N5X

Tech Manager, Security

N5X

full-time

Posted on:

Location Type: Hybrid

Location: São PauloBrazil

Visit company website

Explore more

AI Apply
Apply

Tech Stack

About the role

  • Structure and lead the company's information security initiatives, covering infrastructure, applications, data, and third‑party integrations.
  • Act as a bridge between technology, product, and business areas, ensuring clear communication and well‑managed expectations.
  • Translate business needs into concrete action plans, prioritizing initiatives with the greatest strategic impact.
  • Ensure systems comply with standards such as ISO 27001, NIST, LGPD, and other guidelines applicable to the financial and/or energy markets.
  • Identify, mitigate, and respond to cybersecurity risks, vulnerabilities, and incidents, promoting a security‑first culture across the company.
  • Monitor the market to identify valuable technologies, startups, and partners; identify and mitigate risks in technology projects, ensuring solutions are delivered with quality and security.
  • Guide and advise teams on security best practices in architecture, infrastructure, and secure development.
  • Define and track security‑related schedules and deliverables, promoting integration with other technology areas.

Requirements

  • Experience with frameworks and standards such as ISO 27001, NIST CSF, OWASP Top 10, and CIS Controls.
  • Hands‑on experience with tools such as SIEM, WAF, firewalls, corporate antivirus, intrusion detection/prevention systems (IDS/IPS), and incident response platforms.
  • Ability to orchestrate security policies across distributed environments, ensuring consistency and adherence to best practices.
  • Experience conducting risk analyses, performing penetration tests, running incident response simulations, and reviewing secure architectures.
  • Clear communication skills with both technical and non‑technical stakeholders, translating technical risks into business impact.
  • Experience leading cross‑disciplinary initiatives and working with regulated areas (e.g., BACEN, CVM, ANEEL).
  • Strategic vision and a proactive attitude to identify vulnerabilities, anticipate threats, and foster an organizational security culture.
  • Ability to lead proofs of concept, evaluate market solutions, and implement security technologies at scale.
  • Knowledge of the startup, fintech, and critical infrastructure ecosystems in the financial and/or energy sectors.
  • Experience with secure development tools and DevSecOps pipelines (e.g., GitHub Actions, SonarQube, Snyk, HashiCorp Vault).
  • Excellent verbal and written communication skills to connect technology and the company's strategic areas.
  • Negotiation and influencing skills to align stakeholders and guide teams toward strategic objectives.
  • Proactive mindset for evaluating and adopting new technologies to keep the company competitive and innovative.
  • Experience with agile methodologies (Scrum), their ceremonies, and tools (Jira and Miro).
  • Ability to learn and adapt quickly to new technologies.
  • Flexibility and the capacity to rapidly adapt to technological changes, leading teams in implementing new tools and methodologies.
  • Experience managing timelines and expectations, ensuring alignment with internal and external stakeholders.
  • Fluency in Portuguese and English.
Benefits
  • Bonus: Up to 2 monthly salaries per year.
  • Work model: Hybrid — 3 days in the office per week; attendance at in‑person team rituals (currently quarterly), in‑person meetings with stakeholders, and events.
  • Meal allowance: R$ 42.00 per working day.
  • Food allowance: R$ 800.00 per month.
  • Transportation allowance.
  • Health plan: Amil with co‑payment for the primary holder and dependents (children and spouse).
  • Life insurance: MetLife up to R$ 150,000.
  • Daycare assistance.
  • Financial assistance for employees with children with disabilities.
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
ISO 27001NIST CSFOWASP Top 10CIS Controlsrisk analysispenetration testingincident responsesecure architectureDevSecOpssecurity policies
Soft Skills
clear communicationstrategic visionproactive attitudenegotiation skillsinfluencing skillsflexibilityadaptabilityleadershipcross-disciplinary collaborationstakeholder alignment