Cielo
Especialista em Product Manager em DevSecOps
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Cielo
Cielo S.A. is the largest credit and debit card operator in Brazil and the leading payment system company in Latin America. Founded in 1995, Cielo specializes in electronic payment processing services and has established a strong market presence by processing over 2 billion payments annually through 1.4 million point-of-sale (POS) terminals across the country. The company is headquartered in Alphaville, São Paulo, and employs around 5,000 people. Cielo offers a wide range of payment processing services, including credit and debit card transactions, POS solutions, and digital payment gateways. Their innovative offerings, such as Cielo TAP, allow smartphones to function as payment terminals for small businesses. Additionally, Cielo provides business intelligence, financial support, and IT services to enhance merchant operations. With a focus on mass customization and client-centered technology, Cielo aims to boost sales and improve business management for a diverse array of merchants, from large retailers to small and medium enterprises.
Security at Cielo
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Cielo views security as its 'main cause' and a reference point for electronic payments in Latin America.
- Their philosophy is built on the pillars of integrity, availability, and confidentiality, supported by a formal 'secure software development program' and annual training for all collaborators to improve preventative capabilities.
Security Team
The security function reports through the Vice-Presidência Executiva de Riscos, Compliance, Prevenção e Segurança and the Vice-Presidência de Tecnologia e Negócios. Glauco Sampaio is the public-facing CISO. Specific AppSec team headcount is not publicly available.
Key Initiatives
- Active initiatives include a formal 'secure software development program', annual security training for employees, and the operation of a dedicated incident response team (CSIRT Cielo).
- Recent efforts have focused on consolidating security operations into Microsoft Sentinel and Defender XDR to enhance automation in incident response.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.