Description
Job Summary:
A professional to manage information security projects and vulnerabilities, integrating with IT operations to ensure compliance with standards.
Key Highlights:
1. Information Security Project Management
2. End-to-End Vulnerability Management Cycle Coordination
3. Integration with IT Operations and Compliance Assurance
**Responsibilities and Duties**
-----------------------------------
* Information Security Project Management
* Plan, coordinate, and execute on\-premise security-related projects (hardening, patching, upgrades, compliance).
* Develop schedules, manage risks, costs, and stakeholder communications.
* Ensure timely delivery in accordance with defined standards.
* Vulnerability Management
* Operate and coordinate the full cycle: identification, prioritization, remediation, and reporting.
* Integrate vulnerability management (VM) tools (Tenable, Qualys, Rapid7\) with internal processes.
* Define SLAs, monitor KPIs, and report status to management.
* Integration with IT Operations
* Collaborate with infrastructure, network, and application teams to execute projects.
* Support hardening, patch management, and security initiatives in on\-premise environments.
* Ensure adherence to regulations (LGPD, ISO 27001, NIST).
Prepare reports for audits and executive committees.
*
**Requirements and Qualifications**
------------------------------
* Proven experience in Project Management (PMI, Scrum, Kanban) and Information Security.
* Knowledge of vulnerability management tools (Tenable, Qualys, Rapid7\).
* Experience with patch management, hardening, and on\-premise environments.
* Familiarity with SIEM, ITSM (ServiceNow/Jira), and automation (PowerShell/Python).
* Cloud security (Azure/AWS) knowledge is a plus.
* Desired Certifications:
* PMP, ITIL, CISSP, CEH, AZ\-500\.
* Intermediate or Advanced Spanish.