Analista Pleno de Blue Team at Mais.Mobi focusing on cyber security, incident response, and vulnerability management. Working in a hybrid role in Rio de Janeiro.
Responsibilities
Detect and support remediation of environment vulnerabilities, maintain cybersecurity tools, and perform incident response;
Create, optimize and maintain detection rules (correlation rules) in the SIEM to identify malicious or anomalous activity;
Manage the vulnerability lifecycle, from identification to remediation in collaboration with other teams;
Support implementation of security best practices across cloud environments, servers, workstations and networks, following security frameworks;
Participate in security incident response, investigating alerts generated by the SIEM or other security tools;
Provision and deprovision assets and resources in defensive security tools;
Support analysis of security failures and propose mitigation solutions;
Ensure proper collection of asset logs, working to meet security requirements and monitoring rules;
Document procedures, incident analyses and security configurations;
Prepare technical and executive reports, including evidence, impact assessments and mitigation recommendations;
Automate processes and develop scripts to support defensive operations;
Collaborate with Red Team, SOC, Architecture and DevSecOps teams to validate and remediate vulnerabilities;
Develop Blue Team playbooks, methodologies and internal standards;
Monitor threat trends, exploits and new attack techniques and update security tools with obtained intelligence.
Requirements
Bachelor's degree in Information Security, Information Systems, Computer Science, Software Engineering or related fields;
Experience in Blue Team roles or equivalent functions;
Experience with core tools: SIEM, EDR or XDR, Vulnerability Management and WAF;
Advanced knowledge of Windows and Linux environments, permissions, services and common attack vectors;
Advanced knowledge of firewalls, proxies, VPNs, cloud and networking;
Familiarity with methodologies: MITRE ATT&CK, PTES, NIST SP;
Familiarity with security projects, processes and policies;
Understanding of secure development and DevSecOps pipelines (CI/CD, Git, integration of automated scanners);
Experience producing reports, cybersec books and technical presentations;
Experience in environment hardening, incident response and creation of playbooks;
Ability to produce clear, concise, impact-oriented documentation;
Certifications: ISO/IEC 27001 and CompTIA Security+.
Enterprise Security Analyst II protecting data integrity and implementing security policies at Pekin Insurance. Involves risk assessments and compliance activities in a hybrid work environment.
Cybersecurity Analyst leading CMMC compliance efforts for GM Defense and U.S. Government programs. Collaborating with multiple teams to ensure adherence to cybersecurity standards.
Cybersecurity Analyst role at Fidelity Investments, assisting with client security inquiries and managing cybersecurity program communications. Requires a bachelor’s degree and relevant experience.
External Footprint Security Analyst safeguarding public - facing digital assets with expert cybersecurity skills at HID Global. Design and implement proactive strategies for identifying and mitigating vulnerabilities across multiple locations.
Sr. Information Security Analyst managing information security strategy and execution at Otter Products in Fort Collins, CO. Leading initiatives for enterprise security programs and incident response.
Entry level Information Security Analyst working on assignments to monitor systems for unusual activity. Contributing to technology supporting the mission of the Church.
Security Analyst supporting delivery of managed security services for higher education clients at Asiera. Responsibilities include incident management, threat hunting, and collaboration with multiple teams.
Senior Cybersecurity Analyst designing and improving information security processes at Localiza&Co. Collaborating with various teams to ensure governance and data safety.