Role Overview
- We are looking for a Senior Information Security Analyst who will be responsible for supporting the company in optimizing its security governance processes, identifying and managing security risks that have a high impact on the organization, continuously improving existing controls, and developing metrics for the area.
What will you do?
As a Senior DevSecOps Analyst, you will be responsible for supporting our squads in the continuous integration of security throughout the entire software development lifecycle (SDLC).
Your mission will be to raise the DevSecOps maturity of the supported environments by combining deep technical expertise, strategic vision, and a consultative mindset, helping organizations deliver secure, scalable software that complies with recognized industry standards.
Requirements
- Bachelor's degree in Information Security, Cybersecurity, or a related field.
- Solid experience in Information Security with a focus on DevSecOps.
- Hands-on experience with CI/CD pipelines and security tools applied to development.
- Knowledge of risk management practices and security governance.
- Consultative mindset and ability to translate technical issues into clear business recommendations.
- Familiarity with industry frameworks and standards (OWASP, NIST, ISO 27001, LGPD, etc.).
- Proven experience working with Veracode.
- Experience automating and integrating security tools is a plus.
Nice to have:
- Certifications such as Security+, CySA+, GCP/AWS/Azure Security, DevSecOps Foundation, ISO 27001 Implementer, among others.
- Experience with containers, Kubernetes, IaC (Terraform, CloudFormation), and cloud security.
- Prior background as a developer, DevOps engineer, or security engineer.
Tech Stack
- AWS
- Azure
- Google Cloud Platform
- Kubernetes
- SDLC
- Terraform
Benefits
- Health insurance
- Dental insurance
- Life insurance
- Transportation voucher
- Meal and/or food allowance
- Pharmacy card
- WellHub
- Benefits club
- Profit-sharing and results program