Analyst of Information Security Governance supporting risk assessments and compliance audit processes. Involves bridging technical topics with non-technical stakeholders in the security domain.
Responsibilities
Work on information security incident response, including:
Analysis of events and alerts
Support for containment, eradication and recovery
Incident documentation and lessons learned
Support security monitoring activities (SIEM, EDR, logs, alerts, etc.)
Contribute to the analysis and design of Information Security architecture, considering:
Access controls
Network segmentation
On-premises and/or cloud environments
Support risk assessments and recommendations for technical controls
Act as a technical point of contact for internal teams, vendors and customers, translating technical topics into clear language
Support the implementation and continuous improvement of security processes, policies and controls
Work closely with technical leadership, participating in strategic discussions and the evolution of the security model
Requirements
Degree in IT or related fields
Advanced English (for conversation)
Prior experience (including entry-level) in Information Security
Experience in security incident response (phishing, malware, unauthorized access, data leakage, etc.)
Knowledge of:
Fundamentals of Information Security architecture
Networking (firewalls, VPN, segmentation)
Access control and identity
Familiarity with security tools (e.g., SIEM, EDR, enterprise antivirus, firewalls)
Familiarity with frameworks and best practices (ISO 27001/27002, NIST, CIS)
Preferred qualifications
Experience with cloud environments (AWS, Azure or GCP)
Participation in security audits or security projects
Knowledge of governance, risk and compliance (GRC)
Benefits
Work location: São Paulo - SP (hybrid) - 2 days per week on-site
Working hours: Monday to Friday, 9:00 AM to 6:00 PM
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.
Principal Systems Engineer - Cybersecurity role in protecting our nation's products as part of Integrated Platform Solutions team. Develop solutions utilizing RMF, Anti - Tamper, Software Assurance, and more.
Agent de Sécurité assurant la sécurité des usagers du réseau de transport TBM. Rattaché au Manager de Proximité Sûreté, garantissant la qualité de service public de transport en commun.