Cloud Security Advisor


Curitiba, PR, BR

Company:  ExxonMobil

About Us

ExxonMobil, one of the world’s largest publicly traded energy providers, develops and applies next-generation technologies to help safely and responsibly meet the world’s growing needs for energy, while improving living standards around the globe. An industry leader, we operate facilities or market products in most of the world’s countries and explore for oil and natural gas on every continent.

ExxonMobil has been present in Brazil for more than 100 years. We are one of the largest exploration acreage holders among international companies, a highly respected manufacturer and marketer of petrochemical products, and we operate a Global Business Center that provides support to an extensive portfolio of businesses in more than 70 countries. With over 1800 employees, we are located in Rio de Janeiro, Curitiba and São Paulo.


We are a hip crew of technologically savvy individuals, and we make a great team. One that focuses on collaboration, encourages creativity, and embraces change. We are continuously advancing across multiple platforms, driving strategy and innovation through global digitization and technology enablement, in order to keep ExxonMobil at the top and to make you proud and excited to come to work every day.

ExxonMobil is committed to promote diversity and to provide all candidates with equal opportunities. We value our people over their jobs, looking for the best candidate, regardless of age, ethnicity, religion or gender identity. Each individual and their unique perspective is what makes us stronger and powerful.


Where you start your career is only the beginning. A position in any of our locations can lead to opportunities throughout the region or around the globe.

Build a career with us and use your energy to change the world!

For more information, visit

Job Role Summary

Provide consulting and guidance to organizations interested in adopting and/or supporting Cloud Solutions through a combination of deep cloud technical knowledge and security & controls understanding.  Play key role in projects and initiatives with a focus or element of cloud technology with emphasis on understanding risk and mitigating controls.

Job Role Responsibilities

•    Establish credibility as one of the subject matter expertise regarding major cloud platforms (Azure, AWS, Alibaba, Google etc.), cloud technologies and cloud security best practices
•    Participate in team comprised of global analysts and engineers in evaluating and supporting cloud related initiatives, articulating associated risks and vulnerabilities and facilitating the implementation of mitigating controls
•    Provide insight and guidance to establish cloud governance principles and help influence/steward decision space on implementation, acceptance and exception processes
•    Demonstrate commitment to continuous learning : new cloud technologies, threats/vulnerabilities, industry best practices, and potential areas for improved fit-for-risk controls
•    Able to operate in fast paced environment and learn new concepts quickly
•    Mentor and invest in the development of immediate team members as well as broader IT community.


Expected Level of Proficiency

•    Knowledge of GRC principles and methodologies (i.e. NIST, ISO, CSA)
•    CISSP, CSSP, or CCSK certifications
•    Design and integration experience with ERP Cloud (SAP)
•    Proficient with major cloud platforms configurations, framework, SDLC, and security policies
•    Proficient in implementing DevSecOps
•    Excellent technical writing and oral presentation skills 
•    Experience in creating technical documentation and best practice guardrails
•    Proficiency in evaluating industry audit and vulnerability reports (i.e. SOC1, SOC2, VAT Report)
•    Knowledge of Identity and Access Management, especially as implemented in cloud environments (i.e. Azure Active Directory)
•    Knowledge of the OWASP Top 10 and the ability to explain how these issues should be remediated
•    Knowledge of cloud networking technologies (gateways, landing zones, security stacks)
•    Knowledge of encryption concepts and implementation methods
•    Knowledge of CICD principles and source code management (GitHub, Terraform)

• BS/BA in a related discipline (i.e., Computer Science, Information Systems, Engineering, Business, etc.); and/or 2 years of experience in related field
• Hands-on technical expertise in deploying enterprise applications/infrastructure to major cloud platforms and deploying infrastructure in code
• Technical experience working with enterprise security solutions such as firewalls, IDS/IPS, WAF, and SIEM is a plus

Your Benefits

An ExxonMobil career is one designed to last, with benefits built to support every stage of your life. That means world-class compensation and benefits, teammates who support and inspire, and the flexibility to explore multiple challenges and roles.

Our commitment to you runs deep, we care for our people, that’s why we provide the safest workplace we can, so you can work with focus and peace of mind.


Alternate Location:  

Job Segment: Technical Writer, ERP, Computer Science, Cloud, Systems Engineer, Technology, Engineering