Strategic Security Manager I, Mandiant Consulting (English, Portuguese)
- Location
- Brazil
- Work model
- On-Site
- Level
- Mid
- H-1B history
- 2,460 approvals (FY2023)
- Posted
- 3h ago
Skills
About this role
As a Strategic Security Manager within the Mandiant Strategic Team in LATAM, you will act as a trusted advisor to executives and security leaders, helping them systematically measure, build, and mature their cyber resilience. In this role, you will bridge the gap between business risk and advanced technical defense, leading high-impact engagements such as security program assessments, executive and technical table-top exercises, crown jewels assessments, threat and vulnerability management assessments, threat modeling services, AI security services, etc. Operating at the forefront of the industry, you will also play a pivotal role in enabling secure digital transformation by advising clients on securing emerging AI architectures. You will be leveraging threat intelligence to solve the region's most complex cyber challenges, to shape the security posture of the largest enterprises and governments across Latin America. Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.
Conduct high-impact security program assessments (SPA) and cyber defense assessments (CDA) using leading frameworks (e.g., NIST CSF, NIST 800-53, ISO 27001) to identify maturity gaps and build tactical roadmaps. Advise clients on securing the AI lifecycle, aligning deployments with the international frameworks to manage model governance and minimize deployment risk. Evaluate existing security controls, identifying risks, and prioritizing investments based on business impact. Communicate complex cyber risks to non-technical stakeholders, including Chief Information Security Officer (CISOs), Board members, and legal counsel.in order to make informed, risk-based decisions. Develop, maintain, and expand deep client partnerships across LATAM, managing full project lifecycles from initial scoping to high-quality deliverable handoff.
Minimum qualifications: 10 years of experience in assessing and developing cybersecurity solutions across multiple security domains. 10 years of experience in managing risk and compliance programs or the execution of security risk assessments or IT audits. 5 years of experience managing IT programs and collaborating with executive stakeholders in an IT consulting capacity.
3 years of experience in people management. Ability to communicate in English and Portuguese fluently to engage with clients in the region. Preferred qualifications: Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related technical field. 5 years of experience in cybersecurity consulting, strategic advisory, or corporate risk management, preferably within a consulting firm or enterprise environment. Experience implementing industry security frameworks (e.g., NIST CSF, ISO 27001, COBIT, NIST SP 800-53). Knowledge of technologies used in pen testing, security event analysis, incident response, computer forensics, network and endpoint architecture, or other Security Operations (SecOps) areas. Knowledge of infrastructure, operating system and application vulnerabilities, security architecture, and controls. Ability to travel up to 30% of the time as needed.