About the role
- Lead and advance the cyber risk management process, focusing on risk identification, assessment, and mitigation.
- Conduct risk assessments of vendors and partners, ensuring adherence to security and compliance requirements.
- Develop and implement information security culture and awareness initiatives to promote engagement and secure behavior.
- Monitor and ensure regulatory compliance, including financial sector regulations and laws such as LGPD and Central Bank Resolution 4893.
- Manage and maintain PCI DSS compliance, supporting audits, remediation activities, and controls.
- Draft, review, and maintain information security policies, standards, and procedures aligned with industry best practices.
- Support internal and external audits by providing evidence and action plans related to information security.
- Collaborate with technology, risk, legal, and compliance teams to integrate security into corporate processes.
Requirements
- Bachelor's degree in Information Technology, Engineering, Information Security, or related fields.
- Solid experience in at least three of the disciplines listed above.
- Knowledge of frameworks and standards such as ISO 27001, NIST, COBIT, PCI DSS, PCI PIN Security.
- Familiarity with GRC and risk management tools.
- Strong communication and interpersonal skills.
- Nice to have:
- Experience in financial institutions or payment services.
- Familiarity with Central Bank regulations and LGPD.
- Certifications such as CRISC, CISM, CISSP, PCI ISA/QSA, ISO 27001 Lead Implementer/Auditor.
- Intermediate English.
- Profit Sharing Program (PPR)
- Medical insurance (Bradesco - co-payment)
- Optional dental insurance (Bradesco)
- Life insurance (Banco do Brasil)
- Optional private pension plan (employees may contribute up to 7.8% of salary; Elo contribution between 100% and 200% according to plan rules)
- Meal/food allowance of BRL 1,800.00
- Flexible credit balance of BRL 150.00
- Holiday card BRL 750.00
- Home office allowance of BRL 200.00 for hybrid model and BRL 300.00 for remote model
- Mobility allowance of BRL 400.00
- Free parking
- Childcare assistance for parents
- Culture allowance (to be used for theater, cinema, or bookstores)
- Extended parental leave (for same-sex couples, fathers, adoptive parents, etc.)
- Birthday day off
- Zenklub (Psychotherapy - up to 4 sessions per month fully paid by Elo)
- WellHub and TotalPass (network of gyms and studios for sports activities)
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
risk identificationrisk assessmentrisk mitigationinformation security policiesPCI DSS complianceISO 27001NISTCOBITGRCrisk management
Soft skills
communication skillsinterpersonal skills
Certifications
CRISCCISMCISSPPCI ISA/QSAISO 27001 Lead ImplementerISO 27001 Auditor