Security Specialist at Alpargatas focusing on critical cybersecurity strategies and incident response management. Collaborating on global projects in a hybrid work environment from São Paulo.
Responsibilities
Serve as a technical reference in Information Security;
Lead response to critical incidents, acting as technical lead in crisis situations;
Provide direct, ongoing technical support to analysts, with a hands-on role in investigations, troubleshooting and advanced analysis;
Act as a Security Champion in corporate projects, assessing risks, defining security requirements and validating architectures;
Ability to assess cyber risks in OT environments without operational impact, prioritizing availability, safety and business continuity;
Knowledge of industrial architectures, including the Purdue Model, definition of zones and conduits, and IT/OT network segmentation;
Work in Cloud Security with a focus on IAM, logging, security posture and native controls;
Define, operate and optimize WAF and application/API security, mitigating OWASP Top 10 risks;
Carry out and direct Cyber Threat Intelligence (CTI) activities, correlating threats, campaigns and TTPs with business impact;
Technically lead takedown processes, brand protection and digital fraud mitigation;
Work collaboratively with antifraud, risk, legal and business areas;
Support and evolve vulnerability management processes, prioritizing risks based on operational and business impact.
Requirements
Postgraduate degree in Information Security, Cybersecurity, Cyber Defense, Security Engineering, Risk Management, Governance or related fields;
Experience in Information Security or Cybersecurity;
Experience with EDR/XDR, SIEM and SOAR, with a focus on continuous improvement of use cases, automation and reduction of operational risk;
Advanced knowledge of Cloud Security (AWS, Azure or GCP), with the ability to evaluate architectures, risks and security controls in critical environments;
Experience with WAF, application and API security, defining preventive controls aligned to business risk;
Solid knowledge of network security, segmentation, access control and protection of hybrid environments;
Practical experience in Cyber Threat Intelligence (CTI), with the ability to turn intelligence into strategic defense decisions;
Applied knowledge of Cyber OT, including the Purdue Model, zones and conduits, with focus on operational risk, safety and business continuity;
Knowledge of ICS/SCADA and industrial protocols;
Applied knowledge of frameworks such as NIST CSF, MITRE ATT&CK, ISO 27001, IEC 62443 and PCI DSS, using them as a basis for decision-making and prioritization;
Advanced English, with the ability to participate in and lead technical and executive meetings with international teams.
Benefits
Health plan
Dental plan
Life insurance
Wellhub
Meal voucher
Discount on Havaianas products
Birthday day off
Transportation allowance
Private pension plan
Profit Sharing (PLR)
Courses, training and other development activities through ALU (Alpa Learning Universe), our corporate university
Flexible on-site work model (minimum 3x per week in the office)
Network Security Engineer at Eurobank leading the design of network security architectures. Collaborating with teams to ensure compliance and effective network security implementations in a banking environment.
Patrol Officer creating a secure environment for patients at Health Sciences Centre. Enforcing laws and assisting in medical and nursing staff in Winnipeg, Canada.
OT (Cyber) Security Officer responsible for securing IT and OT systems in large infrastructure projects. Collaborating with a security team to develop cybersecurity strategies and incident responses.
Cyber Security Consultant at NewTec aiding clients in implementing security measures and management plans. Engaging in project diversity with experienced specialists in a supportive environment.
Technical Security Engineer supporting national security by implementing security solutions for government clients. Collaborating with teams to assess vulnerabilities and protect mission data.
Lead Information Systems Security Manager at Booz Allen managing Risk Management Framework authorization and continuous monitoring of IT systems in compliance with security policies.
ISSO providing advanced cyber solutions for government clients. Leading security assessments and mitigation planning to secure mission - critical systems.
Cybersecurity Senior Associate analyzing complex cybersecurity issues and mentoring junior team members. Building client relationships while contributing to threat intelligence and vulnerability management initiatives.
Cybersecurity Manager leading threat intelligence and SIEM solutions initiatives for a global accounting firm based in Taguig. Plan and direct resources for successful project outcomes while mentoring junior staff.
Senior IT - Security Engineer responsible for implementing cyber security solutions in complex IT infrastructures for clients. Leading technical security projects with focus on customer support and security strategy development.