
Cloud Security Architect
Riachuelo
full-time
Posted on:
Location Type: Remote
Location: Brazil
Visit company websiteExplore more
Job Level
About the role
- Define and evolve security architecture in cloud environments (multi-cloud or hybrid).
- Design secure solutions on providers such as AWS, Azure and/or Google Cloud Platform (GCP).
- Establish security standards, frameworks and best practices (IAM, encryption, network segmentation, etc.).
- Support engineering and development teams in implementing secure solutions (DevSecOps).
- Conduct risk assessments, threat modeling and architecture reviews.
- Ensure compliance with standards and frameworks (ISO 27001, NIST, CIS, LGPD, among others).
- Define and oversee identity and access management strategies (IAM, PAM, SSO, MFA).
- Implement and oversee controls such as WAF, CASB, SIEM, EDR/XDR and CSPM.
- Support internal and external audits related to information security.
Requirements
- Strong experience with cloud security architecture (AWS, Azure and/or GCP).
- In-depth knowledge of:
- Identity & Access Management (IAM)
- Network security (VPC, VPN, firewalls, Zero Trust)
- Encryption and key management (KMS, HSM)
- Container security and Kubernetes
- DevSecOps and integrating security into CI/CD pipelines
- Experience with cloud security tools (CSPM, CWPP, SIEM, etc.).
- Knowledge of security frameworks (NIST, CIS Controls, ISO 27001).
- Experience with infrastructure as code (Terraform, CloudFormation or similar).
- Experience in vulnerability analysis and risk management.
Benefits
- Medical insurance
- Dental insurance
- Meal voucher
- Food allowance
- Gympass
- Childcare assistance
- Cultural voucher
- Home office allowance
- Profit-sharing program (PPR)
- Private pension plan
- Group life insurance
- Educational partnerships
- Discounts at Riachuelo
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cloud security architectureidentity and access managementnetwork securityencryption and key managementcontainer securityDevSecOpsinfrastructure as codevulnerability analysisrisk managementsecurity frameworks
Certifications
ISO 27001NISTCIS