Analyst of Information Security focusing on Governance and Project Risk Analysis in software development. Join a dynamic team collaborating on security in tech projects.
Responsibilities
Support information security assessments for projects and applications.
Conduct technical and compliance risk analyses, proposing mitigation measures.
Collaborate in the creation, review and implementation of security policies, standards and guidelines.
Participate in the validation of internal controls based on frameworks such as ISO 27001, OWASP, LGPD, GDPR and NIST.
Support the development of security reports and metrics for senior management.
Contribute to the preparation of onboarding materials, training and awareness campaigns.
Monitor the remediation of nonconformities and security action plans.
Requirements
Essential knowledge of information security standards and best practices (ISO 27001, NIST and OWASP).
Familiarity with secure software development processes (DevSecOps).
Ability to interpret security laws and regulations (LGPD, BACEN, SUSEP, etc.).
Good communication skills for preparing reports, presentations and technical documentation.
Analytical and collaborative profile with an interest in advancing in Governance and Risk.
Preferred / Nice to have
Participation in projects implementing ISO 27001 controls.
Knowledge of risk management frameworks (ISO 31000, OCTAVE, FAIR).
Technical-level English or Spanish.
Experience with vulnerability management, compliance and audit tools.
Desirable entry-level information security certifications (e.g., ISO 27001 Foundation, CompTIA Security+).
Benefits
Health and dental insurance;
Food and meal vouchers;
Childcare assistance;
Extended parental leave;
Partnerships with gyms and health and wellness professionals through Wellhub (Gympass) and TotalPass;
Profit sharing (PLR);
Life insurance;
Continuous learning platform (CI&T University);
Employee discount club;
Free online platform dedicated to promoting physical and mental health and well-being;
Senior Security Analyst developing and implementing security strategies for logistics operations. Focus on risk assessment, staff training, and policy compliance.
IT Security Analyst supporting the Supreme Court of Nevada in safeguarding judicial information systems. Implementing security controls, maintaining compliance, and conducting security assessments in a collaborative environment.
Information Security Analyst SME protecting information assets by designing and maintaining security policies. Ensuring compliance with security standards in a tech services company focused on digital transformation.
Vulnerability Analyst role in BGS supporting government clients. Conduct vulnerability assessments and enhance cybersecurity protocols for effective mitigation strategies.
Cybersecurity Analyst responsible for protecting corporate environments and managing security incidents. Collaborating with IT teams and providing strategic security communications.
Information Security Analyst role focusing on cybersecurity for a retail company based in Belo Horizonte. Tasks include managing security tools and monitoring incidents.
Intern engaging in cybersecurity projects with Intact, enabling a diverse team to innovate solutions. Opportunities for personalized professional development and collaborative industry impact during Summer 2026.
Cyber Security Analyst at GDIT handling forensic analysis, monitoring security violations in diverse locations. Requires 8+ years of experience and relevant certifications.