Job Closed
This listing is no longer active.
Inovando nosso mundo para proteger o seu.
Senior Information Security Analyst
Location
Brazil
Posted
67 days ago
Salary
0
Seniority
Senior
Job Description
Senior Information Security Analyst
Network Secure - Segurança da Informação
• Monitor events and alerts in the SIEM (IBM QRadar) and other log analysis and correlation platforms. • Perform log analysis, event correlation and security incident investigation. • Act in incident response (containment, mitigation and recovery). • Prepare weekly and monthly reports for clients and internal management. • Create correlation rules, use cases and fine-tuning for SIEM solutions. • Interact with internal teams (SOC, NOC, Endpoint, Connectivity and Infrastructure) and clients, ensuring clear and objective communication. • Support audits and compliance with standards such as ISO 27001, NIST and LGPD.
Job Requirements
- Proven experience with SIEM (preferably QRadar, but knowledge of other platforms will be valued).
- Knowledge of MDR, log analysis, networking and security protocols.
- Experience with security incident response and basic forensic investigation.
- Familiarity with security tools such as EDR, enterprise antivirus, DLP, firewall, etc.
- Understanding of frameworks such as MITRE ATT&CK.
- Technical English for reading documentation.
- Mandatory to hold one of the following certifications: Certified Information System Security Professional (CISSP); EC-Council Penetration Testing Professional (CPENT); EC-Council Hacking Forensic Investigator (CHFI); Offensive Security Certified Professional (OSCP); Offensive Security Exploitation Expert (OSEE); Offensive Security Certified Expert 3 (OSCE3); CompTIA PenTest+; CompTIA Cybersecurity Analyst (CySA+); GIAC Certified Enterprise Defender (GCED); GIAC Penetration Tester (GPEN); GIAC Certified Incident Handler (GCIH); GIAC Web Application Penetration Tester (GWAPT).
Benefits
- Medical and dental insurance
- Pharmacy and optician discounts
- Life insurance
- On-site workplace stretch/occupational exercise sessions
- Meal allowance
- Transportation voucher or mobility allowance
- Wellhub/Gympass
- Conexa and Psicologia Viva
- Weekly on-site massage
- Day off on your birthday
- Flexible working hours
- Educational partnerships
- English classes
- Referral bonus
- Professional recognition
- Profit-sharing program
- Career and compensation plan
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
• Operation and tuning of security monitoring tools including Endpoint Detection & Response (EDR) • Identification and analysis of anomalous activity in customer technology environments • Triage of event data to identity potential indicators of compromise • Escalation of potentially malicious activity to engage incident responders where necessary • Participation in incident investigation, containment, remediation, and recovery activities where necessary • Developing and maintaining customer relationships to facilitate delivery of MDR services • Developing and delivering reports on identified activity to customer stakeholders as needed
DEX Senior Security Delivery Expert
MicrosoftMicrosoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to any characteristic protected by applicable local laws, regulations, and ordinances.
Overview Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our company and industry is securing digital technology platforms, devices, and clouds in our customers’ heterogeneous environments, as well as ensuring the security of our own internal estate. Microsoft Defender Experts Team is looking for an experienced professional to join our detection and response team. No matter how sophisticated attacker behaviors become, Microsoft 365 Defender will help enterprises detect, investigate, and respond to advanced attacks and data breaches on their networks. Our team uses deep knowledge of the attacker landscape and rich telemetry from our sensors to perform root-cause analysis and generate custom alerts, ensuring that Microsoft 365 Defender customers are well equipped to quickly respond to human adversaries identified in their unique environments. Ensuring that no human adversary can operate silently begins with experts harnessing the powerful optics provided by Microsoft 365 Defender, across the attacker kill-chain, coupled with world-class detections. We are looking for someone who is passionate about this work to help us harness the power of Microsoft’s trillions of security signals to quickly identify and report the latest human adversary behaviors, drive critical context-rich alerts, build new tools and automations in support of hunting objectives, and drive innovations for detecting advanced attacker tradecraft. Responsibilities - - Work directly with leaders of our customers’ security organizations as design partners on new cloud detection and response innovations, as well as to ensure excellent customer satisfaction with our products and services. - Partner with your team of Microsoft Threat Experts providing deep research and analysis of threats impacting our customers. - Work cross-functionally with engineering, marketing, and business leaders to innovate and deliver new security service offerings at a global scale. - Investigate, analyze, and learn from security researchers, attackers, and real incidents to develop durable detection solutions/strategies across customer tools. - Work with other internal and external teams to forge new and improve existing partnerships that help mature the products that support Defender Experts service offerings. - Provide technical leadership in a challenging and rewarding environment and influence the organization. Qualifications Minimum Qualifications: - Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field. - OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. - OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. - OR equivalent experience. Other Requirements: Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: - This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter. - This position requires verification of U.S. citizenship due to citizenship‑based legal restrictions. Specifically, this position supports United States federal, state, and/or local government agency customers and is subject to certain citizenship‑based restrictions where required or permitted by applicable law. To meet this legal requirement, and as a condition of employment, the successful candidate’s citizenship will be verified via a valid passport. Preferred Qualifications: - Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. - OR Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. - OR Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 8+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection. - OR equivalent experience. - 4+ years of experience in a technical role in the areas of Security Operations, Threat Intelligence, Cyber Incident Response, or Penetration Testing/Red Team. - 4+ years of people/service delivery management experience, or relevant experience demonstrating customer interaction/support delivery. - Experience leading a security function for a customer (i.e.: SOC manager, solution lead, Security engineer). - Knowledge of operating system internals and attack techniques in Windows, Linux, Mac, Android & iOS platforms. - Experience with data analysis and cyber threat investigations in Sentinel. - Knowledge of kill-chain model, ATT&CK framework, and modern penetration testing techniques. - Knowledge of major cloud and productivity platforms as well as identity systems and related security concerns. - Experienced with curation of Threat Intelligence and delivering customer briefings. - Ability to use data to 'tell a story'. - Experience with reverse engineering, digital forensics (DFIR) or incident response, or machine learning models. - Experience with system administration in a large enterprise environment including Windows and Linux servers and workstations, network administration, cloud administration. - Experience with offensive security including tools such as Metasploit, exploit development, Open Source Intelligence Gathering (OSINT), and designing ways to breach enterprise networks. - Additional advanced technical degrees or cyber security certifications such as CISSP, OSCP, CEH, or GIAC certifications. Security Research IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $158,400 - $258,000 per year. Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled. Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
Senior Compliance Analyst - Public Sector - Information Security
ElasticSelf-described as the leading platform for search-powered solutions, Elastic helps organizations, their customers, and their employees find what they need faster while protecting a
Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI. What Is The Role : We are looking for a Public Sector Senior Compliance Analyst to join our team in Information Security (InfoSec). The InfoSec team leads the strategy, policy, and programs for information security company-wide. Our responsibilities include compliance risk management, implementing a comprehensive security program, driving compliance initiatives, recommending and implementing security controls, preventing and detecting security threats, and handling incident response. We do all of this in a globally distributed company, thinking differently about how we best achieve critical information security objectives. What You Will Be Doing : - Leading US public sector audit and certification process (DoD IL 5) and owning continuous monitoring requirements to maintain compliance. - Acting as a trusted advisor to internal teams, translating complex compliance requirements into clear, actionable guidance. - Striving for a next-generation audit experience through intelligent data, automation, and continuous metrics. What You Bring : - Experience leading public sector compliance audits and certification processes in a cloud native company, working with DoD IL5 and/or FedRAMP High. - A high degree of autonomy, combining the ability to prioritize and coordinate with a strong attention to detail. - Creative, relevant and practical mindset, driven by risk-based decision making. - Bonus points if you have the experience with compliance-as-code or have done all the above at a growing SaaS company! Compensation for this role is in the form of base salary. This role does not have a variable compensation component. The typical starting salary range for new hires in this role is listed below. In select locations (including Seattle WA, Los Angeles CA, the San Francisco Bay Area CA, and the New York City Metro Area), an alternate range may apply as specified below. These ranges represent the lowest to highest salary we reasonably and in good faith believe we would pay for this role at the time of this posting. We may ultimately pay more or less than the posted range, and the ranges may be modified in the future. An employee's position within the salary range will be based on several factors including, but not limited to, relevant education, qualifications, certifications, experience, skills, geographic location, performance, and business or organizational needs. Elastic believes that employees should have the opportunity to share in the value that we create together for our shareholders. Therefore, in addition to cash compensation, this role is currently eligible to participate in Elastic's stock program. Our total rewards package also includes a company-matched 401k with dollar-for-dollar matching up to 6% of eligible earnings, along with a range of other benefits offered with a holistic emphasis on employee well-being. The typical starting salary range for this role is: $133,100—$210,600 USD The typical starting salary range for this role in the select locations listed above is: $159,900—$252,900 USD Additional Information - We Take Care of Our People As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do. We strive to have parity of benefits across regions and while regulations differ from place to place, we believe taking care of our people is the right thing to do. - Competitive pay based on the work you do here and not your previous salary - Health coverage for you and your family in many locations - Ability to craft your calendar with flexible locations and schedules for many roles - Generous number of vacation days each year - Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service - Up to 40 hours each year to use toward volunteer projects you love - Embracing parenthood with minimum of 16 weeks of parental leave Different people approach problems differently. We need that. Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, pregnancy, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status, or any other basis protected by federal, state or local law, ordinance or regulation. We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals. To request an accommodation during the application or the recruiting process, please email candidate_accessibility@elastic.co. We will reply to your request within 24 business hours of submission. Applicants have rights under Federal Employment Laws, view posters linked below: Family and Medical Leave Act (FMLA) Poster; Pay Transparency Nondiscrimination Provision Poster; Employee Polygraph Protection Act (EPPA) Poster and Know Your Rights (Poster) Elasticsearch develops and distributes technology and information that is subject to U.S. and other countries’ export controls and licensing requirements for individuals who are located in or are nationals of the following sanctioned countries and regions: Belarus, Cuba, Iran, North Korea, Syria, or Russia, including the Ukrainian territories annexed by Russia (The Crimea region of Ukraine, The Donetsk People's Republic (DNR), The Luhansk People's Republic (LNR), Kherson or Zaporizhzhia). If you are located in or are a national of one of the listed countries or regions, an export license may be required as a condition of your employment in this role. Please note that national origin and/or nationality do not affect eligibility for employment with Elastic. Please see here for our Privacy Statement.
• Monitor open-source intelligence (OSINT) feeds for relevant threat information • Collect and organize indicators of compromise (IOCs) from various sources • Learn to use threat intelligence platforms and tools • Track security bulletins, vulnerability announcements, and vendor advisories • Analyze threat data under the guidance of senior analysts • Map threat activities to frameworks such as MITRE ATT&CK • Research threat actors and their tactics, techniques, and procedures (TTPs) • Assist in creating threat intelligence reports and briefings • Participate in intelligence sharing discussions and team meetings




