Information Security Analyst managing PAM solutions for a Brazilian fintech company. Integrating and auditing security measures while collaborating with technology teams for compliance.
Responsibilities
Administer, configure, and maintain PAM/Password Vault solutions;
Implement and manage privileged credential lifecycle policies, including automatic rotation, vaults, and access controls;
Integrate the PAM solution with corporate directories (AD/LDAP), critical systems, cloud environments, and IT infrastructure;
Monitor privileged sessions and produce audit and compliance reports;
Support security investigations related to the use of privileged accounts;
Drive continuous improvements in privileged access governance processes, aligned with best practices and frameworks (ISO 27001, NIST CSF, CIS Controls, PCI DSS);
Collaborate with Technology teams to ensure adherence to internal policies and regulatory requirements.
Requirements
Hands-on experience implementing and managing PAM solutions;
Knowledge of Identity and Access Management (IAM) and Multi-Factor Authentication (MFA);
Familiarity with Windows and Linux environments and integrations with databases and corporate applications;
Experience with identity management in multi-cloud environments;
Experience in security auditing, compliance, and reporting;
Ability to analyze risks and propose mitigation measures;
Certifications related to PAM/IAM are a plus;
Experience integrating PAM into cloud environments (AWS and Azure);
Knowledge of automation and scripting (PowerShell, Python, Bash);
Experience in security projects within large corporate or regulated environments (financial services, payment processors, telecommunications).
Benefits
Profit Sharing Program (PPR)
Health insurance (Bradesco – co-payment)
Optional dental coverage (Bradesco)
Life insurance (Banco do Brasil)
Optional private pension plan (employee may contribute up to 7.8% of salary; Elo provides a matching contribution between 100% and 200% according to plan rules)
Meal/food allowance of R$1,800.00
R$150.00 flexible credit balance
Holiday/Christmas card R$750.00
Home office allowance of R$200.00 for hybrid model and R$300.00 for remote model
Mobility allowance of R$400.00
Free parking
Childcare assistance for parents
Culture allowance (to be used at theaters, cinemas, or bookstores)
IT Security Analyst for Bundesdruckerei GmbH monitoring security events in diverse infrastructures. Collaborating within the Blue Team and responding to security incidents.
Cyber Security Analyst within the Cyber Security Governance, Risk and Compliance team. Supporting effective management and oversight of cyber risk at Heathrow Airport.
Cyber Security Analyst focusing on security telemetry and metrics for Heathrow operations. Enhancing organizational cyber resilience through actionable intelligence and reporting.
Security Analyst monitoring systems and providing expertise for cybersecurity solutions at GoSecure. Engage in proactive analysis, incident response, and system oversight.
Security Analyst focusing on brand protection against online fraud and phishing attacks. Investigating threats, pursuing takedowns, and supporting sales evaluations in a hybrid work environment.
Jr. Vulnerability Management Analyst at OneDigital managing security vulnerabilities across infrastructure. Collaborating with IT teams to ensure timely remediation and effective reporting.
Offensive Security Analyst specializing in Red Team operations for AI/ML systems at Vanguard. Collaboration with data scientists and security teams to protect AI infrastructure.
IT Cybersecurity Analyst supporting vulnerability management and incident response for WEC Energy Group's cybersecurity infrastructure. Collaborating with teams to enhance security posture and mitigate risks.
IAM Security Engineer managing identity and access governance at WEC Energy Group. Collaborating on IAM solutions and troubleshooting access management issues.
Senior CyberSecurity Analyst focusing on identifying and responding to email borne threats at Proofpoint. Collaborating with a global team to develop detection signatures against phishing, malware, and spam attacks.