Description
(Porto – Hybrid) Schedule: 2 times/week at the office, Client: Financial Sector
- Support the Application Security team in their daily tasks;
- Be the focal point for security issues and design viable mitigation plans, aligned with the reality of the infrastructure;
- Work closely with the client’s Application Security team;
- Prepare KPI reports and participate in monthly follow-up meetings;
- Implement and maintain S-SDLC (Secure Software Development Life Cycle) processes;
- Analyze SAST (Static Application Security Testing) and SCA (Software Composition Analysis) results;
- Identify continuous improvements in the security framework;
- Perform vulnerability analyses and propose technical recommendations;
- Provide consulting on solutions for problem solving and process optimization;
- Validate and integrate new projects;
- Be the spokesperson for cybersecurity on topics related to cloud infrastructure;
- Produce technical and executive reports.
Requirements
- Solid knowledge of cloud security methodologies and technologies;
- Specialization in the SecDevOps framework;
- Proven experience in cybersecurity operations;
- Experience with SAST, SCA, secret management, and vulnerability assessment;
- Experience with vulnerability analysis and recommendations;
- Experience with large-scale infrastructures;
- Excellent communication skills (oral and written) in Portuguese (C1) and English (C1);
- Autonomy, ability to prioritize, and ability to work under pressure.
Benefits
The benefits will be determined after the contractual conditions have been defined.