Security Engineer ensuring protection of corporate environment at Creditas. Implementing security controls and elevating defensive maturity with a focus on fintech standards.
Responsibilities
Ensure protection of the corporate environment and the company’s assets.
Responsible for implementing and operating controls that protect our people and data, balancing strong security with an excellent user experience.
Be a key player in our restructuring, helping to raise the maturity of our internal defensive posture.
Endpoint Management: administer and optimize EDR/antivirus tools and Mobile Device Management (MDM) solutions.
Email and Collaboration Security: configure and monitor spam and phishing filters and Data Loss Prevention (DLP) tools in environments such as Google Workspace or Office 365.
Vulnerability Management: run vulnerability scans on corporate assets, prioritize remediation with the IT team and validate fixes.
Corporate Identity (IAM support): assist in maintaining the access lifecycle (onboarding/offboarding) and ensure the health of MFA across all corporate tools.
Awareness: help create Security Awareness campaigns and phishing simulations to build security culture among employees.
Local Incident Response: act as first responder to incidents that affect user machines or office tools.
Requirements
Leadership experience: previous experience managing technical security teams or serving as a high‑seniority Tech Lead.
Holistic view: solid knowledge in at least two of the areas under your responsibility (e.g., strong AppSec expertise and a good foundation in Incident Response).
Engineering mindset: experience with security automation and infrastructure-as-code (Terraform, CloudFormation) in AWS or GCP environments.
Assertive communication: ability to translate complex technical risks into business impact for stakeholders.
Prior experience in fintechs or highly regulated environments (BACEN, LGPD).
Active participation in the security community (talks, CTFs, Bug Bounty).
Availability for hybrid work: required to attend our Morumbi, São Paulo office once a month for 4 consecutive days, usually during the last or first week of the month (Creditas in Person).
Benefits
Health plan (Alice)
Dental plan (SulAmérica)
Wellz: fully covered therapy sessions
Wellhub: access to gyms and studios
Creditas Endurance: high-impact sports incentive program
Pharmacy discount program (Univers)
Life insurance (Porto Seguro)
Birthday day off
Extended parental leave: 6 months for birthing parents and 35 days for non-birthing parents
Family Care: support program for maternity and paternity
Childcare assistance
Assistance for dependents with disabilities (PWD)
SESC: access to SESC facilities for you and your dependents
Information Security Consultant managing security standards implementation at LUZA Group in Lisbon, Portugal. Handling analysis of risk and supporting audits while working in a hybrid model.
Senior Cybersecurity Analyst at Boeing performing advanced cybersecurity assessments and risk evaluations for third - party vendors. Focusing on automation, lean processes, and collaborating with key stakeholders across departments.
Cybersecurity Manager ensuring regulatory compliance in information security within the Mexican framework. Collaborating with technology teams to strengthen governance, risk, and control model.
CISA Auditor focusing on cloud security audits for a Zurich - based international bank. Ensuring cybersecurity and identifying vulnerabilities in IT systems with risk - oriented audits.
Cybersecurity Specialist managing compliance for DoD security transition to Zero Trust Architecture. Involves overseeing RMF activities and ensuring ATO deadlines are met in cloud environments.
Engineer II responsible for managing enterprise customer support in Security Engineering. Focused on troubleshooting and diagnosing security incidents in a hybrid work environment.
Guest Safety Agent at HRI Hospitality ensuring safety and hospitality for guests and managing outlet spaces. Maintaining a secure environment while engaging with guests and visitors in New Orleans.
Cybersecurity Architect for Saint Louis University developing and assessing security strategies and architecture. Ensuring secure IT services through effective security technologies and practices.
Senior Commercial Manager developing and executing Cyber Security strategies, managing client portfolios and leading complex negotiations in São Paulo.
Security Officer responsible for maintaining safety at WarHorse Casino. Enforcing policies, responding to incidents, and providing customer service to guests.