Job Closed
This listing is no longer active.
We drive innovation, enhance growth and highlight regional talent. Behind every technology project there is a great team
Ethical Hacker, Portuguese
Location
Colombia
Posted
16 days ago
Salary
$2,000K - $15,000K / month
Seniority
Senior
Job Description
Ethical Hacker, Portuguese
Autonomic Mind
• Perform penetration tests on web, mobile (Android and iOS), and desktop applications. • Conduct vulnerability research in static code and in the source code of web applications. • Apply SAST and DAST techniques at different stages of development. • Perform penetration testing on on-premises infrastructure and cloud environments. • Automate analysis and vulnerability detection processes using scripts. • Document and communicate findings clearly to the technical team. • Actively collaborate within a remote, multicultural, and multilingual team.
Job Requirements
- Strong knowledge of offensive security techniques and practices.
- Demonstrable experience in one or more of the following areas: web application pentesting.
- Vulnerability research in static and source code.
- Mobile application pentesting (Android and iOS).
- Desktop application pentesting.
- Proficiency with SAST and DAST.
- Ability to analyze and identify vulnerabilities in source code.
- Experience or hands-on practice in on-premises and/or cloud infrastructure hacking.
- Competence in automation and scripting.
- Languages: Portuguese: conversational or native (any country of origin).
- Spanish: functional communication — perfection not required; ability to follow mentorship and communicate with the team is expected.
- English: technical B1 — able to read documentation, CVEs, writeups, certifications, and CTF materials.
Benefits
- Non-exclusionary regarding years of experience or formal background — demonstrable AppSec skills are valued (formal work, controlled environments, CTFs, or self-directed practice).
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Ensure the Information Security organization speaks with one clear, consistent, and credible voice — in its writing, its visuals, and the artifacts that carry the program to the rest of the enterprise. • Design and produce Board-level and executive security materials — risk reports, posture dashboards, program updates, and decision briefs — translating technical findings into clear narratives and high-impact visuals for non-technical leadership. • Help design a unified security-metrics reporting layer in which a single, shared pool of metrics is surfaced at every altitude — operational dashboards for analysts, reporting for management, and narrative for executives and the Board. • Author and maintain security policies, standards, procedures, and control narratives, ensuring alignment with frameworks such as NIST CSF, PCI-DSS, and SOX. • Conceive, write, illustrate, and produce security awareness and training content — e-learning modules, microlearning, phishing-simulation creative, infographics, posters, and campaign materials. • Produce and maintain operational documentation for the security organization — runbooks, incident-response playbooks, the InfoSec operations manual, and executive incident summaries.
Information Security Engineer - ThousandEyes(Hybrid)
Cisco ThousandEyesCisco ThousandEyes is a Digital Experience Assurance platform that empowers organizations to deliver flawless digital experiences across every network – even the ones they don’t own. Powered by AI and an unmatched set of cloud, internet and enterprise network telemetry data, ThousandEyes enables IT teams to proactively detect, diagnose, and remediate issues – before they impact end- user experiences. ThousandEyes is deeply integrated across the entire Cisco technology portfolio and beyond, helping customers deploy at scale while also delivering AI-powered assurance insights within Cisco’s leading Networking, Security, Collaboration, and Observability portfolios.
This role follows a hybrid work model, with in-office attendance expected once a week in the Poland office. KRAKOW - ENTERPRISE PARK BLDG C Aleja Powstancow Wielkopolskich 13C Enterprise Park KRAKOW, LESSER POLAND 30-707 Meet the Team Cisco ThousandEyes is a Digital Experience Assurance platform that empowers organizations to deliver flawless digital experiences across every network - even the ones they don't own. Powered by AI and an unmatched set of cloud, internet and enterprise network telemetry data, ThousandEyes enables IT teams to proactively detect, diagnose, and remediate issues - before they impact end- user experiences. ThousandEyes is deeply integrated across the entire Cisco technology portfolio and beyond, helping customers deploy at scale while also delivering AI-powered assurance insights within Cisco's leading Networking, Security, Collaboration, and Observability portfolios. Your Impact The impact of this role centers on providing deep technical leadership through multi-functional collaboration to identify requirements and deliver solutions that meet project and departmental objectives. You will embed robust security controls into architectural designs and work closely with security teams to enhance safeguards and support incident response efforts. A key responsibility is leading information security risk management activities, including conducting risk assessments, developing treatment plans, and performing internal audits to evaluate control effectiveness. You will also support major external security certification and compliance initiatives, ensuring adherence to industry standards and regulatory requirements. This position requires managing and coordinating security projects and processes, driving risk mitigation efforts, and holding stakeholders accountable for remediation plans. Success in this role depends on effective communication, project management skills, and a proactive approach to securing systems, services, and data across the organization. Minimum Qualifications - Experience with networking automation or API-focused scripting (e.g., Bash or Python). - Solid understanding of security principles in web technologies, networking, and Linux environments - Proficiency in at least one automation programming language such as Python, shell scripting, GoLang, or TypeScript. - Strong proficiency in English, including excellent written communication and interpersonal skills. Demonstrated ability to work both independently and multi-functionally, effectively managing responsibilities across diverse geographic locations and organizational boundaries. - Bachelor's degree with 3+ years of experience Preferred Qualifications: - Advanced expertise in Linux OS, network protocols, web security architectures (e.g., nginx, apache), and security technologies like Firewalls, IAM, IDS/IPS, SIEM, or Cryptography. - Experience leading information security risk assessments and performing code reviews or integration testing. - Experience deploying, securing, and maintaining Kubernetes environments. - Familiarity with security frameworks and compliance standards such as ISO 27001, SOC2, FedRAMP, NIST, and global data protection laws. - Relevant security certifications (e.g., CISSP, CISM, CCSP) or project management certifications (e.g., PMP). Why Cisco? At Cisco, we're revolutionizing how data and infrastructure connect and protect organizations in the AI era - and beyond. We've been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint. Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you'll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere. We are Cisco, and our power starts with you.
Principal Architect - Information Security
CencoraCencora, formerly known as AmerisourceBergen, is a publicly-traded pharmaceutical service company with locations spanning the globe. As an employer, the company
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today! Job Details PRIMARY DUTIES AND RESPONSIBILITIES: - Leads and oversees the design and implementation of advanced and complex enterprise information security architectures and solutions - Provides technical leadership to the Information security team consisting of Architects, Analysts, and Engineers - Reviews security technologies, tools, and services and provides recommendations to IT, business, and project teams ensuring that solutions are in line with the architecture direction and business strategies - Develops and maintains a security architecture process that enables the enterprise to develop and implement security solutions and capabilities aligned with the business, technology, and threat drivers - Defines the future state of Information Security Strategy solution architecture - Executes security engagements during different phases of the lifecycle assessment, design, and implementation - Works with senior stakeholders to find effective security solutions that work towards improving the overall security posture of the organization by balancing business requirements with cybersecurity needs - Provides guidance, & coaching to Architects I/II and provides overall technical expertise to the Information security department and business stakeholders - Develops, matures, and maintains security architecture strategy, principles, models, standards, guidelines, and configurations - Defines key building blocks for future state architecture and creates a roadmap to realize the same - Researches, models, and tracks secure system standards, industry trends, market technology, potential threats, tactics, and procedures for ecosystem applicability and reference - Creates detailed and clear functional technical requirements for the organization's security operations engagement and interaction, ensuring stakeholders clearly understand how to engage with Information Security Strategy services - Analyzes root cause for technical issues, and design measures and methods to mitigate future re-occurrences - Identifies solutions and implements automation of vulnerability scanning and monitoring of the organization's infrastructure, applications, and network - Prioritizes architectural needs and solutions with other senior executives and ensures they are in line with, criticality, feasibility, and Information Security Strategy EDUCATIONAL QUALIFICATIONS: Education: - Bachelor's Degree in Computer Science, Information Technology or any other related discipline or equivalent related experience. Preferred Certifications: - Azure Security Engineer Certification - Certified Cloud Security Professional (CCSP) - Certification in Information Security Strategy Management (CISM) - Certified Information Systems Security Professional (CISSP) - CompTIA Security + Certification - Project Management Professional (PMP) Certification - Systems Security Certified Practitioner (SSCP) - TS-SCI Security Clearance Certification WORK EXPERIENCE: - 12+ years of directly-related or relevant experience, preferably in information security. SKILLS & KNOWLEDGE: Behavioral Skills: - Coaching and Mentoring - Decision Making - Impact and Influencing - Leadership Skills - Multitasking - Presentation Skills - Planning Technical Skills: - Application Architecture - Cybersecurity - Enterprise Architecture - Information Security Strategy Standards (SOX, ISO 27001/27002, COBIT, ITIL, NIST, PCI) - IT Risk Management - Network Solutions and Systems - Information Security Strategy - Threat Modelling - Security and Compliance Frameworks (i.e. CCM, NIST 800-53, CIS) Tools Knowledge: - Microsoft Office Suite - Programming and Development Languages - JavaScript, HTML/CSS, Python, SQL - Security Tools - SIEM, EDR, Email Security Gateway, SOAR, Firewall, Anti-virus, Firewalls, VPN IDS/IPS, AV, proxies, etc. What Cencora offers We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora Full time Salary Range* $156,300 - 241,010 *This Salary Range reflects a National Average for this job. The actual range may vary based on your locale. Ranges in Colorado/California/Washington/New York/Hawaii/Vermont/Minnesota/Massachusetts/Illinois State-specific locations may be up to 10% lower than the minimum salary range, and 12% higher than the maximum salary range. Equal Employment Opportunity Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law. The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory. Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned Affiliated Companies: Affiliated Companies: AmerisourceBergen Services Corporation
Senior Manager, Information Systems Security
Gainwell TechnologiesGainwell Technologies is an award-winning digital health technology company that supports the administration of healthcare and human services programs. In past
• Manages development, documentation, and presentation of information system security education, awareness, and training activities for facility management, information system personnel, users and others, as appropriate. • Oversees identification and documentation of unique local threats/vulnerabilities to information system. • Manages coordination of the facility information system security program with other facility security programs. • Oversees periodic self-inspections of the facility's information system program are conducted as part of the overall facility self-inspection program and that corrective action is taken for all identified findings and vulnerabilities. • Manages development of facility procedures to govern marking, handling, controlling, removing, transporting, sanitizing, reusing, and destroying media and equipment containing classified information. • Manages reports of information system security incidents. • Follows up to ensure that proper protection or corrective measures have been taken when an incident/vulnerability has been discovered. • Oversees implementation of vendor supplied authentication (password, account names) features or security relevant features. • Oversees implementation of security features for the detection of malicious code, viruses, and intruders (hackers), as appropriate. • Develops and implements specific and remote maintenance procedures based on requirements provided by the CSA. • Oversees selection, hiring, training, and evaluation of employees to enhance their performance, development, and work product. • Addresses performance issues and makes recommendations for personnel actions. • Motivates and rewards employees including providing salary increases, bonuses and promotions within allocated budgets and company guidelines. • Oversees preparation and recommendation of operating and personnel budgets for approval. • Monitors spending for adherence to budget, recommends variances as necessary.




