Grupo Elfa

Cybersecurity Analyst

Grupo Elfa

full-time

Posted on:

Location Type: Hybrid

Location: São Paulo • 🇧🇷 Brazil

Visit company website
AI Apply
Apply

Job Level

Mid-LevelSenior

Tech Stack

AWS

About the role

  • Implement data loss prevention policies, monitoring information flows.
  • Manage and optimize CASB solutions, ensuring visibility and control over access to cloud applications.
  • Implement and maintain CSPM solutions to identify and remediate misconfigurations in cloud environments (AWS).
  • Configure and manage WAFs to protect web applications from threats.
  • Coordinate and oversee penetration tests and vulnerability scans, ensuring remediation of identified issues.
  • Develop, maintain, and execute the Information Security Master Plan.
  • Develop and maintain the Business Continuity Plan (BCP) from a security and IT perspective.
  • Lead projects to achieve and maintain certifications and standards such as ISO 27001.
  • Drive compliance processes related to regulations such as the LGPD (Brazilian General Data Protection Law).
  • Develop and update the security documentation set, including policies, standards, and procedures.
  • Support budget management (CAPEX and OPEX) for the area.
  • Support management of cybersecurity teams and vendors, including an outsourced SOC.
  • Develop and deliver security awareness programs for employees.

Requirements

  • Bachelor's degree in Information Security, Computer Science, Information Systems, or a related field.
  • Preferred: Postgraduate degree in Information Security Management.
  • Experience operating, configuring, and optimizing DLP, CASB, CSPM, and WAF solutions.
  • Experience in projects to align with GRC frameworks (Governance, Risk, and Compliance).
  • Hands-on technical experience in cybersecurity projects and working in team environments.
  • Monitoring and analysis of security events.
  • Proficiency with frameworks such as NIST, CIS Controls, ISO 27001/27002/27005, ITIL, and COBIT.
  • Strong knowledge of Identity and Access Management (IAM) and Privileged Access Management (PAM) solutions.
  • Knowledge of DevSecOps processes and code analysis tools (SAST/DAST).
  • Experience with vulnerability assessment tools.
  • Vendor-specific certifications in DLP, CASB, CSPM, or WAF.
  • Cloud security certifications, such as AWS Certified Security.
Benefits
  • Not specified 📊 Resume Score Upload your resume to see if it passes auto-rejection tools used by recruiters Check Resume Score

Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard skills
data loss prevention (DLP)cloud access security broker (CASB)cloud security posture management (CSPM)web application firewall (WAF)penetration testingvulnerability scanninginformation security managementidentity and access management (IAM)privileged access management (PAM)DevSecOps
Soft skills
project managementteam collaborationcommunicationleadershipbudget managementsecurity awareness training
Certifications
AWS Certified Securityvendor-specific DLP certificationvendor-specific CASB certificationvendor-specific CSPM certificationvendor-specific WAF certification
RD Saúde

Security Coordinator

RD Saúde
Mid · Seniorfull-time🇧🇷 Brazil
Posted: 23 hours agoSource: rdsaude-corporativo.gupy.io
Machado Meyer Advogados

Junior IT Governance and Information Security Analyst

Machado Meyer Advogados
Juniorfull-time🇧🇷 Brazil
Posted: 23 hours agoSource: machadomeyer.gupy.io
ITSM
Recrutify

Analista de Cyber Security – Junior

Recrutify
Juniorfull-time🇧🇷 Brazil
Posted: 3 days agoSource: jobs.quickin.io
Mattos Filho

Junior Information Security Analyst

Mattos Filho
Juniorfull-time🇧🇷 Brazil
Posted: 6 days agoSource: mattosfilho.gupy.io