Information Security Analyst managing critical governance, risk, and compliance topics. Leading incident responses and security policy development in a hybrid work model.
Responsibilities
• Will be a point of reference for critical governance, risk, and compliance topics, working across the Plan, Attack and Defend pillars;
• Will handle sensitive projects, critical data, and demanding audits.
**Strategic and analytical:**
• Conduct risk analyses for new projects and systems;
• Develop and review security policies and procedures;
• Coordinate responses to critical incidents (technical and strategic perspective);
• Apply threat intelligence and propose countermeasures;
• Participate in implementing security within DevSecOps pipelines.
**Operational:**
• Tune and improve tools such as SIEM, DLP, and XDR;
• Perform security testing and forensic analysis;
• Track critical vulnerabilities from identification to remediation;
• Serve as the technical point of contact during audits and internal threat investigations.
**Leadership and development:**
• Mentor junior professionals in technical and strategic competencies;
• Contribute to continuous improvement projects within the security area;
• Deliver training and security awareness initiatives;
• Represent the security team in forums, committees, and technical meetings.
Requirements
• Bachelor's degree in Technology fields such as Information Security, Computer Science, Information Systems, or related areas;
• 3–5 years of experience in Information Security;
• Strong communication and interpersonal skills, with the ability to integrate teams and present results;
• Technical writing skills for creating advanced documents and corporate policies;
• Autonomy to make technical decisions and lead projects;
• Analytical profile with mentoring ability, strategic collaboration, and business awareness;
• Focus on continuous improvement and innovation.
***Hard skills:***
• Experience in On-premises environments and in AWS, Azure, or GCP;
• Experience with Docker, Kubernetes, and securing CI/CD (GitLab, Jenkins, SonarQube);
• Scripting/automation experience with Python, PowerShell, or Bash;
• Security best practices for REST/GraphQL APIs and Infrastructure as Code.
***Monitoring and Incident Response***
• Use of SIEM tools (e.g., Splunk, QRadar), SOAR (e.g., Cortex, Splunk SOAR), and XDR (e.g., CrowdStrike, Microsoft Defender);
• Experience with forensic analysis tools (e.g., FTK, Volatility) and vulnerability management (e.g., Nessus, Qualys);
• Familiarity with DLP, UEBA, NGFW firewalls, email security, CASB, and SSPM solutions.
***Threats and Testing***
• Knowledge of Threat Intelligence (e.g., MITRE ATT&CK, Mandiant);
• Execution or support of penetration tests (pentests) and Red Team simulations;
• Basic knowledge of reverse engineering and malware analysis (differential).
Join is seeking a Senior Cybersecurity Analyst for a hybrid quality - focused squad. Responsible for incident response and digital forensics in cybersecurity.
Information Security Analyst developing documentation, managing security incidents, and maintaining information security practices. Engaging with internal teams and external suppliers while working in a hybrid environment.
Cybersecurity Analyst monitoring and responding to security threats in hybrid work environment. Collaborating across teams to enhance security and ensure compliance with standards.
Security Analyst at Aviso joining a cybersecurity team to mitigate threats across IT and Cloud. Responsible for investigations, implementing controls, and enhancing security posture.
IT Security Analyst responsible for monitoring and responding to security incidents. Collaborating with teams and ensuring effective incident response to maintain business continuity.
SOC Analyst Principal impacting national security in cyber at GDIT. Bring your cyber expertise and drive for innovation to a veteran - friendly workplace.
Information Security Analyst engaging in cyber security and governance risk compliance for Grupo BAUMINAS. Collaborating on security operations, incident response, and risk management processes.
Pleno Security Analyst protecting information assets by monitoring, incident management, and vulnerability oversight. Collaborating on compliance with internal policies and regulatory requirements.
Network and Security Analyst in Logicalis, aiding companies in digital transformation. Responsible for network monitoring and incident resolution, ensuring connectivity and security.