Tecnologias que transformam
Information Security Administrator – Senior
Location
Brazil
Posted
73 days ago
Salary
0
Seniority
Senior
Job Description
Information Security Administrator – Senior
Lanlink Informática Ltda.
• Develop and apply hardening policies for operating systems, servers, and network devices; • Configure and manage endpoint protection solutions, including antivirus, EDR (Endpoint Detection and Response), XDR (Extended Detection and Response), and device control tools; • Apply security patches and updates to operating systems and applications installed on endpoints; • Perform regular scans on devices to detect vulnerabilities and threats; • Monitor security events on endpoints to identify suspicious or anomalous activity; • Conduct detailed analysis of logs and events to detect anomalous behavior on endpoints; • Document endpoint-related security incidents and propose technical mitigation recommendations; • Support forensic investigations of incidents on devices, documenting attack vectors and recommendations; • Develop and maintain incident response playbooks for scenarios such as ransomware, APTs, and other advanced threats; • Execute incident simulation tests to validate and improve response processes; • Prepare detailed technical reports on incidents, including attack vectors, impacts, and prevention recommendations; • Monitor sources such as NVD, vendor alerts, and CVEs to identify new critical vulnerabilities; • Validate the effectiveness of fixes in controlled environments before applying them to production; • Assess the impact of vulnerabilities from the perspective of regulations such as LGPD (Brazilian General Data Protection Law), ISO/IEC 27001, and other applicable regulations; • Configure and manage network segmentation policies (VLANs, security zones, DMZs) to minimize attack surface; • Implement and optimize Network Detection and Response (NDR) solutions to detect anomalies in internal and external traffic; • Configure and manage Identity and Access Management (IAM) solutions with role-based (RBAC) and attribute-based (ABAC) policies; • Implement and optimize Privileged Access Management (PAM) systems, including automatic password rotation and secure vaults; • Design and implement multi-factor authentication (MFA) flows integrated with critical systems; • Manage user lifecycle (provisioning and deprovisioning), ensuring adherence to policies; • Perform periodic audits of permissions, identifying excess privileges and adjusting policies in PAM; • Monitor privileged account logs to detect anomalous behavior.
Job Requirements
- Bachelor's degree in Information Technology (IT) or a related field.
- Experience in information security. Experience must be demonstrated via a legal entity (Pessoa Jurídica) contract or employment record (Carteira de Trabalho), which should include start and end dates for the activity.
- ITIL 4 training with a minimum duration of 12 (twelve) hours.
- Official ITIL 4 Foundation certification or higher.
- Advanced, professional, expert, or equivalent certification for the Endpoint protection tool.
- Certification: ECSA (EC-Council Certified Security Analyst) or CySA+ (CompTIA Cybersecurity Analyst) or ECIH (EC-Council Certified Incident Handler) or CSIH (Certified Specialist Incident Handler).
Benefits
- Health plan: Hapvida, Bradesco Saúde, or Unimed (subject to local availability);
- Dental plan: Hapvida Odonto or Bradesco Dental;
- Meal or Food Voucher (Alelo);
- Life insurance fully paid by Lanlink;
- Transportation voucher;
- Pharmacy discounts/convention;
- University partnership/tuition discounts;
- Total Pass;
- Internal education platform;
- Moodar platform (therapy platform).
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Execute and/or lead advanced security assessments for client information systems • Apply deep technical and compliance expertise to evaluate, advise, and guide clients through FedRAMP, FISMA, and NIST RMF requirements • Lead technical discussions, mentor team members, and support secure cloud architecture and risk mitigation activities • Conduct comprehensive security assessments by analyzing cybersecurity documentation and performing evidence collection, interviews, and testing • Perform system and network vulnerability scanning and analysis using automated and manual techniques • Identify, recommend, and validate vulnerability remediation actions, fix procedures, and mitigation strategies • Prepare clear, accurate, and original reports, attestations, and customer-facing documentation • Work independently or as part of a client delivery team in a fast-paced, deadline-driven, remote environment
• Build security tools and controls that are deployed across the company • Design, develop, and deploy new core security features to public Chainlink products like the Chainlink core node • Define new processes and systems that make attacks on our networks hard to execute and easy to detect • Immerse yourself in Chainlink’s upcoming engineering and non-engineering projects and ensure security is fundamental to their design and functionality • Help define, shape, and achieve the company’s broader security goals
• Join a team of talented, committed and passionate engineers, with a lot of product interaction. • Build the infrastructure, interfaces, and applications to provide first-class service to our members, health professionals, and even ourselves! • Protect sensitive health data and ensure our systems are resilient against threats. • Technical Foundations enables product crews and creates the environment to thrive. • Design, build and operate the authentication stack on top of our self-hosted identity provider. • Build, evolve and operate our end-to-end encryption component used by our Alan Clinic. • Contribute to the foundations to isolate and protect highly sensitive medical data without sacrificing usability or delivery speed. • Contribute to reinforce our security engineering practices (fixing security vulnerabilities, CI/CD, SAST/DAST, Infrastructure Security, AI/LLM Security, etc…).
Senior Hardware Security Engineer
LimeBuilding a future where transportation is shared, affordable and carbon-free. Join us! www.li.me/careers
• Contribute to hardware security architecture reviews for product platforms • Conduct threat modeling exercises for hardware and firmware components • Perform hands-on security assessments of hardware platforms • Develop firmware hardening recommendations and work with firmware engineering teams • Participate in incident response efforts for hardware and firmware security incidents • Develop and maintain automated security tooling for hardware and firmware analysis • Contribute to hardware security standards, policies, and procedures • Serve as a subject matter expert on hardware security within the product security team • Continuously research and evaluate emerging hardware security threats, technologies, and best practices • Perform occasional travel to support business operations




