Назад
Company hidden
11 часов назад

Senior Security Engineer (GRC Fintech)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Brazil
Релокация
Brazil
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Security Engineer (GRC Fintech): Managing governance, risk, and compliance frameworks for a large-scale digital banking platform with an accent on security certifications and regulatory adherence. Focus on orchestrating audits, optimizing internal controls, and bridging the gap between engineering and audit stakeholders.

Location: Hybrid (2-3 times/week) in Belo Horizonte, Campinas, Rio de Janeiro, or Sao Paulo, Brazil

Company

hirify.global is one of the largest digital banking platforms in the world, serving millions of customers across Brazil, Mexico, and Colombia.

What you will do

  • Act as the senior technical and governance reference for security certifications (ISO 27001, PCI-DSS) and internal controls.
  • Identify control gaps and orchestrate audits and remediation plans with business and technical leaders.
  • Collaborate with Engineering and Product teams to embed compliance and security requirements into systems and products.
  • Define and monitor KRIs and KPIs to deliver data-driven insights to senior management and committees.
  • Conduct assessments of internal controls and lead reviews to ensure adherence to legal requirements and industry standards.

Requirements

  • Solid experience in information security with deep knowledge of PCI-DSS, ISO 27000, and NIST frameworks.
  • Experience with security certification processes, internal controls, and audit support in regulated environments.
  • Advanced English (written and verbal) required.
  • Bachelor’s degree in Engineering, Technology, Security Information, Risk Management or related fields.
  • Hands-on experience implementing security controls within cloud environments such as AWS or GCP.
  • Knowledge of financial regulations including SOx, BACEN, CVM, CNBV, ANBIMA, or SEC.

Nice to have

  • Relevant certifications: CRISC, CISA, Security+, CISSP, or CISM.
  • Experience operating in international environments.
  • Familiarity with using AI and automation (ML, Generative AI, or LLMs) to enhance security compliance.

Culture & Benefits

  • Opportunity to earn equity at hirify.global.
  • Comprehensive health and dental plans, including life insurance and the NuCare assistance program.
  • 30 days of paid vacation and extended parental leave with daycare allowance.
  • Educational growth via the NuLanguage program and Nucleo learning platform.
  • Practical perks: food/meal cards, transportation benefits, and a work-from-home allowance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →