Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Banco ABC Brasil

Senior Information Security Analyst – Cloud Security

Banco ABC Brasil

Senior Analyst in Cloud Security for Banco ABC Brasil overseeing AWS, Azure, and GCP environments. Focused on defining security standards and managing cloud security governance.

Posted 7/25/2026full-timeSão Paulo • 🇧🇷 BrazilSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in cloud security management across AWS, Azure, and GCP environments, focusing on implementing security best practices, compliance, and risk management. Proficient in automating security controls and integrating security into CI/CD pipelines while adhering to industry standards and frameworks.

Highest-signal resume keywords
Cloud Security ManagementAWS, Azure, GCP ExpertiseInfrastructure as Code (Terraform)CSPM Tools ExperienceIAM and Least Privilege Implementation

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Cloud Security Posture Management (CSPM)Identity and Access Management (IAM)Security Frameworks (CIS, NIST)Cloud Hardening TechniquesAutomation Scripting (Python, PowerShell)DevSecOps PracticesCloud Networking (VPC/VNet)Security Assessments and Risk AnalysisGovernance Controls ImplementationData Protection and Encryption
Soft Skills
Collaboration with Technical TeamsIncident Response CoordinationCommunication of Security Best Practices
Tools & Technologies
AWS Security HubMicrosoft Defender for CloudPrisma CloudTerraformCloudFormationAzure PolicyGCP Security Command CenterCI/CD Integration ToolsAutomation ToolsCloud Well-Architected Framework
Certifications & Qualifications
AWS Certified Security – SpecialtyMicrosoft Certified: Azure Security Engineer AssociateGoogle Professional Cloud Security EngineerCCSPCISSPCompTIA Security+Terraform Associate
Industry Keywords
Cloud Compliance Best PracticesLGPD (Brazilian Data Protection Law)Zero Trust PrinciplesLeast Privilege PrinciplesSecurity by DesignRBACIncident HandlingCloud Maturity MetricsExecutive ReportingSecurity Best Practices Dissemination

Tech Stack

Tools & technologies
AWSAzureCloudGoogle Cloud PlatformKubernetesPythonTerraform

About the role

Key responsibilities & impact
  • Act as the technical owner for security of AWS, Azure and GCP environments, ensuring continuous improvement of cloud security posture.
  • Define, implement and maintain security baselines for multi-cloud environments.
  • Design and implement secure architectures following Security by Design, Zero Trust and Least Privilege principles.
  • Perform hardening of cloud services, ensuring adherence to vendor best practices and frameworks such as CIS Benchmarks, NIST and the Cloud Well-Architected Framework.
  • Implement and manage governance controls using mechanisms such as AWS Service Control Policies (SCP), Azure Policy, Azure Management Groups, GCP Organization Policies and other organizational controls.
  • Develop and maintain guardrails that ensure compliance and prevent insecure configurations in cloud environments.
  • Administer and evolve Cloud Security Posture Management (CSPM) solutions, performing risk analysis, vulnerability prioritization and remediation tracking.
  • Define IAM standards, implementing least-privilege policies, role segregation, identity federation and secure privileged access management.
  • Implement controls related to data protection, encryption, key management (KMS), secrets management and workload protection.
  • Support Infrastructure, DevOps and Engineering teams in building secure cloud solutions.
  • Automate security controls using Infrastructure as Code (Terraform), scripts and automation tools.
  • Integrate security controls into CI/CD pipelines, promoting DevSecOps practices.
  • Conduct technical security assessments, architectural reviews and risk analyses for new cloud projects.
  • Continuously monitor cloud security posture, proposing improvements and evolution plans.
  • Work alongside SOC and Incident Response teams in the investigation and handling of incidents involving cloud environments.
  • Develop metrics, dashboards and executive reports on cloud maturity, compliance and risks.
  • Promote dissemination of Cloud Security best practices and guide technical teams on corporate standards.

Requirements

What you’ll need
  • Strong experience in Information Security with a focus on Cloud environments.
  • Advanced knowledge of at least two of the following platforms: AWS, Azure and GCP; experience with all three is desirable.
  • Experience implementing hardening for cloud services.
  • Deep knowledge of IAM, RBAC, identity management, federation and Least Privilege principles.
  • Experience implementing organizational controls such as:
  • - AWS Organizations and Service Control Policies (SCP);
  • - Azure Policy, Management Groups and RBAC;
  • - GCP Organization Policies and IAM.
  • Knowledge of cloud networking (VPC/VNet, subnets, security groups, NSGs, firewall, VPN, load balancer, private endpoints and WAF).
  • Experience with CSPM tools such as Microsoft Defender for Cloud, AWS Security Hub, Prisma Cloud, Wiz, Lacework, Orca or similar.
  • Knowledge of Infrastructure as Code (Terraform, CloudFormation or Bicep).
  • Experience with automation using Python, PowerShell or shell scripting.
  • Knowledge of DevSecOps practices and integrating security controls into CI/CD pipelines.
  • Familiarity with native cloud security services such as:
  • - AWS GuardDuty, Security Hub, Config, IAM Access Analyzer, Inspector and CloudTrail;
  • - Microsoft Defender for Cloud, Microsoft Sentinel and Azure Monitor;
  • - GCP Security Command Center, Cloud Logging, Cloud Armor and IAM.
  • Experience with security frameworks and standards such as CIS Benchmarks, NIST CSF, ISO 27001, MITRE ATT&CK and the Cloud Well-Architected Framework.
  • Knowledge of LGPD (Brazilian Data Protection Law) and cloud compliance best practices.
  • Bachelor's degree in Information Technology, Information Security, Computer Science, Computer Engineering or related fields.
  • Desirable certifications: AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, Microsoft Certified: Azure Security Engineer Associate, Google Professional Cloud Security Engineer, CCSP, CISSP, CompTIA Security+, Terraform Associate or Kubernetes certifications (CKA/CKS) considered a plus.

Benefits

Comp & perks
  • Medical Insurance
  • Dental Insurance
  • Life Insurance
  • PLR (Profit Sharing)
  • PPR (Performance Bonus)
  • Physical, social and mental wellness programs
  • Meal Allowance
  • Grocery/Food Allowance
  • Extended parental leave: 20 days paternity and 6 months maternity
  • Childcare/Babysitting Assistance
  • Annual day off
  • Home Office Allowance
  • Home Office Equipment Allowance
  • TotalPass