




Description: * Bachelor's degree in Computer Science, Computer Engineering, Information Systems, or related field. * Minimum of 5 years of proven experience in Information Security roles. * Solid technical and practical knowledge in at least 3 of the following areas: Incident Analysis and Response (IR), Identity and Access Management (IAM/PAM), Cloud Security (AWS, Azure, or GCP), Network Security Architecture, Vulnerability Assessment and Penetration Testing. * Proficiency in SIEM tools (e.g., Splunk, ELK, Sentinel) and log analysis. * Experience implementing and maintaining security frameworks (e.g., ISO 27001, NIST, CIS Controls). * Fluency in technical English reading and writing. ADVANTAGES:* Internationally recognized security certifications (e.g., CISSP, CISM, Cloud Security Certifications). * Prior experience with DevSecOps methodologies and security automation. * Experience in LGPD compliance projects and PCI-DSS compliance projects. * Develop, implement, and review information security policies, standards, and guidelines. * Conduct and manage security risk and vulnerability assessments (including penetration tests), proposing and monitoring remediation plans. * Ensure compliance with relevant regulations and standards (e.g., LGPD, ISO 27001, PCI-DSS, etc.). * Lead and coordinate security incident response (CSIRT), including digital forensic investigation, containment, eradication, and recovery. * Maintain and test the Incident Response Plan. * Design and implement robust security architectures for cloud environments (AWS and Azure). * Possess strong expertise in identity management and cloud environment configuration management. * Administer and maintain security solutions such as Firewalls, IDS/IPS, WAF, SIEM, EDR/XDR, DLP, and Identity and Access Management (IAM/PAM) tools. * Actively monitor security events and analyze logs to detect suspicious activities. * Develop and deliver security awareness training and campaigns for all employees. * Serve as a technical security advisor to development teams (Security by Design/DevSecOps) and infrastructure teams. 2512200202551874563


