Security Architect

Posted 1ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Arquiteto de Segurança da Informação na Verity, consultoria de transformação e engenharia digital. Projetando controles, riscos e práticas DevSecOps para ambientes Cloud e on-premises.

Responsibilities:

  • Define information security architecture from the project conception stage, collaborating with business, architecture, and technology teams
  • Design, assess, and oversee the implementation of security controls across applications, infrastructure, and Cloud and on-premises environments
  • Apply Security by Design and Security by Default principles
  • Assess security risks and define mitigation actions
  • Define security models for identity, networks, encryption, privacy, and data protection
  • Define and monitor DevSecOps controls, including SAST, DAST, SCA, code analysis, and vulnerability management
  • Plan and oversee penetration tests, analyze results, and guide remediation plans
  • Define metrics, KPIs, dashboards, and controls for monitoring project security
  • Ensure compliance with applicable policies, standards, laws, and regulations
  • Support internal and external audits
  • Serve as the Information Security technical reference for the teams

Requirements:

  • Experience in Information Security Architecture and Design
  • Knowledge of software architecture, infrastructure, and Cloud/on-premises environments
  • Experience assessing and managing security risks
  • Experience with DevSecOps, SAST, DAST, SCA, code analysis, and vulnerability management
  • Solid knowledge of application security, identity, authentication, authorization, encryption, and networks
  • Knowledge of solutions such as PAM, DAM, SIEM, PKI, EDR, IDS/IPS, SASE, and DLP
  • Knowledge of penetration testing, OWASP, PTES, and NIST
  • Knowledge of tools such as Burp Suite, Nessus, Nmap, and Metasploit
  • Knowledge of frameworks and references such as TOGAF, BIAN, and STRIDE
  • Knowledge of the LGPD/GDPR, ISO 27001, NIST 800-53, CIS Controls, OWASP, CSA Cloud Controls Matrix, PCI, and financial-sector regulations
  • Strong communication skills, systems thinking, analytical ability, and technical leadership

Benefits:

  • Meal voucher
  • Food allowance
  • Home office allowance
  • Health insurance
  • Dental insurance
  • Life insurance
  • Birthday day off
  • TotalPass / Wellhub
  • Boon Saúde app
  • Discount partnerships
  • Agreements with retail establishments and educational institutions
  • Welcome kit
  • Verity onboarding program
  • Verity Learning Interval
  • Great Place to Work certification
  • Work environment focused on continuous improvement
  • Continuous learning, innovation, and people development opportunities