Description
Job Summary:
A professional to monitor, investigate, and resolve security incidents; propose improvements; and advise teams on secure practices and compliance with standards such as LGPD and ISO 27001.
Key Highlights:
1. Threat and security incident monitoring and response
2. Leadership in information security projects
3. Serving as a technical reference and developing analysts
**Who We Are?**
We are a modern company focused on developing proprietary technology solutions, offering products and services in public safety, telecommunications, and IT. We consistently prioritize efficiency and optimal cost\-benefit for our customers.
**Your Main Responsibilities:**
* Continuously monitor the IT environment to identify, analyze, and respond to threats and security incidents;
* Conduct security incident investigations and support the definition of response and mitigation plans;
* Resolve high-complexity security issues requiring in-depth analysis, research into new solutions, and interdepartmental collaboration;
* Perform vulnerability assessments and recommend corrective actions to reduce risks;
* Support internal and external audits, ensuring adherence to applicable policies, standards, and regulations (LGPD, ISO 27001, etc.);
* Develop, review, and implement information security policies, standards, and procedures;
* Advise technology teams and business units on applying secure practices during system development, data usage, and critical operations;
* Support the management of security tools (SIEM, antivirus, firewalls, etc.), including evaluation, selection, and continuous optimization of new technologies;
* Track trends, emerging technologies, and cyber threats, proposing and leading initiatives for continuous improvement of security processes and controls;
* Promote training sessions, awareness campaigns, and information security initiatives;
* Serve as a technical reference for the team, mentoring and developing junior-level analysts;
* Propose and lead comprehensive information security projects—from conception through implementation—ensuring alignment with business objectives;
* Collaborate in reviewing and defining security architectures for new systems and infrastructures, ensuring security principles are embedded from the design phase;
* Other duties related to the position.
**What We Expect From You (Mandatory):**
* Completed Bachelor’s degree in Computer Science, Information Systems, Computer Engineering, or related fields;
* Solid knowledge and practical experience in security incident management, vulnerability analysis, and environment monitoring (SIEM);
* Experience with security tools (firewalls, enterprise antivirus, DLP, IDS/IPS, etc.);
* Familiarity with standards and best practices (ISO 27001, NIST, COBIT, LGPD);
* Knowledge of networks, operating systems (Windows/Linux), and cloud environments (AWS, Azure, or GCP).
**Nice-to-Have Qualifications:**
* Experience in regulatory compliance projects (LGPD, GDPR, PCI\-DSS, SOX);
* Experience with DevSecOps and integrating security into development pipelines;
* Advanced knowledge of cloud security, cryptography, and identity and access management (IAM);
* Experience with risk management frameworks (ISO 31000, FAIR);
* Postgraduate degree or MBA in Information Security, Cybersecurity, IT Governance, or related fields;
* Recognized security certifications such as CISSP, CISM, CISA, CompTIA Security\+, CEH, or similar.
**Benefits Starting Upon Hiring:**
* Meal/food allowance of R$ 52.00 per business day;
* Transportation voucher (6% payroll deduction);
* Life insurance (at no cost);
* Partnerships with SESC/SENAC;
* Childcare allowance (up to R$ 300.00 for children up to 5 years and 11 months, subject to eligibility criteria);
* Educational institution agreements.
**After Probation Period:**
* Unimed Health Plan (no monthly fee; R$ 10 co-payment per consultation — extendable to children under 18);
* Dental Uni Dental Plan (at no cost — extendable to children under 18);
* Pharmacy Benefit (monthly credit of R$ 300.00, with deduction only for actual amount used).