About the company
This position is listed on behalf of a partner company. Our partner is looking for a Director, Information Security based in Brazil. This is a senior cybersecurity leadership role responsible for strengthening an enterprise-wide capability to detect, investigate, contain, and prevent cyber threats.
Responsibilities
- Define and mature security operations frameworks, including runbooks, escalation models, operational procedures, and response standards.
- Build and lead security operations capabilities supporting continuous monitoring, investigation, triage, escalation, and incident response.
- Improve detection coverage and containment effectiveness through analytics, automation, orchestration, and modern security engineering practices.
- Collaborate with IT teams to develop secure integrations, logging pipelines, security baselines, and monitoring capabilities across on-premises and cloud environments.
- Oversee the security technology portfolio and establish roadmaps that continuously improve capability, coverage, and operational maturity.
- Guide security configuration standards, system hardening, patching strategies, and vulnerability prioritization.
- Plan and lead tabletop exercises, simulation drills, and other preparedness activities.
- Manage relationships with external security providers and ensure service levels, performance, quality, and contractual commitments are maintained.
- Oversee threat intelligence collection, enrichment, analysis, and operational application.
- Lead proactive threat-hunting, anomaly-detection, and adversary-simulation activities.
- Oversee digital forensics, evidence handling, investigation activities, and post-incident reporting.
- Manage the incident response program, including response roles, escalation paths, communication frameworks, and incident coordination.
- Develop, maintain, and regularly test incident response playbooks.
- Track security program maturity, key risk indicators, operational performance, and compliance progress.
- Develop dashboards, metrics, and executive-level reports.
Requirements
- Bachelor’s degree in Business Administration, Information Technology, Cybersecurity, or a related discipline, or equivalent professional experience.
- 10+ years of professional cybersecurity experience, including at least 7 years leading incident response, security operations, and threat management programs.
- Extensive expertise with modern security operations technologies, including SIEM, SOAR, XDR/EDR, threat intelligence platforms, forensic tools, and cloud-native security monitoring solutions.
- Strong understanding of cybersecurity operations, threat detection, incident response, threat hunting, digital forensics, and cyber resilience.
- Demonstrated experience building and leading high-performing security teams.
- Strong ability to establish security frameworks, procedures, escalation models, metrics, and continuous improvement programs.
- Experience working across cloud and on-premises environments.
- Excellent verbal and written communication skills.
- Strong analytical, decision-making, problem-solving, and crisis-management capabilities.
- Ability to manage multiple priorities and third-party relationships.
- Certifications such as CISSP, CISM, CISA, and/or CRISC are preferred.
- Experience working in regulated industries is preferred.
Conditions
- Competitive annual salary range of $210,000–$260,000.
- Full-time, experienced-level leadership opportunity.
- Opportunity to lead and mature enterprise-wide cybersecurity and cyber resilience capabilities.
- High-impact role with broad exposure across security operations, threat management, incident response, and technology.
- Collaborative environment focused on professional development, innovation, and problem solving.
- Flexibility designed to support personal and professional priorities.