Stefanini Group
Lead IT Security Engineer
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Stefanini Group
Stefanini Group is a Brazilian multinational technology company founded in 1987 by Marco Stefanini. It began in São Paulo, focusing on custom software services and data processing consulting. Today, it is the largest technology firm in Latin America, employing over 37,000 people across 41 countries and generating more than $1 billion in annual revenue. The company is headquartered in Jaguariúna, São Paulo, with additional headquarters in Brussels, Belgium, and Southfield, Michigan, USA. Stefanini specializes in digital transformation, offering a wide range of IT services and solutions, including consulting, automation, cloud services, and user experience design. The company has a strong focus on AI-powered solutions and has established a Center of AI Excellence in Michigan. With a commitment to co-creation with clients, Stefanini serves over 1,000 active clients globally, including major players in the steel and automotive industries. The company continues to grow through strategic acquisitions and investments, positioning itself as a long-term partner for innovative and sustainable business solutions.
Security at Stefanini Group
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Stefanini's philosophy emphasizes 'Early security design' to ensure adaptability and stronger postures.
- They advocate for a balanced investment approach where resources are equally split between prevention and problem location.
- Their model integrates both offensive and defensive cybersecurity solutions to improve overall posture.
Security Team
Stefanini maintains a global cybersecurity unit comprising over 1,000 specialists. The team includes dedicated roles such as Application Security Engineers who are integrated into their North America and APAC operations. While specific reporting lines (e.g., to CISO or CTO) are not publicly documented, the team is positioned within their broader 'Cyber' and 'Digital Application Management' service lines.
Key Initiatives
Active initiatives include 'Attack Surface & Vulnerability Management' which focuses on inventorying and analysis. Operational workflows involve the implementation of SAST and DAST tools (Veracode and Tenable WAS) to secure application lifecycles. There is no public evidence of a formal 'Security Champions' program or specific 'Shift Left' branding in their public documentation.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.