Information Security Engineer leading security practices across global enterprise. Collaborating with teams to integrate security into software development lifecycle in a hybrid setting.
Responsibilities
Lead and support information security projects including planning, execution, documentation, and reporting
Collaborate with development teams to embed security into the software development lifecycle, including secure coding practices and code reviews
Provide oversight and strategic guidance in the design, implementation, and continuous improvement of DevSecOps tooling and secure development pipelines
Conduct risk assessments, develop mitigation strategies, and track remediation efforts
Ensure compliance with security frameworks and regulations such as NIST, ISO 27001, SOX, and PCI DSS
Design and implement security controls for cloud platforms including AWS and Azure
Perform threat modeling and vulnerability assessments to identify and mitigate risks
Communicate security risks and recommendations effectively to both technical and non-technical stakeholders
Requirements
Bachelor's degree in Computer Science, Information Systems, or Information Security
Minimum 5 years in Information Security Architecture, Engineering, or Auditing
Strong understanding of security countermeasures for web applications, networks, databases, IT systems, and cloud environments
Hands-on experience with cloud security architecture and controls in AWS and Azure
Proficiency in managing and tuning DevSecOps tools and CI/CD security integrations
Knowledge of security frameworks such as NIST 800-53, ISO 27001, and CIS Controls
Ability to conduct secure code reviews and provide actionable feedback to developers
Excellent communication, collaboration, and project management skills
Benefits
Wellness and mental health initiatives
Support volunteerism and environmental efforts
Employee education through leadership training and skill-building
Specialist in PingFederate, PingDirectory and PingID for IAM infrastructure management. Collaborating with teams for stable operation and development in Cotia.
Senior Security Analyst developing and implementing security strategies for logistics operations. Focus on risk assessment, staff training, and policy compliance.
IT Security Analyst supporting the Supreme Court of Nevada in safeguarding judicial information systems. Implementing security controls, maintaining compliance, and conducting security assessments in a collaborative environment.
Information Security Analyst SME protecting information assets by designing and maintaining security policies. Ensuring compliance with security standards in a tech services company focused on digital transformation.
Vulnerability Analyst role in BGS supporting government clients. Conduct vulnerability assessments and enhance cybersecurity protocols for effective mitigation strategies.
Analyst of Information Security focusing on Governance and Project Risk Analysis in software development. Join a dynamic team collaborating on security in tech projects.
Cybersecurity Analyst responsible for protecting corporate environments and managing security incidents. Collaborating with IT teams and providing strategic security communications.
Information Security Analyst role focusing on cybersecurity for a retail company based in Belo Horizonte. Tasks include managing security tools and monitoring incidents.