Point your AI agent at freehire and let it find you a job.

Get the CLI →

Staff Cybersecurity Engineer

NewBe an early applicant

Summary

Staff-level cybersecurity engineer in São Paulo who owns security architecture and strategy for cloud platforms: threat modeling, IAM, encryption, network security, DevSecOps, and incident response across AWS/Azure/GCP, ensuring compliance (GDPR, HIPAA) while partnering with engineers and leadership.

The Staff Cybersecurity Engineer is responsible for driving the security architecture, strategy, and continuous improvement of cloud-based systems and platforms. The professional will identify and mitigate security risks, define security standards and controls, and work closely with system architects, engineers, and leadership to develop scalable and comprehensive security solutions across cloud environments.

Responsibilities:

  • Threat Identification and Mitigation: Analyze cloud systems, identify vulnerabilities, and implement security solutions to mitigate risks.
  • Development of Security Solutions: Create and implement security tools such as encryption and access control to protect data and infrastructure in the cloud.
  • Collaboration with Technical Teams and Executive Leadership: Work with architects, engineers, and senior leadership to define and align security requirements and solutions with organizational strategies.
  • Implementation of Security Measures: Oversee the implementation of security measures from design to deployment in cloud systems.
  • Post-Deployment Monitoring: Monitor cloud systems for malicious activity or security incidents and respond quickly to mitigate risks.
  • Compliance Assurance: Ensure cloud platforms meet security regulations such as GDPR, HIPAA, and others.
  • Support for Cloud-Native Application Security: Secure cloud-native applications (microservices, containers, serverless functions) and ensure their security from design to operation.

Requirements:

  • Cloud Infrastructure Security and Compliance: Experience in protecting cloud infrastructures and knowledge of security regulations such as GDPR, HIPAA, and other frameworks.
  • Identity and Access Management (IAM): Experience in identity management and access control, including multi-factor authentication (MFA) and IAM solutions like AWS IAM, Azure AD.
  • Encryption and Key Management: Expertise in data encryption and key and certificate management.
  • Network Security and Segmentation: Knowledge of cloud network security, including firewalls, VPNs, segmentation, and practices like Zero Trust.
  • Security Information and Event Management (SIEM): Experience with SIEM tools (e.g., Splunk, LogRhythm) for monitoring and incident response.
  • Threat Modeling and Risk Assessment: Ability to perform threat modeling and risk assessments to mitigate vulnerabilities.
  • DevSecOps Practices and Tools: Proficiency in integrating security into the development lifecycle (DevSecOps) using tools such as Jenkins, GitLab CI, Terraform, Docker, Kubernetes.
  • Incident Response and Forensic Analysis: Experience in incident response and forensic analysis for preventing future incidents.
  • Automated Security Testing and Auditing: Knowledge of automated security testing and auditing with tools like OWASP ZAP, Nessus.
  • Cloud-Native Application Protection: Security for cloud-native applications (microservices, containers, serverless) on platforms such as AWS, Azure, Google Cloud, Kubernetes, and Docker.

Desirable Skills:

  • Security Certifications: Certifications such as CISSP, CCSP, AWS Certified Security Specialty, Azure Security Engineer, Google Cloud Professional Cloud Security Engineer are a plus.
  • Cloud Platform Experience: Experience with public cloud platforms such as AWS, Microsoft Azure, Google Cloud Platform (GCP), or hybrid/private solutions.
  • Ability to Work Under Pressure: Ability to handle critical incidents and make quick decisions.
  • Effective Communication: Ability to communicate complex security issues to various audiences, including technical teams and executives.

Benefits:

  • PPR (Profit Sharing): Possibility of extra compensation based on the company’s results, according to your performance.
  • Health and Dental Plan: To ensure your care and well-being!
  • Flexible Benefit: Receive an amount that can be used according to your needs, including food, transportation, education, culture, and health. You decide how to use it!
  • Flexible Hours: Work at the best time for you and have a better quality of life.
  • Massages and Manicure in the Office: So you can relax and feel good about yourself.
  • TotalPass: To keep your health in check and take care of your body.
  • Zenklub: Access to mental health and emotional well-being support.
  • Inclusive Environment: We value diversity and always strive to create a space where everyone can be authentic, respected, and feel part of something bigger.
  • Day off in Your Birthday Month: A day off in your birthday month to celebrate in any way you prefer
  • Extended Maternity/Paternity Leave: So you can enjoy this important time with your family, with peace of mind that your professional life will remain well-supported.
  • Childcare Assistance: To support you with the care of your young children.
  • Continuous Individualized Development Support: We offer support for your professional growth, respecting your personal needs and goals.
  • Culture and Well-being: We create an environment that values mental health, work-life balance, and encourages connection with culture.

The benefits provided with this position are not deducted from your paycheck!

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available