




We are looking for a Cybersecurity Architect to join our team and work on strategic cybersecurity projects. The ideal candidate will have hands-on experience with reference frameworks (NIST CSF, ISO/IEC 27001, CIS Controls, MITRE ATT\&CK) and proficiency in multicloud environments (AWS, Azure, and GCP), applying native controls and security best practices. Requirements: * Minimum of 4 years of experience in information security, with at least 2 years focused on cybersecurity architecture. * Practical experience with security frameworks: NIST CSF, ISO/IEC 27001, CIS Controls, and MITRE ATT\&CK. * At least 2 years of experience working with cloud environments (AWS, Azure, and GCP), applying native security controls and best practice recommendations. * Knowledge of CSPM (Cloud Security Posture Management) and CWPP (Cloud Workload Protection Platforms), with implementation of controls across workloads, networks, and identity. * Solid understanding of layered security: network, identity, application, data, and endpoints. * Experience in projects involving web applications, microservices, APIs, and third-party integrations. * Ability to develop technical documentation such as HLD, LLD, control matrices, and risk models. * Bachelor’s degree completed in technology, engineering, or related fields. * English level B2 (intermediate-advanced) for reading, writing, and technical interaction with global teams. Preferred Qualifications (will be considered a plus): * English level C1 (advanced) will be considered an advantage. * Knowledge or experience with CNAPP (Cloud-Native Application Protection Platforms), including integrated visibility across CSPM, CWPP, CIEM, and runtime protection (WIZ, Tenable, Palo Alto, Orca). * Knowledge or experience with security architecture frameworks such as SABSA, TOGAF with security extension, or Open Security Architecture. * Experience with DevSecOps practices, including integration of SAST, DAST, SCA, and security controls into pipelines. * Certifications such as AWS Security Specialty, AZ-500, GCP Security Engineer, CISSP, CISM, or equivalent. * Experience in projects focused on Zero Trust, logical segmentation, hardening, and defensive architecture. * Prior experience in security consulting or highly regulated environments (LGPD, PCI, SOX). * Practical knowledge of CI/CD and security automation through scripts or tools like Terraform/Ansible.


