Analista de Segurança Cibernética – Resposta a Incidentes
New
J
JobgetherCybersecurity
BrazilFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Languages
- Advanced or fluent English proficiency; Intermediate or advanced Spanish proficiency is desirable.
- Experience
- Minimum of 3 years
- Required Skills
- ServiceNow
Requirements
- Minimum of 3 years of experience in Cybersecurity, with experience in monitoring, investigation, and incident response.
- Previous experience working in SOC, CSIRT, or Blue Team environments.
- Knowledge of the complete security incident lifecycle, including identification, triage, investigation, containment, eradication, recovery, and lessons learned.
- Strong knowledge of network security concepts.
- Experience with MITRE ATT&CK frameworks, malware taxonomies, and threat analysis methodologies.
- Experience with security monitoring and incident response tools such as Google Chronicle, CrowdStrike, Microsoft Defender, Akamai, AWS GuardDuty, and SIEM platforms.
- Knowledge of security technologies including EDR, NDR, SIEM, Firewalls, IDS/IPS, and cloud security environments such as Azure and AWS.
- Experience analyzing security events and investigating incidents in Windows and Linux environments.
- Knowledge of log analysis, event correlation, and threat hunting practices.
- Familiarity with ITIL processes and ServiceNow.
- Bachelor’s degree in Information Technology, Information Security, Computer Science, or related fields.
- Advanced or fluent English proficiency.
Responsibilities
- Act as part of the global CSIRT (Computer Security Incident Response Team), supporting cybersecurity incident management activities.
- Monitor, investigate, contain, and respond to security incidents across complex corporate environments.
- Manage and track incidents through ServiceNow, ensuring proper documentation and resolution follow-up.
- Analyze security events, indicators of compromise (IoCs), alerts, and correlated data to identify threats.
- Perform threat investigations, including log analysis, threat hunting, and attack pattern identification using frameworks such as MITRE ATT&CK.
- Execute mitigation actions, escalate incidents when necessary, and support recovery activities.
- Monitor and review security platforms, detection tools, and protection mechanisms.
- Create technical documentation, incident reports, procedures, and lessons learned.
- Participate in technical meetings with internal teams, customers, and global stakeholders.
- Participate in on-call rotations according to operational requirements.
View Full Description & ApplyYou'll be redirected to the employer's site