Analista de Segurança Cibernética – Resposta a Incidentes

New
J
JobgetherCybersecurity
BrazilFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Languages
Advanced or fluent English proficiency; Intermediate or advanced Spanish proficiency is desirable.
Experience
Minimum of 3 years
Required Skills
ServiceNow

Requirements

  • Minimum of 3 years of experience in Cybersecurity, with experience in monitoring, investigation, and incident response.
  • Previous experience working in SOC, CSIRT, or Blue Team environments.
  • Knowledge of the complete security incident lifecycle, including identification, triage, investigation, containment, eradication, recovery, and lessons learned.
  • Strong knowledge of network security concepts.
  • Experience with MITRE ATT&CK frameworks, malware taxonomies, and threat analysis methodologies.
  • Experience with security monitoring and incident response tools such as Google Chronicle, CrowdStrike, Microsoft Defender, Akamai, AWS GuardDuty, and SIEM platforms.
  • Knowledge of security technologies including EDR, NDR, SIEM, Firewalls, IDS/IPS, and cloud security environments such as Azure and AWS.
  • Experience analyzing security events and investigating incidents in Windows and Linux environments.
  • Knowledge of log analysis, event correlation, and threat hunting practices.
  • Familiarity with ITIL processes and ServiceNow.
  • Bachelor’s degree in Information Technology, Information Security, Computer Science, or related fields.
  • Advanced or fluent English proficiency.

Responsibilities

  • Act as part of the global CSIRT (Computer Security Incident Response Team), supporting cybersecurity incident management activities.
  • Monitor, investigate, contain, and respond to security incidents across complex corporate environments.
  • Manage and track incidents through ServiceNow, ensuring proper documentation and resolution follow-up.
  • Analyze security events, indicators of compromise (IoCs), alerts, and correlated data to identify threats.
  • Perform threat investigations, including log analysis, threat hunting, and attack pattern identification using frameworks such as MITRE ATT&CK.
  • Execute mitigation actions, escalate incidents when necessary, and support recovery activities.
  • Monitor and review security platforms, detection tools, and protection mechanisms.
  • Create technical documentation, incident reports, procedures, and lessons learned.
  • Participate in technical meetings with internal teams, customers, and global stakeholders.
  • Participate in on-call rotations according to operational requirements.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now