Define, govern, and evolve cybersecurity architecture models and standards, aligning global frameworks (NIST, ISO 27001, CIS, COBIT) with the specific needs of operations;
Lead security architecture projects and initiatives for multi-cloud, on-premises, network, application, industrial IoT/IIoT, data, and mobility environments;
Design solutions for threat prevention, detection, containment, and remediation, integrating SIEM, SOAR, EDR, IAM systems, and advanced encryption;
Contribute to defining identity and access policies and controls (IAM, SSO, MFA), network segmentation, endpoint protection, vulnerability management, and governance;
Promote integration between physical security, IT, OT (Operational Technology), and operations teams to create resilient, secure environments;
Develop and validate business continuity, cyber disaster recovery, and incident response strategies;
Evaluate and implement innovative security solutions (Zero Trust, Cloud Security Posture Management, Threat Intelligence, security automation and orchestration);
Ensure compliance with data protection laws and regulations in the countries where the company operates (LGPD, GDPR, PIPEDA);
Produce and maintain technical documentation, security plans, best-practice guides, and training for internal teams;
Participate in technical communities, forums, audits, and global compliance assessments;
Other routine duties of the area.
Requirements
Strong experience in cybersecurity architecture and governance, with significant work in complex corporate or industrial environments;
Experience in projects within Mining, Oil & Gas, or heavy industry sectors;
Deep knowledge of security frameworks (NIST, ISO 27001, CIS, COBIT, ITIL);
Expertise in network, host, application, identity, data, and cloud security (Microsoft Azure Security, AWS Security, GCP Security);
Experience with advanced tools: SIEM, SOAR, EDR, IAM, DLP, encryption, risk analysis, penetration testing, and advanced monitoring;
Experience protecting OT/IT environments and integrating security between industrial systems, industrial networks, and corporate IT;
Experience with vulnerability management, container/Kubernetes security, security automation, and DevSecOps;
In-depth knowledge of privacy and data protection regulations and legislation in the countries where the company operates;
Technical and consultative leadership, with the ability to influence strategic security decisions across global teams;
Analytical capacity and strategic vision to build resilient environments aligned with business objectives;
Proactivity, adaptability, and focus on delivering continuous, tangible business protection;
Bachelor's degree in Computer Engineering, Information Security, Systems, or related fields is required;
Discounts and special rates with universities (Mackenzie, SENAC, FIA, FIAP, and BBS Business School) and language schools (CNA, Cultura Inglesa, Wizard, CCAA, Indeed);
Discounts on fee packages and special rates for Itaú and Bradesco banks;
Option for payroll-deductible loans;
Reimbursement program for certain external certifications;
Training: The company provides a training and development platform, both remote and in-person, covering soft skills, technologies, and domains across more than 15,000 topics;
Length-of-service awards: The company recognizes employees for commitment and loyalty after 3, 5, and 10 years and then every 5 years thereafter;
Employee referral bonus — receive a reward for each new hire referral;
Fit4life — program to encourage physical exercise for employees, with scheduled online functional training sessions;
International experience: Depending on skills and business needs, you may apply for positions abroad (within and outside Latin America);