

Puma · PUMA Way Headquarters, Germany

1 month ago

AI and Automation Engineer-Information Security Governance

Roche · Madrid Osiris, Spain

1 month ago

Information Security Governance, Risk and Compliance Specialist

Globalwebindex · Athens, GR +1 · Hybrid

1 month ago

Information Security Governance, Risk and Compliance Specialist

Globalwebindex · London, UK · Hybrid

1 month ago

Director of Information Security Governance & Compliance

Sobi · Stockholm, Stockholm County, Sweden · Hybrid

2 months ago

Information Security Governance, Risk, Compliance (GRC) Supervisor

ARUP Laboratories · Salt Lake City, UT

2 months ago

Associate - Information Security Governance - IT

HKEX Career · HK-TKO 5/F, Hong Kong

3 months ago

Senior Information Security Governance Consultant

Thales · Zaventem_EXC, Belgium · Remote

3 months ago

Information Security Governance Consultant

AIA Careers · PH-MPI-Makati City, TWC, Philippines

3 months ago

Information Security Governance Specialist - Information Security Enablement Section, Information Security & Privacy Governance Department (ISPD)

Rakuten · Rakuten Crimson House, Japan

4 months ago

Information Security Governance Risk & Compliance Assoc. Mgr.

Morae · Bangalore, India

1+ year ago

Director Information Security & Governance

Express · Columbus, OH, US

1+ year ago

AI Risk Management Specialist - AI Governance Management Section, Information Security & Privacy Governance Department (ISPD)

Rakuten · Rakuten Crimson House, Japan

1 week ago

Information Security Intern – Governance, Risk & Compliance (GRC)

Cc · LONDON BOND STREET HOUSE, United Kingdom

1 week ago

Information Security Specialist - Global ISMS Operation & Support Group, Information Security & Privacy Governance Department (ISPD)

Rakuten · Rakuten Crimson House, Japan

1 month ago

Vice Manager, IT Security Group - Information Security Management Office, Information Security & Privacy Governance Department (ISPD)

Rakuten · Rakuten Crimson House, Japan

1 month ago

Information Governance Specialist/Domestic Group Company Support of Communication and Energy Company - Rakuten Mobile & RTS Support Group, Information Security & Privacy Governance Department (ISPD)

Rakuten · Rakuten Crimson House, Japan

1 month ago

Privacy Expert, Global Privacy - Global DPO Office, Information Security & Privacy Governance Department (ISPD)

Rakuten · Rakuten Crimson House, Japan

1 month ago

Director of Information Security & AI Governance

Flagstone · London

2 months ago

Vice Group Manager, Information Security Policy Group - Information Security Management Office, Information Security & Privacy Governance Department (ISPD)

Rakuten · Rakuten Crimson House, Japan

5 months ago

Head of the Regional Governance Unit for Information Security and Data Protection - Bosch Switzerland 100% (f/m/div.) REF290730T

Robert Bosch · Zuchwil, SO, Switzerland · Hybrid

1 month ago

Information Security Analyst 5, Governance, Risk & Compliance (GRC)

SanDisk · Batu Kawan, Penang, Malaysia

1 month ago

Head of Governance, Risk and Compliance (Information Security)

Leonardocompany · GB - Basildon - Home Based, United Kingdom +9 · Hybrid, Remote

3 days ago

Information Security Specialist - Technology Asset Governance and Risk Management

Td · 310/320 Front Street West Corporate, Toronto, Ontario, Canada · Hybrid

1 week ago

Information Security Senior Engineer - Identity Governance

Equinix · Dallas Infomart Office DAI, United States of America · Hybrid

1 month ago