Analista de Segurança Cibernética – Resposta a Incidentes in Brazil, Indiana at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Analista de Segurança Cibernética – Resposta a Incidentes based in Brazil.
This role offers the opportunity to protect critical digital environments by investigating, responding to, and mitigating cybersecurity incidents.
You will be part of a global security operations environment, collaborating with multidisciplinary teams to strengthen cyber resilience.
The position combines threat analysis, incident management, security monitoring, and continuous improvement of response processes.
You will contribute to safeguarding corporate assets while applying modern cybersecurity frameworks and technologies.
The ideal candidate is analytical, proactive, and passionate about solving complex security challenges in dynamic environments.
This is an opportunity to grow within a technology-focused team while working on strategic cybersecurity initiatives with global impact.
The Cybersecurity Analyst will be responsible for managing the complete incident response lifecycle, supporting security operations, and improving organizational resilience against cyber threats.
- Act as part of the global CSIRT (Computer Security Incident Response Team), supporting cybersecurity incident management activities.
- Monitor, investigate, contain, and respond to security incidents across complex corporate environments.
- Manage and track incidents through ServiceNow, ensuring proper documentation and resolution follow-up.
- Analyze security events, indicators of compromise (IoCs), alerts, and correlated data to identify threats.
- Perform threat investigations, including log analysis, threat hunting, and attack pattern identification using frameworks such as MITRE ATT&CK.
- Execute mitigation actions, escalate incidents when necessary, and support recovery activities.
- Monitor and review security platforms, detection tools, and protection mechanisms.
- Create technical documentation, incident reports, procedures, and lessons learned.
- Participate in technical meetings with internal teams, customers, and global stakeholders.
- Participate in on-call rotations according to operational requirements.
The ideal candidate should have strong cybersecurity experience, especially in incident response, security monitoring, and threat investigation within enterprise environments.
- Minimum of 3 years of experience in Cybersecurity, with experience in monitoring, investigation, and incident response.
- Previous experience working in SOC, CSIRT, or Blue Team environments.
- Knowledge of the complete security incident lifecycle, including identification, triage, investigation, containment, eradication, recovery, and lessons learned.
- Strong knowledge of network security concepts.
- Experience with MITRE ATT&CK frameworks, malware taxonomies, and threat analysis methodologies.
- Experience with security monitoring and incident response tools such as Google Chronicle, CrowdStrike, Microsoft Defender, Akamai, AWS GuardDuty, and SIEM platforms.
- Knowledge of security technologies including EDR, NDR, SIEM, Firewalls, IDS/IPS, and cloud security environments such as Azure and AWS.
- Experience analyzing security events and investigating incidents in Windows and Linux environments.
- Knowledge of log analysis, event correlation, and threat hunting practices.
- Familiarity with ITIL processes and ServiceNow.
- Strong analytical mindset, critical thinking, and problem-solving abilities.
- Good communication skills and ability to collaborate with technical teams.
- Proactive profile with autonomy and ability to work under pressure.
- Advanced or fluent English proficiency.
- Intermediate or advanced Spanish proficiency is desirable for collaboration with international teams.
- Bachelor’s degree in Information Technology, Information Security, Computer Science, or related fields.
Nice-to-have qualifications:
- Experience working in multinational environments.
- Previous experience with global CSIRT operations.
- Knowledge of advanced threat investigations involving APTs, ransomware, credential compromise, and targeted attacks.
- CLT employment model.
- Remote work flexibility.
- Company-subsidized health insurance for employees.
- Option to include dependents in health and dental plans.
- Meal or food allowance.
- Optional transportation allowance.
- Dental insurance options.
- Emotional support and confidential guidance program covering psychological, legal, financial, social, and pet-related assistance.
- Wellhub (Gympass) access with discounted plans at gyms across Brazil.
- Access to online learning platforms such as Udemy.
- Partnerships with major brands and consumer services.
- SESC membership benefits for employees and dependents.
- Discounts on undergraduate, postgraduate, language courses, and certification programs.
- Group life insurance.
- Inclusive workplace culture focused on diversity, respect, and equal opportunities.
- Opportunity to work on global technology projects with continuous learning and career development opportunities.
- Position open to candidates with disabilities (PwD).