Senior Information Security Engineer

Job not on LinkedIn

🔥 32 minutes ago

🇧🇷 Brazil – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 16%

infoinfo

🗣️🇧🇷🇵🇹 Portuguese Required

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of DOMVS iT

DOMVS iT

51 - 200 employees

Founded 2014

💼 Consulting

🏥 Healthcare

🏢 Enterprise

Consulting • Healthcare • Enterprise

DOMVS iT is a Brazilian technology services company with over a decade of experience that provides IT staffing (Squad as a Service), managed squads, consulting, outsourcing, application management, and cloud & data services. The firm offers digital experience and product design services (Product Discovery, PDaaS), cloud architecture, FinOps, migrations, data masking/virtualization, and enterprise application support (including SAP), serving business customers across multiple cities and countries.

📋 Description

• Serve as a Senior Information Security Engineer • Independently lead ISO 27001 compliance programs, including audit preparation and certification maintenance • Manage and optimize security platforms such as SIEM, MDR, DLP, and IAM • Lead vulnerability management programs and coordinate penetration testing activities • Assess security risks associated with third parties and AI tools, taking ownership of findings and recommendations • Independently resolve complex security issues and deliver results without close supervision • Apply cloud security principles and tools • Assess AI-specific security risks, including data leakage, training models with customer-input data, API security, Shadow AI, and supply chain exposure • Support the governance of AI tools in consideration of the EU AI Act and ISO 42001

🎯 Requirements

• Extensive experience in information security, particularly in enterprise or operational environments • Proven experience independently leading ISO 27001 compliance programs, including audit preparation and certification maintenance • Demonstrated experience managing and optimizing security platforms such as SIEM, MDR, DLP, and IAM • Experience leading vulnerability management programs and coordinating penetration testing activities • Experience assessing security risks associated with third parties and AI tools, with clear ownership of findings and recommendations • Track record of working autonomously on complex security issues and delivering results without close supervision • In-depth knowledge of cloud security principles and tools • Strong practical knowledge of NIST, ISO 27001, CSA, GDPR, and UK data protection legislation • Solid practical knowledge of AI-specific security risks, including data leakage, training models with customer-input data, API security, Shadow AI risks, and supply chain exposure • Practical knowledge of the EU AI Act and its implications for AI tool governance within an organization • Expert knowledge of security testing methodologies, including vulnerability scanning, penetration testing, and red teaming • CISSP, CISM, or equivalent certification (preferred) • Experience in a regulated industry or a highly compliance-driven environment (preferred) • Familiarity with the governance requirements of ISO 42001 or the EU AI Act (preferred)

🏖️ Benefits

• The support you need to achieve professional success • Collaborative and innovative work environment

Apply Now

Similar Jobs

🔥 8 hours ago

Digibee

51 - 200

💼 Consulting

📣 Marketing

📦 Logistics

Cloud Security Engineer integrando segurança a pipelines CI/CD e infraestrutura GCP na Digibee. Protegendo imagens de containers e governando vulnerabilidades na plataforma iPaaS cloud-native low-code.

🗣️🇧🇷🇵🇹 Portuguese Required

Cloud

Docker

Google Cloud Platform

Jenkins

Kubernetes

Open Source

Python

SDLC

Terraform

🕒 3 days ago

Deliverit

1 - 10

🛍️ eCommerce

📦 Logistics

Engenheiro Full-Stack Sênior corrigindo vulnerabilidades em aplicações React e Node.js na Deliver IT. Analisando código, executando scans e fortalecendo práticas DevSecOps.

🗣️🇧🇷🇵🇹 Portuguese Required

JavaScript

Node.js

NoSQL

React

SQL

TypeScript

🕒 3 days ago

ASAAS

501 - 1000

💼 Consulting

🏥 Healthcare

🏨 Hospitality

Analista sênior de riscos e controles de segurança da informação na Asaas, fintech que maximiza a produtividade empresarial com tecnologia. Condução de riscos, controles, TPRM e governança.

🗣️🇧🇷🇵🇹 Portuguese Required

Cloud

🕒 3 days ago

GFT Technologies

10,000+ employees

💼 Consulting

🛡️ Insurance

🔒 Cybersecurity

Senior Cloud Security Engineer securing complex AWS infrastructure for GFT Technologies' regulated financial-services clients. Automating controls, managing vulnerabilities, and supporting compliance audits.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Cloud

Terraform

VMware

🕒 4 days ago

Neon

1001 - 5000

💼 Consulting

🛡️ Insurance

💳 Fintech

Engenheiro especialista em segurança cloud liderando redes AWS, firewalls Palo Alto e soluções Zscaler na Neon. Automatização com Terraform e estratégia SASE/Zero Trust para proteger serviços financeiros.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Azure

Cloud

Firewalls

Google Cloud Platform

TCP/IP

Terraform