Monster Jobs lê cada vaga aberta e diz, de 0 a 100, o match dela com o seu currículo — de graça. Você está vendo esta página sem a parte mais importante dela: a sua.

?

Pode ser 94. Pode ser 31.

O ponteiro só crava quando lemos o seu currículo. Leva 1 minuto, de graça.

DOSSIÊ MJ-2225 · ACESSO PARCIAL

Chief Information Security Officer

Nubank · Bogota

HíbridoTempo integral

Esta é 1 de 69.189 vagas encontradas nos últimos 30 dias. Nós comparamos todas com o seu currículo — hoje, esta página nem sabe quem você é.

Grátis, sem cartão. Só o seu currículo.

Encontrada anteontem

Se candidatar no escuro custa uma noite.
Saber custa um minuto.

A conta que ninguém faz

Você, sozinho, numa noite

~20

vagas abertas e lidas uma a uma — a maioria descartada no terceiro parágrafo, quando o requisito que você não tem finalmente aparece. Dias assim, toda semana.

O Monster Jobs, enquanto isso

69.189

vagas já lidas e entendidas, prontas para ganhar nota contra o seu currículo no momento em que ele chegar. Você não procura mais vaga — recebe as que merecem a sua atenção.

Recrutador faz triagem de candidato.
Aqui, o recrutador é você — de vagas.

Cada uma chega com nota e motivo. Seu único trabalho é dizer sim ou não.

RELATÓRIO DE COMPATIBILIDADE · GERADO POR VAGA, POR PESSOA

Por que essa nota

Para quem tem conta, este bloco explica a nota em português — escrito sobre o seu histórico, não um texto genérico:

O raciocínio da nota é gerado para cada currículo depois do cadastro gratuito.

Aderência técnicapeso 0.45
Senioridadepeso 0.25
Localização e modelo de trabalhopeso 0.2
Setor e contextopeso 0.1

A seu favor

O que do seu histórico pesa a favor aqui.

O que falta

O que a vaga pede e seu currículo ainda não mostra.

Liberar meu relatório grátis

1 minuto: você envia o currículo, nós escrevemos o resto.

Ninguém caça sozinho. Esta vaga foi encontrada por outra pessoa e entrou no acervo de todo mundo. A caça continua enquanto você lê isto — e a sua parte do acervo (69.189 vagas, comparadas com o seu currículo) só passa a existir quando você entra.

O que você decide sobre cada vaga

Cada vaga vira um caso com histórico: candidatei, entrevista, proposta. Estes botões são os reais — só falta a conta.

Descrição da vaga

About Nu

Nu serves more than 140 million customers, guided by a mission to fight complexity and empower people. The company has been leading an industry transformation through innovative products and human-centered services.

 

Proprietary technology and data at scale power Nu’s digital platform, built to promote financial access, advancement, and transparency. Its business model thrives on customer love and lower costs, feeding a flywheel of growth and profitability.

Visit our Institutional Page

About the role

Technology is not a sector of our business: it's intrinsic to every area at Nubank. We encourage everyone to challenge the status quo. There's no "innovation team" - we hire innovative people for all our positions and encourage them to constantly question decisions to keep finding better ways to do something. Our business is experiencing hyper growth in several dimensions: number of customers, products, international markets and employees., and our engineering team must match that demand.

As we grow, we need to:

  • Relentlessly pursue, indicate and contribute to eradicate threats across complex environments. 

  • Report and help solving incidents at scale

  • Work in regulated environments aligning with all the requirements

  • Communicate clearly with external and internal stakeholders such as regulators, managers, etc.., 

  • Build solutions that enable faster and more effective incident response. 

You’ll be responsible for:
  • Create strong relationships with diverse teams, by coordinating communication between different audiences, teams and stakeholders in english and spanish.

  • Assess security gaps within the organization, in different technologies and business contexts, enabling risk treatment and designing technical action plans as necessary

  • Support compliance with regulatory requirements related to cybersecurity providing visibility and technical guidance on strategies for compliance and possible trade-offs based on risk

  • Working across different technical teams supporting and leading the solution of incidents, issues, regulatory requirements, understanding root cause and improving our security posture by implementing controls and defenses. 

  • Develop and implement policies and procedures related to information security, physical security, fraud prevention, and cyber risk management

  • Collaborate with cross-functional teams to understand the business requirements, and translate them into technical specifications and vice-versa

  • Define guidelines and best practices on business security matters that empower Nubankers to perform their work efficiently and securely

  • Support other security engineers, motivating and creating continuous learning in a collaborative environment.

We are looking for a person who has:
  • Solid experience in Information & Business Security, Privacy, Risk Management and IT Governance disciplines

  • An ability to thrive in engineering environments, interacting with technical teams and being able to jump into technical conversations at least with a theoretical knowledge.

  • Practical knowledge of cloud infrastructure (private or public), microservices and distributed environments.

  • Solid hands-on experience implementing Technical Controls based upon industry best practices, but also challenging the status quo of current security frameworks.

  • Experience working in regulated institutions and environments, interacting with external and internal stakeholders.

  • Knowledge in ISO, PCI, NIST, Mitre ATT&CK and/or CSF frameworks.

  • Experience with Colombian regulation in special the one related to information security requirements for financial institutions 

  • Proven strong experience in assessing, designing and implementing security controls

  • Strong inclination towards data-driven decision-making

  • Familiarity with different domains and concepts of cyber and business security, including cybersecurity frameworks and industry standards

  • Excellent communication and problem-solving skills are important to effectively assess and communicate risks to internal stakeholders

  • Strong level of technical understanding, being able to take part in security discussions with Engineers and translate complex, technical projects and concepts for non-engineers and Business Executives

  • Proficiency in English and Spanish.

Preferred Qualifications

  • IT/Security operational background in regulated organizations

  • Infosec Engineering with technical hands on experience

  • Experience collaborating  in global projects, with distributed Information security teams.

  • Experience or exposure to SFC audits and controls

  • Experience leading certifications for ISO or PCI for a regulated institution in Colombia

  • Interest in working with regulators at a technical and business level.

  • Natural interest in security operations, coordinating actions with several stakeholders and teams like incident response, defensive security, etc..  in large projects

  • Experience with tools for ticketing, whiteboarding, collaboration dashboarding, and google docs or similar tools for building documentation.


You will fit well if you:

  • You thrive in dynamic, fast-paced, results-oriented and diverse teams

  • You are hungry and enjoy being constantly challenged to learn and do more

  • You embrace conflict of ideas and like to question the status quo

  • You learn fast and easily adapt to changing situations and priorities

  • You believe in building great products and doing your best work

  • You are enthusiastic for finding root causes, build things from scratch and deliver solutions

  • You want to understand the big picture, to be held accountable and make a meaningful contribution with your work

Location

Bogotá, Colombia.

Our Benefits

Our benefits are designed to support your wellbeing, development, and life outside of work. For Colombia, they include:

  • Chance of earning equity at Nu

  • Extended maternity and paternity leaves

  • Health and life insurance

  • NuCare – our mental health and wellness assistance program

  • Nucleo – our learning platform of courses

  • NuLanguage – our language learning program

  • Vacations of 15 workdays

  • Gym partnership

  • Work-from-home Allowance

  • Parental Consultancy

  • Relocation Assistance Package, if applicable

Even if you feel you don't meet every qualification, we encourage you to apply — your unique skills and experiences may be just what we're looking for, and we're excited to learn more about what you can bring to our team.


Work Model for this Role

Hybrid 2–3 times/week: Our hybrid work model brings us to the office at least twice a week, on strategic days designed to maximize team connection and collaboration. For more details, visit  https://building.nubank.com/nu-hybrid-work-model/.

 

Our recruitment process may involve the use of artificial intelligence–enabled tools, such as automated interview transcription and analysis, to support the evaluation process. Artificial intelligence is not used to make final hiring decisions; all decisions are made by human reviewers.

To maintain a consistent and fair process for every candidate, Nu does not provide individualized technical feedback. See how our policy works here

Vale a pena me candidatar? Ver minha nota

Leu tudo e ficou na dúvida? É exatamente isso que a nota resolve.

Por que criar conta agora

Leva 1 minuto

Envie o currículo e pronto. Sem formulário longo, sem questionário, sem teste.

Grátis de verdade

Sem cartão, sem período de teste que expira. Seu currículo só gera as suas notas.

Já tem vaga esperando

69.189 vagas encontradas nos últimos 30 dias — a sua nota nesta e em todas as outras sai assim que o currículo chega.

Criar conta grátis