Arquiteto(a) de Software Especialista em Segurança
Skills
About this role
Accountabilities: • Define and evolve software architectures for digital products, incorporating Security by Design from the earliest stages of solution development.
• Guide architectural decisions by evaluating trade-offs between security, scalability, performance, resilience, cost, and delivery speed. • Support the selection of technology stacks, frameworks, tools, and technical standards adopted by engineering teams. • Partner with Engineering, Product, Data, Security, and Infrastructure teams throughout the lifecycle, from discovery through go-live. • Establish and promote standards for architecture, secure development, technical documentation, versioning, deployment, and secrets management. • Conduct technical and architectural reviews, assess potential impacts, and mentor teams to strengthen their technical capabilities. • Identify and reduce technical debt, vulnerabilities, and architectural risks across products and systems. • Support the adoption of DevSecOps practices within CI/CD pipelines, including automated security controls and analysis. • Guide decisions related to cloud architecture, observability, resilience, cost efficiency, and security in AWS environments. • Contribute to system modernization, integration, and evolution initiatives involving APIs, messaging, service-oriented architectures, and interoperability. • Work closely with Information Security and Infrastructure teams to strengthen application protection and environmental compliance. • Serve as a technical reference for engineering teams, promoting sound engineering practices and advancing architectural maturity.
Requirements:
• Solid experience working as a Software Architect on digital products at medium or large scale. • Strong hands-on experience with AWS, which is required for the role. • Experience with cloud technologies, Kubernetes, and infrastructure environments. • Strong understanding of software architecture and patterns such as microservices, event-driven architecture, and Domain-Driven Design (DDD). • Practical experience applying security principles to software architecture, including Security by Design. • Knowledge of IAM, OAuth/OIDC, SSO, secrets management, and cryptography fundamentals. • Experience with APIs, integrations, messaging systems, and distributed systems. • Knowledge of CI/CD, DevSecOps, and security practices throughout the software development lifecycle. • Experience with Infrastructure as Code tools such as Terraform or CloudFormation. • Ability to analyze complex scenarios, make architectural decisions, and clearly document technical trade-offs and decisions. • Strong communication skills and the ability to influence technical stakeholders across different teams and functions. • Autonomous, collaborative, proactive profile with the ability to act as a technical reference. • Experience in Health Tech or products related to healthcare or medical practice is a plus. • Experience protecting sensitive data, particularly healthcare-related information, is desirable. • Knowledge of LGPD, ISO 27001, NIST CSF, or other security and compliance frameworks is a plus. • Experience with AI and artificial intelligence applications is desirable. • Familiarity with the AWS Well-Architected Framework and AWS Security Reference Architecture (SRA) is an advantage. • Ability to clearly explain architectural decisions, alternatives considered, trade-offs made, and the outcomes achieved.