Job Closed
This listing is no longer active.
Tecnologias que transformam
Information Security Administrator – Senior Firewall
Location
Brazil
Posted
66 days ago
Salary
0
Seniority
Senior
Job Description
Information Security Administrator – Senior Firewall
Lanlink Informática Ltda.
• Configure and manage security policies on the firewall, including access rules, traffic filtering, and application control; • Implement and fine-tune firewall rules, defining granular policies aligned with security guidelines and periodically reviewing them to eliminate redundancies or inconsistencies; • Continuously analyze implemented rules to identify obsolete or misconfigured entries, record justifications, and document all changes made to the environment; • Evaluate the impact of rules on critical applications, adjusting them to avoid unintended blocks or network bottlenecks while monitoring the performance of protected services; • Configure specific rules for application and service filtering based on the firewall App-ID, allowing authorized traffic and mitigating risks associated with untrusted applications; • Monitor firewall logs and events to identify suspicious or anomalous activity; • Apply firmware updates and threat signature updates to the firewall according to established guidelines; • Implement hardening practices on the firewall in line with the organization’s security standards; • Perform periodic audits of firewall configurations to verify compliance with internal and regulatory security policies; • Evaluate and adjust NAT (Network Address Translation) and routing configurations on the firewall to ensure correct network operation; • Document security incidents related to the firewall and propose technical recommendations for mitigation; • Collaborate with internal teams in the investigation of incidents involving the firewall; • Prepare technical reports on the firewall security status and performance metrics of implemented policies; • Configure and maintain advanced firewall features such as IPS (Intrusion Prevention System), Threat Prevention, and WildFire; • Conduct periodic scans to detect vulnerabilities in firewall configurations using dedicated tools; • Perform integrity audits of firewall rules and logging systems (logs) within the firewall environment; • Assess the use of privileged accounts and segregation of duties in firewall management during audits; • Implement and manage multifactor authentication (MFA) solutions for firewall access; • Evaluate and configure SSL/TLS traffic control policies on the firewall to prevent encryption-based attacks; • Monitor and respond to security alerts generated by the firewall and integrated with SIEM (Security Information and Event Management) tools; • Configure and manage site-to-site and remote access VPN policies using the firewall’s VPN tools, defining granular rules for authentication and access control based on the environment’s needs (Host Information Profile, split-tunnel traffic, etc.); • Configure segmentation rules for VPN traffic on the firewall, isolating critical networks and limiting lateral access to reduce the spread of threats from remote connections; • Implement SSL/TLS inspection policies for VPN traffic, enabling analysis of encrypted packets without compromising VPN security or performance; • Implement and monitor security policies to protect critical services such as site-to-site and remote access VPNs on the firewall; • Configure and manage access policies based on the Zero Trust Network Access (ZTNA) model; • Monitor and audit access performed via ZTNA; • Perform other information security and firewall-related activities as required by operations.
Job Requirements
- Bachelor's degree in Information Technology (IT) or related field.
- Experience in information security or firewall environments. Experience must be demonstrated via a legal contractor (Pessoa Jurídica) contract or Work Record (Carteira de Trabalho), which must include start and end dates for the activity.
- ITIL 4 training with a minimum duration of 12 (twelve) hours.
- Official ITIL 4 Foundation certification or higher.
- Hold an advanced firewall engineer or next-generation firewall professional certification issued by the firewall manufacturer.
- Hold one of the following certifications:
- ◦ ECSA (EC-Council Certified Security Analyst) or
- ◦ CySA+ (CompTIA Cybersecurity Analyst) or
- ◦ ECIH (EC-Council Certified Incident Handler)
Benefits
- Health plan: Hapvida, Bradesco Saúde, or Unimed (depending on local availability);
- Dental plan: Hapvida Odonto or Bradesco Dental;
- Food or Meal Voucher (Alelo);
- Life insurance fully paid by Lanlink;
- Transportation allowance;
- Pharmacy discount program;
- University tuition discount agreements;
- Total Pass (transportation card);
- Internal education platform;
- Moodar platform (therapy platform)
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Execute and/or lead advanced security assessments for client information systems • Apply deep technical and compliance expertise to evaluate, advise, and guide clients through FedRAMP, FISMA, and NIST RMF requirements • Lead technical discussions, mentor team members, and support secure cloud architecture and risk mitigation activities • Conduct comprehensive security assessments by analyzing cybersecurity documentation and performing evidence collection, interviews, and testing • Perform system and network vulnerability scanning and analysis using automated and manual techniques • Identify, recommend, and validate vulnerability remediation actions, fix procedures, and mitigation strategies • Prepare clear, accurate, and original reports, attestations, and customer-facing documentation • Work independently or as part of a client delivery team in a fast-paced, deadline-driven, remote environment
• Build security tools and controls that are deployed across the company • Design, develop, and deploy new core security features to public Chainlink products like the Chainlink core node • Define new processes and systems that make attacks on our networks hard to execute and easy to detect • Immerse yourself in Chainlink’s upcoming engineering and non-engineering projects and ensure security is fundamental to their design and functionality • Help define, shape, and achieve the company’s broader security goals
• Join a team of talented, committed and passionate engineers, with a lot of product interaction. • Build the infrastructure, interfaces, and applications to provide first-class service to our members, health professionals, and even ourselves! • Protect sensitive health data and ensure our systems are resilient against threats. • Technical Foundations enables product crews and creates the environment to thrive. • Design, build and operate the authentication stack on top of our self-hosted identity provider. • Build, evolve and operate our end-to-end encryption component used by our Alan Clinic. • Contribute to the foundations to isolate and protect highly sensitive medical data without sacrificing usability or delivery speed. • Contribute to reinforce our security engineering practices (fixing security vulnerabilities, CI/CD, SAST/DAST, Infrastructure Security, AI/LLM Security, etc…).
Senior Hardware Security Engineer
LimeBuilding a future where transportation is shared, affordable and carbon-free. Join us! www.li.me/careers
• Contribute to hardware security architecture reviews for product platforms • Conduct threat modeling exercises for hardware and firmware components • Perform hands-on security assessments of hardware platforms • Develop firmware hardening recommendations and work with firmware engineering teams • Participate in incident response efforts for hardware and firmware security incidents • Develop and maintain automated security tooling for hardware and firmware analysis • Contribute to hardware security standards, policies, and procedures • Serve as a subject matter expert on hardware security within the product security team • Continuously research and evaluate emerging hardware security threats, technologies, and best practices • Perform occasional travel to support business operations




