Information Security Consultant

Posted 6 days ago

This is a fully remote position, open to applicants in Brazil.

📋 Description

• Collaborate with technology delivery teams to ensure that security measures are integrated from the design stage.

• Work alongside development teams to provide guidance on secure design methodologies and adherence to the Information Security Policy.

• Advocate for the adoption of security best practices (NIS) and authorized tools.

• Perform security evaluations as part of the Application Readiness Review (ARR) process.

• Offer consulting services on a variety of information security issues.


⛳️ Requirements

• Proven experience in software development fields, including Software Development, Architecture, Software QA, or Application Security Engineering.

• Proficiency in Cloud Infrastructure.

• Familiarity with commercial source code analysis tools (Source Code Analysis/Static Application Security Testing).

• In-depth understanding of application architecture patterns (MVC, Microservices, Event-Driven, etc.).

• Strong business insight and the capability to collaborate with development, QA, and security teams.

• Awareness of the OWASP Top 10.

• Practical experience in software development (web, mobile, and various programming languages).

• Knowledge of source code vulnerability remediation processes.

• Capacity to identify risk factors and acceptance criteria that influence business and security choices.

• Skill in analyzing application security vulnerabilities and executing mitigation strategies.

• Familiarity with scanning tools, code reviews, and vulnerability detection processes.

• Ability to evaluate mitigation plans in relation to existing vulnerabilities, threats, and security recommendations.

• Understanding of effective controls in Application Security, Cloud & Hosting, Identity and Access Management, Data Protection, Connectivity, Endpoint Security, and Cybersecurity Operations.

• Knowledge of the ISO 27002:2005/2013 information security standard.

• Insight into cloud application architecture and container-based deployment.

• Proficient in English (Advanced/Fluent).

• Preferred: knowledge of and enthusiasm for Agile, XP, Scrum, and Kanban methodologies.

• Preferred: understanding of User Story-based Test-Driven Development (TDD).

• Preferred: familiarity with Continuous Integration/Continuous Deployment (CI/CD).

• Preferred: knowledge of Azure, AWS, and GCP.

• Preferred: familiarity with Metasploit, Burp Suite, Fuzzing, and Jenkins.

• Preferred: experience in code reviews and penetration testing (pentests).


🏝️ Benefits

• Health insurance

• Dental insurance

• Meal voucher

• Mobility allowance

• Culture voucher

• Education allowance

• Life insurance

• Mental health and well-being program

• Childcare assistance

• Partner discounts

• Remote work model

• CLT employment contract

People also viewed

Intelance1 day ago

Security Architect

GB flagUnited Kingdom OnlyFreelanceCybersecurity / Security Engineer£500 – £675/year
ApplyView job
OX Security1 day ago

Application Security Researcher

AR flagArgentina OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Cloudiax2 days ago

Information Security, Compliance & IKS Manager – ISO 27001

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Cisco2 days ago

Senior Manager, Security Channel – Market Growth, Splunk

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$169.3k – $237.2k/year
ApplyView job
Cisco2 days ago

Senior Manager, Security Channel – Market Growth, Splunk

US flagArizona, +10 more statesFull-timeCybersecurity / Security Engineer$169.3k – $237.2k/year
ApplyView job
Skylight2 days ago

Senior Product Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$200k – $250k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers