Analista de Segurança da Informação focusing on IAM at Cruzeiro do Sul Educacional. Responsible for strengthening IAM processes and compliance.
Responsibilities
Act as a leading figure in the design and evolution of IAM processes, proposing improvements that increase operational efficiency and robustness.
Ensure evidence, controls, and responses for audits and regulatory bodies, meeting deadlines and delivering high-quality results.
Create and standardize documentation, internal procedures, templates, and workflows, bringing organization and governance to the team.
Develop and maintain effective internal controls capable of anticipating risks and ensuring compliance.
Collaborate with internal teams and external partners to improve processes, integrations, and automations.
Prepare and maintain operational procedures, standards, and IAM documentation (runbooks, playbooks, manuals, process diagrams, etc.).
Execute and enhance internal controls, ensuring traceability, evidence, and compliance with policies and regulations.
Support internal/external audit responses and communications with regulatory bodies, including preparing replies, submitting evidence, and tracking action plans.
Support the identity lifecycle (Joiners, Movers, Leavers), ensuring adherence to access policies.
Advise internal teams on implementing security best practices related to identities and access.
Monitor metrics, access reports, exceptions, and team indicators, suggesting continuous improvements.
Collaborate on automation initiatives, process reviews, and implementation of new controls.
Identify access-related security gaps and propose mitigations and structural improvements.
Participate in the development and evolution of access models and standards (RBAC, SoD, periodic reviews, etc.).
Requirements
Solid knowledge of IAM controls and governance
Access policies and standards
Audit and compliance practices
Preparation of technical and procedural documentation
Experience responding to audits, regulatory requests, or certifications (e.g., ISO 27001, NIST, LGPD)
Knowledge of IAM tools (e.g., SailPoint, Azure AD, CyberArk, or similar)
Strong written and verbal communication skills, with the ability to produce clear and robust documentation
Security certifications (e.g., ISO 27001 Lead Implementer/Lead Auditor, CompTIA Security+, CSF, ITIL, IDPro)
Experience with SailPoint IdentityNow or other SaaS IAM platforms
Experience with automations using scripting (Python, PowerShell, or GAS)
Knowledge of RBAC, ABAC, SoD, and segregation of duties in corporate environments
Experience implementing or reviewing periodic access review processes (Access Review)
Familiarity with audit requirements in regulated industries (education, financial, telecom, healthcare, etc.)
Benefits
Health insurance
Dental insurance
Meal allowance
Transportation allowance
Pharmacy benefit
Total Pass
Full tuition scholarship (Undergraduate or Graduate — after 3 months of employment)
Life insurance
Birthday day off
Job title
Mid-level Information Security Analyst, Focus on IAM
Cybersecurity Analyst supporting clients in threat analysis, system monitoring, and policy enforcement. Collaborating with teams to protect IT infrastructure in a contract role.
Cybersecurity Analyst at Ventas supporting monitoring, incident response, and security operations. Collaborating with IT and external partners to enhance overall security posture.
Cybersecurity Analyst protecting sensitive client information and ensuring compliance with industry standards. Conducting security assessments and managing risk for Techneaux Technology Services.
Information Security Analyst at Stefanini responsible for monitoring, analyzing, and responding to security incidents across the organization. Contributing to the protection of information assets.
Cyber Threat Intelligence Analyst responsible for collecting and analyzing threat intelligence to improve security posture at American Family Insurance. Collaborating with security teams to deliver actionable insights and enhance defense strategies.
Cybersecurity Analyst at Teledyne Technologies resolving IT service management tickets related to cybersecurity. Monitoring threats, implementing security measures, and collaborating with cross - functional teams.
Enterprise Security Analyst II protecting data integrity and implementing security policies at Pekin Insurance. Involves risk assessments and compliance activities in a hybrid work environment.
Cybersecurity Analyst leading CMMC compliance efforts for GM Defense and U.S. Government programs. Collaborating with multiple teams to ensure adherence to cybersecurity standards.
Cybersecurity Analyst role at Fidelity Investments, assisting with client security inquiries and managing cybersecurity program communications. Requires a bachelor’s degree and relevant experience.
External Footprint Security Analyst safeguarding public - facing digital assets with expert cybersecurity skills at HID Global. Design and implement proactive strategies for identifying and mitigating vulnerabilities across multiple locations.