FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in leading information security initiatives, ensuring compliance with ISO 27001, NIST, and other relevant standards while fostering a security culture across technology and business teams. Proficient in risk analysis, incident response, and implementing security technologies in regulated environments.
Highest-signal resume keywords
ISO 27001 ComplianceNIST CSF FrameworkRisk Analysis and MitigationIncident Response ManagementSecure Development Practices
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information SecurityCybersecurity Risk ManagementPenetration TestingSecurity Policy OrchestrationSecure Architecture Review
Soft Skills
Clear CommunicationNegotiation SkillsProactive MindsetFlexibilityLeadership
Tools & Technologies
SIEMWAFIntrusion Detection SystemsGitHub ActionsJira
Industry Keywords
FintechCritical InfrastructureEnergy SectorRegulated OrganizationsSecurity Culture
Tech Stack
Tools & technologiesFirewallsVault
About the role
Key responsibilities & impact- Structure and lead the company’s information security initiatives, covering infrastructure, applications, data, and third-party integrations
- Serve as a bridge between technology, product, and business teams
- Translate business needs into concrete action plans, prioritizing initiatives with the greatest strategic impact
- Ensure compliance with ISO 27001, NIST, LGPD, and other guidelines applicable to the financial and/or energy markets
- Identify, mitigate, and respond to cybersecurity risks, vulnerabilities, and incidents
- Promote a security culture across the company
- Monitor the market to identify valuable technologies, startups, and partners
- Identify and mitigate risks in technology projects
- Support and guide teams on security best practices in architecture, infrastructure, and secure development
- Define and track security-related schedules and deliverables, integrating them with other technology areas
- Serve as the focal point for technical and regulatory security initiatives
- Facilitate communication between teams and leadership, contributing to the platform’s resilience, compliance, protection, scalability, and credibility
Requirements
What you’ll need- Degree in computer science, information systems, systems analysis and development (ADS), information security, or related technology fields
- Experience with frameworks and standards such as ISO 27001, NIST CSF, OWASP Top 10, and CIS Controls
- Experience with tools such as SIEM, WAF, firewalls, enterprise antivirus, intrusion detection (IDS/IPS), and incident response platforms
- Ability to orchestrate security policies across distributed environments
- Experience conducting risk analyses, performing penetration tests, running incident response simulations, and reviewing secure architectures
- Clear communication skills with technical and non-technical stakeholders
- Experience leading cross-functional initiatives and working with regulated organizations (e.g., BACEN, CVM, ANEEL)
- Strategic vision and a proactive approach to identifying vulnerabilities, anticipating threats, and fostering an organizational security culture
- Ability to lead proofs of concept, evaluate market solutions, and implement security technologies at scale
- Knowledge of the startup, fintech, and critical infrastructure ecosystems in the financial and/or energy sectors
- Experience with secure development tools and DevSecOps-focused pipelines (e.g., GitHub Actions, SonarQube, Snyk, HashiCorp Vault)
- Excellent verbal and written communication skills
- Strong negotiation and influencing skills
- Proactive mindset for evaluating and adopting new technologies
- Experience with agile methodologies (Scrum), ceremonies, and tools (Jira and Miro)
- Ability to learn and adapt quickly to new technologies
- Flexibility and ability to adapt quickly to technological changes
- Experience managing schedules and expectations
- Fluency in Portuguese and English
Benefits
Comp & perks- Bonus: Up to two monthly salaries per year
- Work model: Hybrid – three days in the office per week
- Meal voucher: BRL 43.68 per business day
- Food allowance: BRL 832.00 per month
- Transportation voucher or mobility allowance: Round-trip transportation for in-office days, with no payroll deduction
- Health insurance: Amil, with copayments for the employee and eligible dependents, including children and spouse
- Wellhub partnership with SulAmérica
- Life insurance: MetLife
- Childcare allowance: Reimbursement of up to 40% of the standard salary for children up to 24 months old and 35% for children between 24 and 71 months old
- Financial assistance for employees with children with disabilities: Amount equivalent to 50% of the standard salary
- Birthday Day Off!
