About the role
- Implement data loss prevention policies, monitoring information flows.
- Manage and optimize CASB solutions, ensuring visibility and control over access to cloud applications.
- Implement and maintain CSPM solutions to identify and remediate misconfigurations in cloud environments (AWS).
- Configure and manage WAFs to protect web applications from threats.
- Coordinate and oversee penetration tests and vulnerability scans, ensuring remediation of identified issues.
- Develop, maintain, and execute the Information Security Master Plan.
- Develop and maintain the Business Continuity Plan (BCP) from a security and IT perspective.
- Lead projects to achieve and maintain certifications and standards such as ISO 27001.
- Drive compliance processes related to regulations such as the LGPD (Brazilian General Data Protection Law).
- Develop and update the security documentation set, including policies, standards, and procedures.
- Support budget management (CAPEX and OPEX) for the area.
- Support management of cybersecurity teams and vendors, including an outsourced SOC.
- Develop and deliver security awareness programs for employees.
Requirements
- Bachelor's degree in Information Security, Computer Science, Information Systems, or a related field.
- Preferred: Postgraduate degree in Information Security Management.
- Experience operating, configuring, and optimizing DLP, CASB, CSPM, and WAF solutions.
- Experience in projects to align with GRC frameworks (Governance, Risk, and Compliance).
- Hands-on technical experience in cybersecurity projects and working in team environments.
- Monitoring and analysis of security events.
- Proficiency with frameworks such as NIST, CIS Controls, ISO 27001/27002/27005, ITIL, and COBIT.
- Strong knowledge of Identity and Access Management (IAM) and Privileged Access Management (PAM) solutions.
- Knowledge of DevSecOps processes and code analysis tools (SAST/DAST).
- Experience with vulnerability assessment tools.
- Vendor-specific certifications in DLP, CASB, CSPM, or WAF.
- Cloud security certifications, such as AWS Certified Security.
- Not specified
📊 Resume Score
Upload your resume to see if it passes auto-rejection tools used by recruiters
Check Resume Score
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
data loss prevention (DLP)cloud access security broker (CASB)cloud security posture management (CSPM)web application firewall (WAF)penetration testingvulnerability scanninginformation security managementidentity and access management (IAM)privileged access management (PAM)DevSecOps
Soft skills
project managementteam collaborationcommunicationleadershipbudget managementsecurity awareness training
Certifications
AWS Certified Securityvendor-specific DLP certificationvendor-specific CASB certificationvendor-specific CSPM certificationvendor-specific WAF certification