Tech Lead – Cyber Security

Jobtailor

Belo Horizonte

Presencial

BRL 180 000 - 240 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

Jobtailor seeks a Technical Leader for its Cyber Security team in Brazil. You will define standards, security architecture, and best practices, and translate information security strategy into executable plans aligned with business objectives and Onfly's expansion in Latin America.

You will lead SOC operations, drive ISO 27001 and PCI DSS compliance, guide LGPD considerations, and advance DevSecOps in a cloud-native AWS environment.

Qualificações

  • Solid experience in SOC operations, including incident management, monitoring and threat response.
  • In-depth knowledge of ISO 27001, including ISMS implementation, risk management and internal audits.
  • Technical mastery of PCI DSS, with experience in compliance assessments, scoping and remediation of non-conformities.
  • Experience acting as a technical authority or technical lead for security teams, not necessarily involving hierarchical people management.
  • Strong background in cloud security (preferably AWS), including network controls, IAM, encryption, SIEM and detection tools.
  • Ability to communicate risks and technical decisions clearly to both technical and non-technical audiences.
  • Knowledge of LGPD and privacy/data protection frameworks.
  • Experience with DevSecOps, integrating security into CI/CD pipelines and Shift-Left security practices.

Responsabilidades

  • Act as the technical leader of the Cyber Security team, defining standards, security architecture and best practices, and supporting the technical development of other team members.
  • Translate the information security strategy defined by the Head into executable technical plans aligned with business objectives and Onfly's expansion in Latin America.
  • Provide technical leadership for the operation of the SOC (Security Operations Center), including continuous monitoring, detection, incident response and vulnerability management.
  • Technically lead the implementation and maintenance of ISO 27001, ensuring the robustness of ISMS controls.
  • Ensure technical compliance with PCI DSS, leading scoping, assessments and remediation of non-conformities.
  • Ensure technical compliance with LGPD, guiding architectural decisions involving personal data and privacy.
  • Drive the advancement of DevSecOps practices, integrating security into the development lifecycle in a cloud-native environment (AWS, ECS, microservices).
  • Technically coordinate the pentest, bug bounty, vulnerability analysis and IAM/PAM programs.
  • Serve as a technical reference for Engineering and Product, reviewing architectures and critical security decisions.
  • Support the Head of Cyber Security in communicating risks and technical decisions to internal and external stakeholders.

Conhecimentos

SOC Operations
Security Leadership
Security Architecture
Threat Response
Continuous Monitoring
Risk Management
Communication
Cloud Security (AWS)
ISMS & LGPD awareness
Technical Leadership

Formação académica

Bachelor's degree in Computer Science, Information Systems, Engineering or related fields

Ferramentas

AWS
SIEM
Encryption Tools
Detection Tools
CI/CD Pipelines
ISMS Tools

Descrição da oferta de emprego

  • Act as the technical leader of the Cyber Security team, defining standards, security architecture and best practices, and supporting the technical development of other team members;
  • Translate the information security strategy defined by the Head into executable technical plans aligned with business objectives and Onfly's expansion in Latin America;
  • Provide technical leadership for the operation of the SOC (Security Operations Center), including continuous monitoring, detection, incident response and vulnerability management;
  • Technically lead the implementation and maintenance of ISO 27001, ensuring the robustness of ISMS controls;
  • Ensure technical compliance with PCI DSS, leading scoping, assessments and remediation of non-conformities;
  • Ensure technical compliance with LGPD (Brazilian Data Protection Law), guiding architectural decisions involving personal data and privacy;
  • Drive the advancement of DevSecOps practices, integrating security into the development lifecycle in a cloud-native environment (AWS, ECS, microservices);
  • Technically coordinate the pentest, bug bounty, vulnerability analysis and identity and access management (IAM/PAM) programs;
  • Serve as a technical reference for Engineering and Product, reviewing architectures and critical security decisions;
  • Support the Head of Cyber Security in communicating risks and technical decisions to internal and external stakeholders.

Requirements

  • Solid experience in SOC operations, including incident management, monitoring and threat response;
  • In-depth knowledge of ISO 27001, including ISMS implementation, risk management and internal audits;
  • Technical mastery of PCI DSS, with experience in compliance assessments, scoping and remediation of non-conformities;
  • Experience acting as a technical authority or technical lead for security teams, not necessarily involving hierarchical people management;
  • Strong background in cloud security (preferably AWS), including network controls, IAM, encryption, SIEM and detection tools;
  • Ability to communicate risks and technical decisions clearly to both technical and non-technical audiences;
  • Knowledge of LGPD and privacy/data protection frameworks;
  • Experience with DevSecOps, integrating security into CI/CD pipelines and Shift-Left security practices;
  • Bachelor's degree in Computer Science, Information Systems, Engineering or related fields;

Core Competencies

Demonstrates expertise in Cyber Security leadership, focusing on SOC operations, compliance with ISO 27001 and PCI DSS, and the integration of security practices within cloud environments. Proficient in translating information security strategies into actionable technical plans while ensuring adherence to data protection regulations like LGPD.

Highest-signal resume keywords

  • SOC Operations Management
  • ISO 27001 Implementation
  • PCI DSS Compliance
  • Cloud Security (AWS)
  • DevSecOps Practices

ATS Optimization Keywords

Hard Skills

  • Incident Management
  • Threat Response
  • Risk Management
  • Vulnerability Management
  • Identity and Access Management (IAM)
  • Security Architecture
  • Continuous Monitoring
  • Security Operations Center (SOC)
  • Data Protection Frameworks
  • Technical Leadership

Soft Skills

  • Clear Communication
  • Technical Decision-Making

Industry Keywords

  • LGPD
  • Data Protection Law
  • DevSecOps
  • ISMS
  • Bug Bounty

Tools & Technologies

  • AWS
  • SIEM
  • Encryption Tools
  • Detection Tools
  • CI/CD Pipelines
Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Cyber Security Specialist
Cyber Security Specialist

Jobtailor • Belo Horizonte

Presencial
BRL 110 000 - 170 000
Analista de Segurança da Informação Sênior
Analista de Segurança da Informação Sênior

Jobtailor • São Paulo

Presencial
BRL 120 000 - 190 000
Security Engineer, AppSec
Security Engineer, AppSec

Jobtailor • São Paulo

Híbrido
BRL 120 000 - 240 000
Senior IT Support and Infrastructure Analyst
Senior IT Support and Infrastructure Analyst

Jobtailor • São Paulo

Presencial
BRL 180 000 - 300 000
Information Security Analyst (Pleno)
Information Security Analyst (Pleno)

Jobtailor • São Paulo

Presencial
BRL 120 000 - 180 000
Pre-Sales Consultant – Cybersecurity, Mid-level
Pre-Sales Consultant – Cybersecurity, Mid-level

Jobtailor • São Paulo

Presencial
BRL 90 000 - 150 000
Engenheiro de Cybersegurança Sênior
Engenheiro de Cybersegurança Sênior

Jobtailor • São Paulo

Presencial
BRL 180 000 - 260 000
Senior Information Security Analyst – SOC, Blue Team
Senior Information Security Analyst – SOC, Blue Team

Jobtailor • Brasil

Híbrido
BRL 220 000 - 340 000
Cybersecurity Manager (BR 35)
Cybersecurity Manager (BR 35)

OKTO PAYMENTS • São Paulo

Híbrido
Competitive compensation
Meal allowance
Health and dental plan
+1
IT Governance Analyst – Mid-Level
IT Governance Analyst – Mid-Level

Jobtailor • Curitiba

Presencial
BRL 120 000 - 190 000