
Senior Cybersecurity Consultant
GFT Technologies
full-time
Posted on:
Location Type: Hybrid
Location: Alphaville - Barueri • Brazil
Visit company websiteExplore more
Job Level
Tech Stack
About the role
- Conduct comprehensive Information Security assessments in banking environments, covering processes, technology and governance;
- Perform AS-IS diagnosis of the security environment, including infrastructure, applications, cloud, identity, data and operations;
- Assess adherence to the Central Bank of Brazil's regulations, such as Resolution No. 4,893/2021, Circular 3,909 and related rules;
- Identify regulatory and maturity gaps, classifying risks by financial, operational, regulatory and reputational impact;
- Prepare executive and technical reports with AS-IS analysis, gap matrix, risk assessment and prioritized recommendations;
- Propose an Information Security roadmap, including quick wins, structural initiatives and maturity evolution;
- Collaborate through interviews, evidence collection and document analysis to support conclusions and recommendations.
Requirements
- Advanced Spanish, fluent or native;
- Solid experience in Information Security audits and assessments within financial institutions or regulated environments;
- Deep knowledge of ISO/IEC 27001 (Annex A and Statement of Applicability), CIS Controls v8, NIST CSF and risk management (ISO 27005 or equivalent);
- Strong understanding of the Central Bank of Brazil's regulatory requirements applicable to cybersecurity;
- Experience preparing audit reports, maturity assessments, remediation plans and strategic roadmaps;
- Knowledge of security architecture, Cloud Security, IAM/PAM, SOC/SIEM, incident response and TPRM;
- Ability to map technical controls to regulatory requirements and to conduct interviews, evidence collection and document analysis;
- Strategic mindset, strong analytical skills and governance orientation;
- Clear communication with technical audiences and executives (C-level);
- Experience in banking environments and understanding of the three lines of defense model;
- Ability to work independently, evidence-based approach and constructive critical stance.
Benefits
- Multi-benefits card — choose how and where to use it.
- Tuition assistance for undergraduate, graduate, MBA and language courses.
- Certification incentive programs.
- Flexible working hours.
- Competitive salaries.
- Annual performance review with a structured career plan.
- Opportunity for international career growth.
- Wellhub and TotalPass.
- Private pension plan.
- Childcare assistance.
- Health insurance.
- Dental insurance.
- Life insurance.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Information Security assessmentsISO/IEC 27001CIS Controls v8NIST CSFrisk managementsecurity architectureCloud SecurityIAMPAMincident response
Soft Skills
analytical skillsstrategic mindsetclear communicationgovernance orientationindependent workevidence-based approachconstructive critical stance