Information Security Consultant
São Paulo, SP, Brazil
Endava
We combine world-class engineering with deep industry expertise and a people-centric mindset to drive meaningful change.Company Description
Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.
By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses.
From prototype to real-world impact - be part of a global shift by doing work that matters.
Job Description
We are looking for a dedicated and experienced Security Risk Consultant to join our team. The successful candidate will be responsible for evaluating and mitigating risks related to fraud services, vendor management, and security architectures. Key responsibilities include conducting security reviews, understanding and implementing security frameworks, and ensuring adherence to industry standards.
Key Responsibilities:
- Fraud services risk evaluation
- Vendor risk assessment
- Arch security review
- Security frameworks and a good understanding of industry security standards
- AWS security control
- Access management controls
- Third-party risk: standard, security gaps
- Understanding security control maps, incidents response process, and network segmentation.
- Background security architecture or experience in third-party assessment
- Security controls evaluation
- Consulting background
- Security consulting background
- Standard: ISO 27001, NIST SP800, “Must to have”
- Standard: PCI/DSS: Nice to have
Qualifications
Qualifications:
Proven experience in risk evaluation and management for fraud services and vendors.
Strong background in security frameworks and industry standards.
Proficiency in AWS security controls and access management.
Experience in third-party risk assessment and security architecture.
Knowledge of security control maps, incident response processes, and network segmentation.
Consulting experience in the security domain.
Familiarity with ISO 27001, NIST SP800 (must-have), and PCI/DSS (nice to have) standards.
Excellent communication and interpersonal skills.
Strong analytical and problem-solving abilities.
Additional Information
Discover some of the global benefits that empower our people to become the best version of themselves:
- Finance: Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus;
- Career Development: Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership;
- Learning Opportunities: Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences;
- Work-Life Balance: Hybrid work and flexible working hours, employee assistance programme;
- Health: Global internal wellbeing programme, access to wellbeing apps;
- Community: Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations.
Our diversity makes us stronger - it drives meaningful change and enables us to build innovative technology solutions. We are committed to creating an inclusive community where all of us, regardless of background, identity, or personal characteristics, feels valued, respected, and free from discrimination. As an equal opportunity employer, we welcome applications from all individuals and base hiring decisions on merit, skills, qualifications, and potential.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: AWS Finance Incident response ISO 27001 NIST Risk assessment Vendor management
Perks/benefits: Career development Competitive pay Conferences Flex hours Health care Salary bonus Team events
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.