
Information Security Team Leader
- Curitiba - PR
- Permanente
- Período integral
- Lead and develop a high-performing InfoSec team focused on Governance and Awareness;
- Oversee the implementation, maintenance, and continuous improvement of ISO/IEC 27001, 27701, 27018, and PCI DSS compliance frameworks;
- Coordinate internal and external security assessments, audits, and the execution of remediation plans;
- Define, monitor, and report on key security metrics and service-level agreements (SLAs);
- Drive the creation and delivery of company-wide security awareness programs, phishing simulations, and training initiatives;
- Ensure alignment between InfoSec policies and EBANX's business processes, internal controls, and legal/regulatory obligations;
- Collaborate with cross-functional teams (Legal, Risk, HR, Engineering, etc.) to embed security practices into business operations;
- Manage operational routines, handle incidents, support change requests, and ensure governance of ongoing activities;
- Track and report on the team's progress, resource planning, KPIs, and strategic initiatives;
- Support the onboarding of new services and contracts, ensuring security requirements are embedded from day one;
- Foster a security-first mindset through influence, engagement, and continuous improvement culture;
- Solid experience in leading teams, with proven ability to motivate, coach, and develop people.
- Deep knowledge in Information Security Governance and Compliance, including risk management, internal controls, and security frameworks.
- Hands-on experience with global standards and certifications such as ISO/IEC 27001, ISO/IEC 27701, ISO/IEC 27018, and PCI DSS.
- Strong communication skills, capable of engaging both technical and non-technical stakeholders.
- Proven track record managing audits, assessments, and external regulatory demands.
- Analytical mindset with a business-oriented approach, connecting security decisions with strategic goals.
- Experience designing and running awareness programs that go beyond checklists and truly shift culture.
- Advanced English - you'll often interact with international stakeholders.
- Information Security certifications such as ISO/IEC 27001 Lead Implementer/Auditor.
- Experience working in global or multicultural environments, with distributed teams and international operations.
- Familiarity with SOX controls, data privacy frameworks, and third-party risk management.
- Knowledge of cloud security standards (e.g., AWS, GCP, Azure) and secure development practices.
- Hands-on experience with awareness platforms (e.g., KnowBe4, Wombat, MetaCompliance) and phishing simulation tools.
- Experience implementing metrics dashboards and KPIs for InfoSec programs.
- Previous involvement in security incident response, including coordination and post-incident reviews.
- Passion for building a security culture, storytelling, and engaging people in non-technical areas.
- Experience using Artificial Intelligence (AI) or Machine Learning to automate governance processes, enhance risk analysis, streamline controls management, or improve compliance monitoring.
- WAVES Program: Annual bonuses based on the company's performance.
- Meal/Food Allowance: Credit provided on a flexible benefits card.
- EBANX Education: Financial support for undergraduate, graduate, and MBA programs to support your professional growth.
- EBANX Skills: Budget dedicated to workshops, courses, and certifications to encourage your continuous development.
- Language Classes: Spanish, English, and Portuguese lessons for your personal and professional development.
- EBANX Health: Comprehensive medical and dental plans fully covered for the employee, plus subsidies for dependents to take care of your and your family's well-being.
- EBANX Family: Childcare assistance, extended parental leave for caregivers, and support programs for pregnant employees and children.
- Life Insurance: Fully paid by EBANX.
- Transportation: Parking assistance or transportation vouchers, depending on your needs.
- EBANX Flexible: A special day off on your birthday, semi-flexible working hours (8 hours/day, Monday to Friday), and year-end recess between Christmas and New Year's without affecting your vacation days.
- EBANX Play: Well-being program including access to Wellhub, e-Sports, and partnerships with SESC.
- Blue Club: Exclusive discounts at bakeries, restaurants, stores, courses, and more.