




Job Summary: Professional responsible for continuous vulnerability management across infrastructure, applications, and services, ensuring information security posture. Key Highlights: 1. Full lifecycle vulnerability management 2. Strategic action to reduce the attack surface and mitigate risks 3. Continuous improvement of security processes and controls Description We are seeking a professional to lead continuous vulnerability management in infrastructure, application, and service environments—from identification through validation of remediation. The candidate will play a strategic role in reducing the attack surface, mitigating cyber risks, and strengthening the organization’s information security posture, ensuring compliance with standards, internal policies, and regulatory requirements. Requirements **Key Responsibilities:** Manage the full vulnerability management lifecycle, including identification, analysis, classification, prioritization, remediation, and validation of fixes. Operate, administer, and enhance vulnerability scanning and monitoring tools across on-premises, cloud, and hybrid environments. Technically analyze scan results, eliminating false positives and assessing the actual business-risk impact of vulnerabilities. Collaborate closely with Infrastructure, Development, and DevOps teams to support patching, hardening, and remediation activities within defined SLAs. Track action plans to ensure timely execution and effectiveness of mitigation measures. Develop and maintain security metrics (KPIs and KRIs), as well as technical and executive reports on environmental exposure levels and security maturity. Support internal and external audits, compliance processes, and information security risk assessments. Contribute to the continuous improvement of security processes, policies, and controls. Employment Type: Permanent CLT Compensation: R$1.700,00 - R$2.100,00 per month Benefits: * Medical insurance * Dental insurance * Life insurance * Meal allowance * Transportation allowance Work Location: On-site


