Senior Security Engineer - CSIRT
New
G
Grupo QuintoAndarReal Estate Tech
Our technology team operates under a "remote-first" model, which means we work from home and can live anywhere in Brazil.Full-TimeSenior
SalaryCompetitive salary
Apply NowOpens the employer's application page
Job Details
- Experience
- At least 5 years of experience focused on Incident Response, Digital Forensics, or Threat Hunting.
- Required Skills
- AWSGCP
Requirements
- Minimum 5 years of experience in Incident Response, Digital Forensics, or Threat Hunting.
- Essential capability in Digital Forensics and Incident Response (DFIR) across Windows, Linux, and macOS.
- Proficiency in memory forensics and host-based forensics tools.
- Ability to perform basic static and dynamic malware analysis.
- Proven incident response experience in AWS and GCP cloud environments.
- Proven experience with SOAR platforms and building automation to drive efficiency.
- Advanced knowledge of threat detection, rule creation, and tuning in SIEM and EDR.
- Strong mastery of the full Cyber Threat Intelligence (CTI) lifecycle.
- Ability to prioritize actions and resources effectively under high-pressure situations.
Responsibilities
- Lead technical response efforts during Level 2 and Level 3 security incidents.
- Coordinate responses and operational alignment with MSSPs and the 24/7 SOC.
- Facilitate cross-functional communication between Legal, DPO, Communications, and Cyber teams during incidents.
- Develop, maintain, and automate Incident Response (IR) playbooks and procedures.
- Lead forensic investigations to determine root causes and analyze the scope of compromise.
- Apply Cyber Threat Intelligence (CTI) to strengthen SOC routines and detection capabilities.
- Optimize operational routines through direct partnership with Tier 1 vendors.
View Full Description & ApplyYou'll be redirected to the employer's site