Analista de Segurança da Informação III - Foco em Engenharia de Detecção e Automação in Brazil at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Analista de Segurança da Informação III - Foco em Engenharia de Detecção e Automação based in Brazil.
This role is focused on strengthening security operations through advanced detection engineering and automation.
You will design and optimize security detections that improve the speed, accuracy, and effectiveness of threat identification.
The position combines hands-on work with SIEM, EDR/XDR, NDR, log analysis, scripting, APIs, and SOAR technologies.
You will contribute to threat hunting by developing intelligence- and behavior-driven hypotheses based on the organization’s exposure.
Working closely with CSIRT, BlueOps, Red Team, IAM, Cloud/Network, and AppSec teams, you will help improve security visibility and response capabilities.
The role offers an opportunity to reduce manual effort through automation while continuously strengthening detection coverage and quality.
You will be part of a collaborative environment where technical expertise, continuous improvement, and proactive security thinking are highly valued.
- Develop, enhance, and automate security detections to increase the effectiveness, speed, and quality of threat and incident identification.
- Create, review, optimize, and maintain detection rules, use cases, correlations, and security alerts.
- Develop automations for alert enrichment, triage, initial response, and reduction of repetitive manual activities.
- Support threat-hunting activities by developing hypotheses based on threat intelligence, attacker behavior, and environmental exposure.
- Integrate relevant log sources and telemetry to expand and improve security detection coverage.
- Analyze false positives, visibility gaps, and weaknesses in existing controls, recommending improvements to detection capabilities.
- Document detection use cases, detection logic, playbooks, response criteria, and operational procedures.
- Work collaboratively with CSIRT, BlueOps, Red Team, IAM, Cloud/Network, and Application Security teams to strengthen the broader security ecosystem.
- Analyze security alerts, events, and telemetry with sufficient technical depth to identify meaningful threats and suspicious behavior.
- Continuously improve detection engineering and automation practices to increase operational efficiency and security maturity.
- Professional experience working with SIEM, EDR/XDR, NDR, query languages, and security log analysis.
- Advanced knowledge of attack techniques, threat behaviors, and security detection engineering principles.
- Hands-on experience developing automation through scripting, APIs, SOAR platforms, or similar technologies.
- Strong understanding of Windows and Linux environments, computer networks, identity and access management, cloud environments, and applications.
- Ability to investigate alerts, events, and telemetry at a deep technical level and distinguish genuine threats from false positives.
- Experience identifying detection gaps and translating security requirements into effective, actionable detection logic.
- Strong analytical and problem-solving skills, with an investigative mindset and attention to technical detail.
- Ability to collaborate effectively with multidisciplinary cybersecurity and technology teams.
- Strong communication skills, particularly when documenting technical findings, detection logic, incidents, and recommended improvements.
- Proactive attitude toward continuous improvement, automation, and strengthening security operations.
- Ability to work independently while contributing effectively within a collaborative security environment.
- Medical assistance/healthcare coverage.
- Dental assistance/coverage.
- Employee and community-focused social impact programs.
- Special recognition and support for significant personal milestones and dates.
- Education and professional development investment.
- Profit-sharing/participation in company results.
- Individual career development plan focused on professional growth.
- Private pension plan.
- Life insurance.
- Long-term employee recognition program.
- Meal and/or food allowance.
- Transportation allowance.
- Childcare or nanny assistance.
- Fully remote work model.
- Inclusive and collaborative working environment.
- Opportunities for learning and career development.
- Access to educational resources and courses supporting continuous professional growth.