




Job Summary: Act as an Information Security Specialist (IAM), leading the design, evolution, and operation of corporate identity solutions to ensure security and compliance. Key Highlights: 1. Serve as a technical reference in Identity and Access Management 2. Design and evolve IAM and CIAM architectures 3. Lead IGA initiatives and optimize authentication flows **About Elo** **We are a 100% Brazilian company!** Elo is one of the leading payment technology companies in Brazil. With over ten years of history and more than 43 million active cards issued in partnership with 38 issuers. With our uniquely Brazilian and innovative DNA, our mission is to foster digital payment inclusion across Brazil. We offer a comprehensive portfolio of credit, debit, prepaid, and specialized cards for individuals and businesses. Additionally, we design customized solutions for enterprises—whether through our tokenization and fraud prevention platforms, contactless payments via QR Code and NFC, or our specialized consulting services aimed at generating more business for our partners. We respect individuality and promote an inclusive culture focused on equity and valuing differences (e.g., gender, religion, persons with disabilities, LGBTQIAP+, race and ethnicity). All our job openings reflect this commitment. Want to learn more about Elo? Visit: https://www.elo.com.br/ Interested? Then come discover more about the challenge we have for you! **Responsibilities and Duties** *As an* ***Information Security Specialist (IAM)***, *your mission will be:* * Serve as a technical reference in Identity and Access Management, leading the design, evolution, and operation of corporate identity solutions to ensure security, scalability, regulatory compliance, and a seamless experience for internal users and customers. This role requires strong expertise in architecture, automation, and identity governance within complex and highly regulated environments. **Key Responsibilities:** * Design and evolve IAM and CIAM architectures, considering integrations, authentication/authorization standards, governance, and business requirements. * Lead Identity Governance & Administration (IGA) initiatives, including role modeling, segregation of duties (SoD), identity lifecycle management, and automations. * Implement and optimize authentication, authorization, and provisioning workflows—with emphasis on security, scalability, and user experience. * Act as a Subject Matter Expert (SME) on identity solutions, supporting security, infrastructure, development, and product teams. * Conduct risk assessments, architectural reviews, and provide technical recommendations for new projects and integrations. * Ensure compliance with applicable regulations and standards in the payments sector. * Support internal and external audits by providing evidence, analyses, and improvement recommendations. * Monitor market trends, emerging technologies, and best practices in IAM, CIAM, PAM, and Cloud Identity. **Requirements and Qualifications** *For this challenge, we need you to have:* * IAM/CIAM: solid experience in designing, implementing, and operating enterprise solutions. * SailPoint IdentityNow: governance, workflows, connectors, automations, and role modeling. * Microsoft Identity: Entra ID (Azure AD), Active Directory, Conditional Access, MFA, SSO, SCIM. * Okta/Auth0: authentication, authorization, pipelines, integrations, and user management. * Identity Architecture: workflow design, standards (OAuth2, OIDC, SAML, FIDO2\), diagrams, integrations, and APIs. * IGA Automation: development and maintenance of workflows, connectors, provisioning/deprovisioning rules. * Cloud Identity: experience with AWS IAM/IAM Identity Center, GCP IAM, Oracle Identity Cloud (OIC), and Azure. * PAM/PIM: knowledge of Privileged Access Management solutions (e.g., Segura, CyberArk, BeyondTrust). * SAP IAG: governance, SoD, integrations, and approval processes. * Experience with hybrid environments and Zero Trust architectures. * Knowledge of security frameworks and standards: NIST CSF, ISO 27001/27002, PCI\-DSS, PCI\-PIN, LGPD. * Experience with audits, internal controls, and compliance processes. * Familiarity with microservices architectures, APIs, gateways, and integrations with payment platforms. * Experience monitoring and responding to identity-related incidents. *Additionally, the following would be advantageous:* * Advanced English proficiency for reading, writing, and speaking. * Academic background in Information Security, Computer Science, Information Systems, or related fields (including MBA, postgraduate degrees, or technical certifications). * Solid knowledge of AI applied to IAM (GenAI, Agentic AI), including intelligent governance automation, anomaly detection, and behavioral analysis. * Relevant certifications (e.g., SailPoint, Okta, Microsoft, AWS, GCP, ISO, PCI, CISSP, CCSP). **Additional Information** **To work at Elo, we seek people who:** * Demonstrate proactive attitudes and strive to exceed results; * Respond quickly to change, focusing on simplicity in execution; * Collaborate effectively in teams, sharing knowledge and recognizing each colleague’s performance and importance; * Value open dialogue and honest feedback; **These reflect our cultural pillars: “Team Player, Exceed Results, Innovate & Experiment, Customer-Centric, Play Fair”.** **At Elo, our culture embodies the ‘Elo Way’ of getting things done!** **Check out our benefits and perks:** * Profit Sharing Program (PPR); * Health insurance (Bradesco — Co-payment); * Optional dental insurance (Bradesco); * Life insurance (Banco do Brasil); * Optional private pension plan (You may contribute up to 7\.8% of your salary, with Elo matching between 100% and 200%, subject to plan rules); * Meal/food allowance of BRL 1,800.00; * Free Balance of BRL 150.00 for credit card use; * Christmas Card worth BRL 850.00; * Remote Work Allowance: BRL 200.00 for hybrid model and BRL 300.00 for fully remote model; * Mobility Allowance: BRL 400.00; * Daycare Assistance for mothers and fathers; * Culture Allowance (to be used for theater, cinema, or bookstores); * Extended Parental Leave (for same-sex couples, fathers, adoptive parents, etc.); * Birthday Day Off; * Well-being platform focused on mental and nutritional health; * WellHub and TotalPass (network of gyms and studios for sports activities). **Important:** **Our company offers three work models: hybrid, in-office, and fully remote—but please note that the adopted model may vary depending on the specific dynamics and needs of each department.** **Our office is located in Barueri/SP at Alameda Xingu, 512 \- Alphaville Industrial.** We are one of the leading payment technology companies in Brazil, with over ten years of history and more than 43 million active cards issued in partnership with 38 issuers. With our uniquely Brazilian and innovative approach, our **mission is to foster digital payment inclusion across Brazil**. We offer a comprehensive portfolio of credit, debit, prepaid, and specialized cards for individuals and businesses. Additionally, we design customized solutions for enterprises—whether through our tokenization and fraud prevention platforms, contactless payments via QR Code and NFC, or our specialized consulting services aimed at generating more business for our partners. Want to learn more about us? Visit elo.com.br


