Navigate Change
Senior Identity and Security Operations Engineer
Location
Brazil
Posted
72 days ago
Salary
0
Seniority
Senior
Job Description
Senior Identity and Security Operations Engineer
CI&T
• Collaborate with cross-functional teams to design, implement, and manage our security and identity platforms. • Develop, integrate, and maintain account- and system-provisioning solutions as we progress toward a Zero Trust architecture. • Partner with application owners and business stakeholders to provide security subject-matter expertise and guidance on security standards and policies to protect customers and maintain a secure environment. • Administer identity and security operations platforms (e.g., Okta, Active Directory, Active Directory Certificate Services (ADCS), ADFS, Azure, Intune, AWS/IAM, certificate and secrets management). • Manage Active Directory deployments and rebuild the ADCS environment. • Lead and contribute to Okta projects and manage permissions effectively. • Provide Tier 3 support for all Identity and Security Operations issues. • Develop policies and procedures for identity and security systems. • Serve as a subject-matter expert (SME) for SSO, SAML, and SCIM for application owners and business stakeholders. • Work closely with other security and infrastructure teams to proactively identify, protect, and defend the enterprise from cybersecurity threats and to resolve complex issues. • Mentor and train other team members. • Participate in on-call rotations as required.
Job Requirements
- Minimum 4 years of experience in at least three of the following areas:
- Automating cross-domain identity management (SCIM).
- Operating multi-factor authentication solutions.
- Managing integration APIs and web services (e.g., REST, SOAP, OAuth, OIDC).
- Role-based access control strategies and privileged account management.
- Risk-based authentication and conditional access.
- Conducting enterprise access reviews and recertification.
- Advanced understanding of security principles (e.g., separation of duties, least privilege).
- Expert knowledge across core IAM domains: Identity Governance and Administration, Privileged Access Management, Authentication, Authorization, Identity Lifecycle Management.
- Familiarity with Change Management and Service Desk practices.
- Understanding of Agile frameworks such as Kanban or Scrum.
- Preferred qualifications:
- Expert in Okta Lifecycle Management and Active Directory Certificate Services (ADCS).
- Technical knowledge of PKI and API security.
- Strong experience with Zero Trust implementations.
- Demonstrated expertise in three or more IT-related fields, including cloud services, authentication, PKI, system administration, software development, networking, or security architecture.
- Advanced knowledge of security topics such as threat hunting, threat modeling, digital forensics, reverse engineering, phishing, and penetration testing.
- Strong communication skills for interacting with customers, peers, and executive leadership.
- Willingness to work on-call shifts.
Benefits
- Health and dental insurance
- Meal and food allowance
- Childcare assistance
- Extended paternity leave
- Partnerships with gyms and wellness providers through Wellhub (Gympass) TotalPass
- Profit sharing and results participation (PLR)
- Life insurance
- Continuous learning platform (CI&T University)
- Employee discount program
- Free online platform dedicated to physical, mental, and overall well-being
- Pregnancy and responsible parenting course
- Partnerships with online learning platforms
- Language learning platform
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
• Lead and evolve the Security Operations strategy and operating model • Continue building a dependable security incident response capability • Mature threat intelligence and security validation practices • Establish key, secrets, and certificate lifecycle management • Lead and evolve Corporate IT strategy and operating model • Drive operational transparency through dashboards and KPIs • Own vendor performance and budget stewardship • Strengthen audit readiness and operating controls • Engage actively with external stakeholders and keep up to date with latest trends
Security Operations Analyst
AlphaSenseThe market intelligence and search platform trusted by over 3,500 leading organizations
Role Description The Security Operations Center (SOC) Analyst is a position responsible for monitoring, analyzing, and triaging security events and alerts. This role supports the AlphaSense Security Operations Center by performing initial investigation and triage of potential security events and escalating them according to defined procedures. This role reports to the Security Operations Manager. - Alert triage and investigation - Monitor and triage security alerts across SIEM, EDR, cloud security, identity and other platforms - Perform initial investigation on escalated events, collecting and correlating evidence across log sources - Execute containment and remediation actions under defined escalation thresholds - Maintain accurate and timely documentation in the incident tracking system - Detection and threat intelligence - Contribute to YARA-L rule development and tuning in Chronicle/Google SecOps - Assist with CrowdStrike Falcon IOA and prevention policy maintenance - Review and act on SOCRadar threat intelligence feeds, correlating IOCs against internal telemetry - Identify detection gaps and recommend coverage improvements - Cloud and identity security - Triage cloud security findings from environments - Investigate identity anomalies including suspicious login patterns and MFA bypass attempts - Support cloud IR investigations Log analysis - Program development - Author and maintain SOC runbooks and triage playbooks - Participate in knowledge transfer during shift handoff - Support compliance-adjacent security activities Qualifications - 2–4 years of SOC, incident response, or security operations experience - Bachelor's degree (B. Tech) from a Tier1, Tier2 institution - Hands-on experience with a SIEM platform (Chronicle, Splunk, Sentinel, or equivalent) - Familiarity with EDR tooling (CrowdStrike Falcon preferred) - Foundational understanding of cloud security concepts across AWS or GCP - Working knowledge of identity threat patterns (credential stuffing, MFA fatigue, account takeover) - Ability to read and interpret logs: authentication, network, endpoint, and cloud audit trails - Strong written communication skills — clear, concise incident documentation and escalation summaries Requirements - Exposure to CSPM/CWPP platform - Familiarity with various log schemas - Scripting proficiency in Python or similar for basic automation and log parsing - Relevant certifications: CompTIA Security+, CySA+, GCIH, GCIA, or equivalent Company Description AlphaSense is an equal-opportunity employer. We are committed to a work environment that supports, inspires, and respects all individuals. All employees share in the responsibility for fulfilling AlphaSense’s commitment to equal employment opportunity. AlphaSense does not discriminate against any employee or applicant on the basis of race, color, sex (including pregnancy), national origin, age, religion, marital status, sexual orientation, gender identity, gender expression, military or veteran status, disability, or any other non-merit factor. This policy applies to every aspect of employment at AlphaSense, including recruitment, hiring, training, advancement, and termination. In addition, it is the policy of AlphaSense to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations, and ordinances where a particular employee works.
Security Operations Engineer
It4us Cyber SecurityGarantindo a Cyber Segurança de nossos amigos e clientes !
• Perform activities related to security operations; • Support the maintenance and continuity of security environments; • Analyze security events, alerts and incidents; • Provide technical support and troubleshooting when necessary; • Follow information security processes and best practices; • Record activities and technical project documentation.
Security Operations Analyst
AlphaSenseThe market intelligence and search platform trusted by over 3,500 leading organizations
• Monitor and triage security alerts across SIEM, EDR, cloud security, identity and other platforms • Perform initial investigation on escalated events, collecting and correlating evidence across log sources • Execute containment and remediation actions under defined escalation thresholds • Maintain accurate and timely documentation in the incident tracking system • Contribute to YARA-L rule development and tuning in Chronicle/Google SecOps • Assist with CrowdStrike Falcon IOA and prevention policy maintenance • Review and act on SOCRadar threat intelligence feeds, correlating IOCs against internal telemetry • Identify detection gaps and recommend coverage improvements • Triage cloud security findings from environments • Investigate identity anomalies including suspicious login patterns and MFA bypass attempts • Support cloud IR investigations log analysis • Author and maintain SOC runbooks and triage playbooks • Participate in knowledge transfer during shift handoff • Support compliance-adjacent security activities



