Gerente de Segurança Ofensiva na C&A encarregado de liderar a gestão de vulnerabilidades digitais e segurança ofensiva. Envolvendo equipe técnica e planejamento anual de testes de segurança.
Responsibilities
Define and evolve the Vulnerability Management vision and roadmap for typical retail environments, including e-commerce, mobile applications, APIs, partner integrations, payment methods and corporate infrastructure.
Lead the Offensive Security program, covering penetration tests on digital platforms, in-store systems, corporate environments and new projects.
Plan, prioritize and approve the annual security testing calendar, taking into account business impact, internet exposure, retail seasonality (e.g., critical commercial dates) and regulatory requirements.
Manage multidisciplinary teams (Specialists, Seniors, Mid-level and Junior engineers), promoting technical development, process standardization and a security culture.
Define, monitor and report KPIs and OKRs that translate technical risk into business impact (operational continuity, reputation, customer data and payment methods).
Coordinate and govern external security testing vendors, ensuring technical quality, methodological adherence and effectiveness of deliverables.
Work closely with Technology, Product and other security teams, supporting prioritization and risk mitigation decisions.
Conduct analyses and make decisions in critical scenarios, such as emergency vulnerabilities, breached SLAs and support for security incidents.
Represent Offensive Security and Vulnerability Management topics in executive forums, committees and audits, both internal and external.
Ensure the program’s compliance with internal policies, standards and regulatory requirements, such as LGPD, PCI DSS and other obligations applicable to retail.
Requirements
Strong experience in Offensive Security, Penetration Testing and Vulnerability Management in large-scale environments.
Practical experience with digital retail environments such as e-commerce, mobile apps, APIs, third-party integrations and payment platforms.
Proficiency with security testing methodologies (PTES, OWASP, NIST 800-115, MITRE ATT&CK) and risk-based prioritization.
Experience leading technical teams with a focus on delivery, maturity and continuous improvement.
Ability to translate technical vulnerabilities into business risk, supporting executive decision-making.
Strong written and verbal communication skills with technical audiences, managers and executives.
Organized, analytical and results-oriented profile.
Ability to work collaboratively in dynamic environments with multiple stakeholders.
Benefits
Medical and Dental Insurance (Primary and Dependents)
Dr. C&A - Telemedicine and Teletherapy
Annual bonus
Parking or Commuter Allowance (Work location Alphaville – Barueri/SP)
Birthday Off — one paid day off during your birthday month
Business Manager sourcing and developing new business for US Foods. Achieving sales targets and providing support to Territory Managers in foodservice distribution.
Data Management Senior Manager provides strategic leadership for data management initiatives at Wells Fargo. Responsible for data quality, governance, and team development.
Senior Branch Network Management Trainee at Wells Fargo leading teams in the Consumer Banking and Lending division. Aiming to enhance customer experience and drive business growth.
Data and Application Integration Senior Manager overseeing strategy, architecture, and operations for Information Technology at Boeing. Leading cross - functional teams to deliver integrated technology solutions.
National Manager leading Learning & Development to deliver modern, data - driven learning experiences across Intact Insurance. A hands - on leadership role focusing on facilitation excellence and team management.
Partner/Reseller Manager developing and managing partnerships within the UK geospatial market. Enabling resellers and partners to position and support Bluesky’s geospatial products and solutions.
Field Real Estate Manager responsible for strategic management of real estate initiatives at LPL Financial Corp. Overseeing lifecycle of real estate processes across designated portfolio with team collaboration.
Senior Manager, Claims responsible for building a team and leading strategic initiatives at ICW Group. Focus on regulatory compliance, operational efficiency, and superior claim outcomes.
Senior Manager leading claims operations with strategic initiatives and team development at ICW Group. Driving compliance, efficiency, and enhancing customer experiences nationally.
Senior Adaptive Planning Analyst optimizing financial planning processes for Shake Shack. Responsible for managing Adaptive Planning system configurations and integrations for accurate financial forecasting.