Qualfon Data Services Group, LLC

ANALYST II, GOVERNANCE, RISK AND COMPLIANCE

ID 2026-105115
Category
Information Technology
Address
Eurocenter, Ulloa,Cuarto Piso Torre 1,Frente Cenada
City
Barreal de Heredia
Country
CR
Position Type
Full-Time
Remote
No

Overview

Our Mission & Values:

Qualfon’s mission is to help as many people as possible pursue their total vocation—as individuals and as members of society—by creating an ever-growing number of job opportunities as we strive to become the outsourcer of choice for our clients.

 

What we offer:

  • All team members can further their education and earn a college degree through the Qualfon University program
  • We lead by example to ensure our fantastic team members and supervisors embrace and live the Qualfon Mission & Values
  • Team members have FREE access to personal and professional support through the Qualfon coach program
  • Competitive wages
  • Opportunities to earn additional income through incentives
  • Qualfon is dedicated to ensuring all team members have Fun_Work!

Responsibilities

You will be responsible for supporting and coordinating Governance, Risk, and Compliance activities, ensuring alignment with organizational policies, regulatory requirements, contractual obligations, and information security standards. They coordinate and support internal, external, client, and regulatory audits, partner with regional and global stakeholders to identify and manage risk, address audit findings and corrective actions, and promote consistent implementation of the organization’s GRC program.

Qualifications

Education

  • Bachelor's degree in Information Security, Cybersecurity, Information Technology, Business Administration, Risk Management, or a related field preferred.
  • An equivalent combination of relevant education, professional certifications or credentials, and practical GRC experience may be considered.
  • Relevant professional certifications or credentials in information security, audit, risk, or compliance are preferred but not required. Examples include CompTIA Security+, CISA, CRISC, CISM, CISSP, and training or credentials related to ISO/IEC 27001, PCI DSS, SOC2, HIPAA, NIST.

 

Experience

  • 2–4 years of experience in Governance, Risk, and Compliance, Information Security, IT audit, risk management, or a related field.
  • Experience supporting internal, external, client, and/or regulatory audits, including audit preparation, evidence collection, documentation, and follow-up activities.
  • Experience performing or supporting risk assessments, compliance assessments, control reviews, and security or compliance gap analyses.
  • Experience tracking audit findings, risks, remediation activities, and corrective action plans through closure.
  • Experience working with information security or compliance frameworks such as ISO/IEC 27001, SOC 2, NIST, PCI DSS, HIPAA, or similar regulatory and contractual requirements is preferred.
  • Experience assessing or supporting compliance with client contractual security requirements, organizational policies, and applicable regulatory requirements.
  • Experience performing or supporting recurring reviews of information security policies, procedures, and controls to validate adherence and identify compliance gaps.
  • Experience supporting vendor or third-party security and compliance reviews is preferred.
  • Experience working with cross-functional and geographically distributed teams is preferred.
  • English and Spanish bilingual candidate preferred.

 

 

EQUAL OPPORTUNITY STATEMENT QUALFON is an equal opportunity employer. QUALFON provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sex (including pregnancy, childbirth and related medical conditions), sexual orientation, gender identity, national origin, age, disability, genetic information (including testing and characteristics), marital status, ancestry, status as a covered veteran, uniformed servicemember status and any other characteristic protected under applicable federal, state or local law.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.