Attendant/Cashier

Responsibilities and duties: For the Attendant position, you will be responsible for welcoming and providing the best possible humanized servi
- Minimum salary of R$ 2,100
- Meal allowance of R$ 350
- Health and dental insurance

**Job Description:** ---------------------- The professional will be responsible for technically leading the IT team and serving as the internal focal point for data governance, LGPD compliance, and Artificial Intelligence governance—acting as the liaison between infrastructure, information security, and the company’s strategic evolution. Key Responsibilities: Technical Leadership of the IT Team - Technically lead Infrastructure and Systems Analysts and the IT Intern, serving as the escalation point and technical reference for the team. - Organize and prioritize the team’s technical agenda, balancing operational demands, projects, and improvements. - Support team members’ professional development by promoting best practices and continuous learning. - Prepare periodic reports on infrastructure, security, and governance status for the Chief Technology Officer. Data Governance and LGPD Compliance - Act as the internal data compliance focal point, supporting the Data Protection Officer (DPO) in operational LGPD-related activities. - Conduct a complete inventory of personal data processed in each system and tool, mapping legal bases, retention periods, and data-sharing flows. - Manage the access and permission lifecycle across all corporate systems (Microsoft Entra ID, ERP CIGAM, Office 365, DGT Care, RH Gestor, and other tools). - Ensure practical implementation of documented policies: Information Security Policy (PSI), Record of Processing Activities (ROPA), Incident Response Plan, and RIPD Policy. - Conduct information security and LGPD awareness training and initiatives for all employees, maintaining documented evidence. Information Security and Infrastructure - Coordinate the deployment and operation of security tools: Fortinet Analyzer, DLP, antivirus, cybersecurity audit tools, and monitoring solutions. - Lead the formalization and execution of the periodic access permission review process. - Implement and manage the corporate tools governance policy: technical evaluation and approval of new SaaS tools prior to adoption. - Implement a formal IT onboarding and offboarding process integrated with HR, ensuring appropriate access provisioning and revocation. - Support security maturity assessments against ISO 27001 and NIST CSF frameworks, contributing to the certification roadmap. AI Governance and Implementation - Lead the mapping and inventory of all AI tools in use across the company, identifying sanctioned tools, uncontrolled usage (Shadow AI), and licensing overlaps. - Conduct technical evaluations of corporate AI tools—including Claude (Anthropic), Gemini, Cursor, and similar—based on security, data privacy, LGPD compliance, and alignment with DGT’s AI Governance Guidelines. - Support structured and secure implementation of corporate AI solutions: defining access profiles, acceptable use policies, data controls, and traceability. - Define and maintain the catalog of IT-sanctioned AI tools, communicating usage guidelines to employees and business units. - Support periodic reviews of the company’s AI Governance Guidelines to ensure updates reflecting technological and regulatory developments. - Monitor usage of deployed AI tools, identifying risks, deviations, and opportunities for improvement. Corporate Data and Business Intelligence - Conduct a comprehensive mapping of databases and system data sources (ERP CIGAM, Office 365, DGT Care, RH Gestor, and others). - Participate in the study and architecture of the corporate Data Lake, planned under Horizon 3 of the IT Strategic Plan. - Evaluate and propose BI and analytics solutions enabling an integrated data view to support leadership decision-making. **Mandatory Requirements:** ------------------------------ Technical Skills - Solid experience in corporate IT infrastructure: domain management (Microsoft Entra ID / Active Directory), endpoints, networks, and perimeter security. - Knowledge of information security tools: firewalls (Fortinet or similar), antivirus, DLP (Data Loss Prevention), SIEM, and log monitoring. - Experience managing access and permissions in Microsoft 365 ecosystems (SharePoint, Teams, Exchange, Azure AD). - Knowledge of data governance: system inventory, database mapping, data lifecycle management, and classification of sensitive information. - Ability to conduct vulnerability assessments, internal security audits, and periodic permission review processes. - Knowledge of LGPD and international security frameworks (NIST CSF, ISO 27001\): ability to translate regulatory requirements into practical technical actions. - Knowledge of or interest in Artificial Intelligence governance: evaluating, implementing, and controlling corporate AI tools securely and in alignment with LGPD and the company’s AI Governance Guidelines. - Desirable: experience with device monitoring and management tools (e.g., Nebula, Intune) and web perimeter protection (e.g., Cloudflare). Analytical and Strategic Skills - Ability to diagnose security and governance gaps, propose solutions, and independently drive action plans. - Strategic vision for IT maturity evolution: understanding of technology roadmaps and ability to align technical decisions with business objectives. - Skill in analyzing technological risks, prioritizing actions, and clearly and objectively communicating impacts to management. - Structured reasoning to conduct inventories, mappings, and audits of data and systems. Leadership and Communication Skills - Technical leadership of teams: ability to guide, develop, and organize the daily work of analysts with diverse specializations. - Clear communication with varied audiences: end users, department managers, and executive leadership—translating technical issues into accessible language. - Ability to propose, enable, and lead information security and LGPD awareness training and initiatives for all employees. - Consultative and proactive mindset: anticipating risks and needs rather than merely reacting to problems. Behavioral Skills - Ownership mindset: commitment to quality, availability, and security of systems under responsibility. - Organization and discipline to manage multiple concurrent priorities: operations, projects, and continuous improvement. - Attention to detail and rigor in documentation, recordkeeping, and evidence collection. - Ethics, discretion, and commitment to data confidentiality and privacy. - Adaptability to a rapidly digitizing environment, with appetite for continuous learning. Education - Bachelor’s degree in Information Technology, Computer Science, Software Engineering, Information Systems, or related fields. **Desirable Requirements:** -------------------------- Certifications (Preferred) - Information Security: CompTIA Security\+, CISSP, CISM, or equivalent. - Microsoft: MS\-500 (Microsoft Security Administrator), SC\-900, or similar. - Privacy and Data: CIPM, CDPSE (ISACA), or complementary training in LGPD/GDPR. **Employment Type:** -------------------------- CLT **PCD:** -------- NO **Benefits:** --------------- Meal/food allowance Mobility assistance Health and dental insurance Gympass Birthday day off **Work Location:** ---------------------- DGT TECNOLOGIA LTDA **Working Hours:** ------------------------ 08:00 TO 12:00 \- 13:12 TO 18:00
João Silva
Indeed · HR