
Senior Information Security Analyst
FCamara Consulting & Training
full-time
Posted on:
Location Type: Hybrid
Location: São Paulo • Brazil
Visit company websiteExplore more
Job Level
About the role
- Lead the implementation and evolution of Information Security policies
- Design and maintain the security governance program (based on ISO 27001, NIST, LGPD)
- Perform advanced risk analyses and propose mitigation plans
- Coordinate and execute vulnerability assessments and penetration tests (open source and commercial tools)
- Implement and manage firewalls, IDS/IPS, SIEM and monitoring solutions
- Lead incident response and business continuity plans
- Act as a technical reference for infrastructure and development teams (DevSecOps)
- Define security standards for applications, networks and infrastructure
- Deliver internal security awareness training
- Support audits, compliance and regulatory adjustments
- Evaluate security vendors and solutions
Requirements
- Bachelor’s degree in IT, Information Security, or related field
- Minimum of 6 years of experience in Information Security and Infrastructure
- Experience in cloud environments
- Technical leadership and decision-making ability
- Strong systems thinking and strategic mindset
- Excellent communication with technical and business stakeholders
- Proficiency with ISO 27001, NIST and LGPD
- Security architecture in cloud (AWS, Azure, GCP or OCI)
- Management of firewalls, VPNs, IDS/IPS, WAF and SIEM
- DevSecOps and Secure SDLC
- Vulnerability analysis and incident response
- Security risk management
- PKI, cryptography, SSL/TLS
- Identity and access management (IAM)
- Monitoring, logging and event correlation
- Patch management and hardening
- Automation of security processes (Python, Bash, Terraform, etc.)
Benefits
- Not provided 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
ISO 27001NISTLGPDvulnerability assessmentspenetration testsfirewallsIDS/IPSSIEMcloud security architectureDevSecOps
Soft Skills
technical leadershipdecision-makingsystems thinkingstrategic mindsetcommunication