
Tech Manager, Security
N5X
full-time
Posted on:
Location Type: Hybrid
Location: São Paulo • Brazil
Visit company websiteExplore more
About the role
- Structure and lead the company's information security initiatives, covering infrastructure, applications, data, and third‑party integrations.
- Act as a bridge between technology, product, and business areas, ensuring clear communication and well‑managed expectations.
- Translate business needs into concrete action plans, prioritizing initiatives with the greatest strategic impact.
- Ensure systems comply with standards such as ISO 27001, NIST, LGPD, and other guidelines applicable to the financial and/or energy markets.
- Identify, mitigate, and respond to cybersecurity risks, vulnerabilities, and incidents, promoting a security‑first culture across the company.
- Monitor the market to identify valuable technologies, startups, and partners; identify and mitigate risks in technology projects, ensuring solutions are delivered with quality and security.
- Guide and advise teams on security best practices in architecture, infrastructure, and secure development.
- Define and track security‑related schedules and deliverables, promoting integration with other technology areas.
Requirements
- Experience with frameworks and standards such as ISO 27001, NIST CSF, OWASP Top 10, and CIS Controls.
- Hands‑on experience with tools such as SIEM, WAF, firewalls, corporate antivirus, intrusion detection/prevention systems (IDS/IPS), and incident response platforms.
- Ability to orchestrate security policies across distributed environments, ensuring consistency and adherence to best practices.
- Experience conducting risk analyses, performing penetration tests, running incident response simulations, and reviewing secure architectures.
- Clear communication skills with both technical and non‑technical stakeholders, translating technical risks into business impact.
- Experience leading cross‑disciplinary initiatives and working with regulated areas (e.g., BACEN, CVM, ANEEL).
- Strategic vision and a proactive attitude to identify vulnerabilities, anticipate threats, and foster an organizational security culture.
- Ability to lead proofs of concept, evaluate market solutions, and implement security technologies at scale.
- Knowledge of the startup, fintech, and critical infrastructure ecosystems in the financial and/or energy sectors.
- Experience with secure development tools and DevSecOps pipelines (e.g., GitHub Actions, SonarQube, Snyk, HashiCorp Vault).
- Excellent verbal and written communication skills to connect technology and the company's strategic areas.
- Negotiation and influencing skills to align stakeholders and guide teams toward strategic objectives.
- Proactive mindset for evaluating and adopting new technologies to keep the company competitive and innovative.
- Experience with agile methodologies (Scrum), their ceremonies, and tools (Jira and Miro).
- Ability to learn and adapt quickly to new technologies.
- Flexibility and the capacity to rapidly adapt to technological changes, leading teams in implementing new tools and methodologies.
- Experience managing timelines and expectations, ensuring alignment with internal and external stakeholders.
- Fluency in Portuguese and English.
Benefits
- Bonus: Up to 2 monthly salaries per year.
- Work model: Hybrid — 3 days in the office per week; attendance at in‑person team rituals (currently quarterly), in‑person meetings with stakeholders, and events.
- Meal allowance: R$ 42.00 per working day.
- Food allowance: R$ 800.00 per month.
- Transportation allowance.
- Health plan: Amil with co‑payment for the primary holder and dependents (children and spouse).
- Life insurance: MetLife up to R$ 150,000.
- Daycare assistance.
- Financial assistance for employees with children with disabilities.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
ISO 27001NIST CSFOWASP Top 10CIS Controlsrisk analysispenetration testingincident responsesecure architectureDevSecOpssecurity policies
Soft Skills
clear communicationstrategic visionproactive attitudenegotiation skillsinfluencing skillsflexibilityadaptabilityleadershipcross-disciplinary collaborationstakeholder alignment