Cybersecurity Auditor

Lever, Inc.

Brasil

Teletrabalho

BRL 180 000 - 260 000

Tempo integral

Há 2 dias
Torna-te num dos primeiros candidatos
Gerador de candidaturas

Destaca-te nesta função — gera um currículo e uma carta de apresentação personalizados em cerca de um minuto.

Ultrapassa os filtros ATS

Vantagens oferecidas por esta oferta de emprego

Fully remote position based in Brazil.
Full-time Monday-to-Friday schedule, 8

Resumo da oferta

Lever, Inc. is seeking an experienced Cybersecurity Auditor in Brazil for a fully remote, full-time position.

The role focuses on evaluating technology controls, security processes, and risk management practices, with responsibility for leading IT audit teams and delivering practical, high‑quality recommendations. Responsibilities include auditing access management, vulnerability management, cloud security, incident response, and business continuity, while engaging with both technical and

Qualificações

  • Minimum 5 years in IT, cybersecurity, information security, technology risk, or related field; 7+ years preferred.
  • Experience in cybersecurity audits, risk management, or IT compliance within large/global orgs.
  • Knowledge of cybersecurity laws, regulations, standards: COBIT, ISO 27001/27002, NIST, COSO.
  • Broad skill set in incident response, cloud, IAM, vulnerability management, data protection, third‑party risk.
  • Bachelor’s or Master’s in related field preferred; professional certs like CISA/CISM/CISSP are advantageous.

Responsabilidades

  • Execute risk-based cybersecurity and IT audits; define objectives and test controls.
  • Review IT controls, security configurations, and processes across change, incident, access, patching, and more.
  • Assess governance and technical practices for cloud, DR, logging, and third-party risk.
  • Communicate issues and risks clearly to technical and non‑technical audiences; develop actionable recommendations.
  • Prepare comprehensive audit documentation and final reports; lead IT audit teams through engagements.
  • Apply frameworks ISO 27000, COSO, NIST, COBIT, IPPF, and ITIL to ensure consistency and quality.

Conhecimentos

Auditing
Risk assessment
Leadership
Communication
Analytical thinking
Time management
English proficiency

Formação académica

Bachelor's or Master's in Information Security/Information Systems/Computer Science

Ferramentas

COSO
COBIT
ISO 27001/27002
NIST
ITIL

Descrição da oferta de emprego

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cybersecurity Auditor based in Brazil.

This is a remote cybersecurity assurance role focused on evaluating technology controls, security processes, and risk management practices.
You will execute risk-based audits that help organizations identify weaknesses, manage technology risks, and strengthen their security posture.
The role covers a broad range of cybersecurity domains, including access management, vulnerability management, cloud security, incident response, and business continuity.
You will assess control effectiveness, communicate risks and their potential business impact, and develop practical recommendations for improvement.
The position combines technical expertise with strong analytical and communication skills, requiring interaction with both technical and non-technical stakeholders.
You will also lead teams of IT auditors on assigned engagements while maintaining high standards of quality, organization, and professionalism.
This opportunity is well suited to an experienced cybersecurity or technology risk professional who enjoys complex assurance work and continuous professional development.

Accountabilities
  • Execute risk-based cybersecurity and IT audits by defining audit objectives, evaluating processes and associated risks, designing and performing control testing, assessing control effectiveness, and documenting conclusions for identified risks.
  • Review IT controls, security configurations, and technology processes across areas such as change management, incident management, access management, patching, APIs, asset inventory, vulnerability management, operations, databases, risk management, authentication, authorization, and data protection.
  • Assess cybersecurity governance and technical practices, including secure system and application configuration, security assessments, business continuity, disaster recovery, audit logging, segregation of duties, physical security, cloud environments, and third-party risk.
  • Communicate identified issues, risks, technical findings, and potential impacts clearly and professionally to both technical and non-technical audiences, while developing actionable recommendations.
  • Prepare comprehensive audit documentation and final reports that clearly communicate the effectiveness of controls and the organization's ability to mitigate identified risks.
  • Lead teams of IT auditors during assigned engagements, providing direction and maintaining effective coordination throughout the audit lifecycle.
  • Apply recognized security, risk, internal control, and audit frameworks—including ISO 27000, COSO, NIST, COBIT, IPPF, and ITIL—to support consistent and effective audit activities.
  • Maintain strong time management and professional judgment while managing multiple audit activities, stakeholders, priorities, and deadlines.
Requirements
  • Bring at least 5 years of professional experience in Information Technology, Cybersecurity, Information Security, Technology Risk, IT Operations, Application Development, Cloud Technologies, or a related technical field; 7+ years is preferred for more advanced profiles.
  • Have experience in cybersecurity, IT auditing, risk management, SOX, IT compliance, or related technology assurance functions, ideally within a large or global organization.
  • Demonstrate strong knowledge of cybersecurity laws, regulations, standards, and security practices, with familiarity with frameworks such as COBIT, ISO 27001/27002, NIST, and COSO.
  • Possess broad knowledge of cybersecurity processes, including incident response, secure software development, security governance, cloud computing, SDLC, third-party risk management, penetration testing, vulnerability management, disaster recovery, IAM, access management, configuration management, audit logging, and physical security.
  • Be capable of independently executing risk-based audits, from defining objectives and assessing risks through control testing, impact analysis, recommendations, and final reporting.
  • Communicate complex technical information, audit findings, and risks clearly and professionally in English to both technical and non-technical stakeholders.
  • Demonstrate excellent analytical, critical-thinking, organizational, and time-management skills, with the ability to manage competing priorities and deliver audit engagements effectively.
  • A bachelor's or master's degree in Information Security, Information Systems, Computer Science, or a related field is preferred.
  • Hold at least one relevant professional certification, such as CISA, CISM, CISSP, PCIP, Security+, CC, or an equivalent credential.
Benefits
  • Fully remote position based in Brazil.
  • Full-time Monday-to-Friday schedule, from 8:00 AM to 5:00 PM.
  • Opportunity to work on impactful cybersecurity, technology risk, and audit initiatives across complex technology environments.
  • Access to professional development opportunities, including certifications, coaching, continuous feedback, and hands-on learning experiences.
  • Exposure to learning opportunities involving technologies and certifications from providers such as Microsoft, Google, and Amazon.
  • Supportive and inclusive work environment focused on employee well-being, belonging, professional growth, and continuous learning.
Obtém a tua avaliação gratuita e confidencial do currículo.

ou arrasta e larga o ficheiro aqui.

Similar jobs

Ofertas semelhantes que vale a pena comparar

IT Systems Implementation Auditor
IT Systems Implementation Auditor

Lever, Inc. • Brasil

Teletrabalho
BRL 120 000 - 180 000
Fully remote (Brazil)
Professional development
Certifications support
+1
Pessoa Consultora de Negócios (OT Cyber)
Pessoa Consultora de Negócios (OT Cyber)

Lever, Inc. • Brasil

Teletrabalho
BRL 150 000 - 190 000
Remote work model
Meal allowance
Medical assistance
+8
Mid-Enterprise Account Executive
Mid-Enterprise Account Executive

Lever, Inc. • Brasil

Teletrabalho
BRL 260 000 - 400 000
Remote work in Brazil
Cloud Security Engineer
Cloud Security Engineer

Jobgether SRL • Brasil

Teletrabalho
BRL 180 000 - 320 000
Healthcare coverage
Dental care
R$1,400 monthly through Caju card
+10
Cyber Security Engineer - São Paulo
Cyber Security Engineer - São Paulo

Yeah! Global • São Paulo

Presencial
BRL 111 600 - 167 400
Auditor(a) de TI – Cybersecurity & Pentest
Auditor(a) de TI – Cybersecurity & Pentest

Braskem • São Paulo

Presencial
BRL 90 000 - 150 000
Sênior Tech Manager | Jornada de Empresa (afirmativa para pessoas negras (pretas e pardas)
Sênior Tech Manager | Jornada de Empresa (afirmativa para pessoas negras (pretas e pardas)

Lever, Inc. • Brasil

Teletrabalho
BRL 300 000 - 600 000
100% remote work — Brazil
Health insurance and wellness benefits
Online therapy and coaching services
+4
Senior Fullstack Engineer, Quality Engineering
Senior Fullstack Engineer, Quality Engineering

Jobgether SRL • Brasil

Teletrabalho
BRL 180 000 - 320 000
Remote work opportunity in Brazil
Hands-on with Playwright/Cypress
AI in testing & productivity
+3
Head of Cyber Security
Head of Cyber Security

OSL • São Paulo

Presencial
BRL 150 000 - 230 000
Senior Blue Team Analyst
Senior Blue Team Analyst

Antisec • Brasil

Teletrabalho
BRL 150 000 - 230 000
Certifications budget
Health insurance
Flexible hours
+3