Mid-Level Information Security Analyst

Jobtailor

São Paulo

Presencial

BRL 90 000 - 150 000

Tempo integral

Há 5 dias
Torna-te num dos primeiros candidatos

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

Jobtailor is seeking an experienced security-focused professional to assess web apps, APIs and corporate systems, identify risks and drive remediation across the SDLC. You will conduct code reviews, vulnerability assessments, and collaborate with Dev teams to build secure by design solutions, while reporting findings to technical and executive audiences.

Strong knowledge of OWASP Top 10, threat modeling, and cloud security, plus hands-on testing of microservices, will help strengthen our

Qualificações

  • Bachelor's degree in Information Security, Computer Science, Information Systems, Computer Engineering, or a related field.
  • Experience in Application Security, vulnerability analysis and remediation.
  • Knowledge of application and API security, authentication, authorization, and secure development practices.
  • Familiarity with OWASP Top 10, Secure SDLC, and risk and vulnerability management.
  • Knowledge of Windows and Linux environments.
  • Technical English for reading documentation and industry materials.
  • Information Security or Application Security certifications are a plus.
  • Knowledge of DevSecOps, threat modeling and cloud security is a plus.
  • Experience with security testing of web applications, APIs and microservices is a plus.
  • Experience promoting security best practices and a security culture within development teams is a plus.
  • Analytical, collaborative profile with strong communication skills for interaction with multidisciplinary teams

Responsabilidades

  • Perform security assessments of web applications, APIs and corporate systems, identifying risks and opportunities to strengthen the security posture.
  • Execute and support source code analysis, library and dependency reviews, and vulnerability assessments across all stages of the software development lifecycle.
  • Identify, validate, classify and track remediation of vulnerabilities in partnership with technical teams.
  • Conduct security testing of applications, validating the effectiveness of implemented fixes and ensuring risk reduction.
  • Support the implementation and evolution of Secure SDLC practices, promoting a security-oriented culture from solution design onward.
  • Collaborate with Development, Architecture, Infrastructure and Operations teams to integrate security into processes and deliverables.
  • Prepare technical and executive reports, translating risks, impacts and recommendations for different audiences.
  • Contribute to vulnerability management, risk analysis and prioritization, and continuous improvement of security maturity.
  • Monitor trends, emerging threats, new vulnerabilities and industry best practices, proposing protective improvements.

Conhecimentos

Application Security
Vulnerability Analysis
Secure SDLC
OWASP Top 10
DevSecOps

Formação académica

Bachelor's degree in Information security / Computer Science / Information Systems / Computer Engineering

Ferramentas

Windows
Linux

Descrição da oferta de emprego

  • Perform security assessments of web applications, APIs and corporate systems, identifying risks and opportunities to strengthen the security posture
  • Execute and support source code analysis, library and dependency reviews, and vulnerability assessments across all stages of the software development lifecycle
  • Identify, validate, classify and track remediation of vulnerabilities in partnership with technical teams
  • Conduct security testing of applications, validating the effectiveness of implemented fixes and ensuring risk reduction
  • Support the implementation and evolution of Secure SDLC practices, promoting a security-oriented culture from solution design onward
  • Collaborate with Development, Architecture, Infrastructure and Operations teams to integrate security into processes and deliverables
  • Prepare technical and executive reports, translating risks, impacts and recommendations for different audiences
  • Contribute to vulnerability management, risk analysis and prioritization, and continuous improvement of security maturity
  • Monitor trends, emerging threats, new vulnerabilities and industry best practices, proposing protective improvements
Requirements
  • Bachelor's degree in Information Security, Computer Science, Information Systems, Computer Engineering, or a related field
  • Experience in Application Security, vulnerability analysis and remediation
  • Knowledge of application and API security, authentication, authorization, and secure development practices
  • Familiarity with OWASP Top 10, Secure SDLC, and risk and vulnerability management
  • Knowledge of Windows and Linux environments
  • Technical English for reading documentation and industry materials
  • Information Security or Application Security certifications are a plus
  • Knowledge of DevSecOps, threat modeling and cloud security is a plus
  • Experience with security testing of web applications, APIs and microservices is a plus
  • Experience promoting security best practices and a security culture within development teams is a plus
  • Analytical, collaborative profile with strong communication skills for interaction with multidisciplinary teams
Core Competencies

Demonstrates expertise in Application Security, including vulnerability analysis, remediation, and Secure SDLC practices. Proficient in collaborating with cross-functional teams to integrate security measures and promote a security-oriented culture.

Highest-signal resume keywords
  • Application Security
  • Vulnerability Analysis
  • Secure SDLC
  • OWASP Top 10
  • DevSecOps
ATS Optimization Keywords
Hard Skills
  • Vulnerability Assessment
  • Security Testing
  • Risk Analysis
  • Threat Modeling
  • API Security
  • Authentication
  • Authorization
  • Microservices Security
  • Source Code Analysis
  • Library and Dependency Reviews
Soft Skills
  • Analytical Skills
  • Collaboration
  • Communication
Certifications & Qualifications
  • Information Security Certification
  • Application Security Certification
Industry Keywords
  • Security Posture
  • Security Culture
  • Emerging Threats
  • Industry Best Practices
Tools & Technologies
  • Windows
  • Linux
Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Senior Project Security Analyst
Senior Project Security Analyst

Jobtailor • São Paulo

Presencial
BRL 180 000 - 240 000
Senior Information Security Analyst, Pentester
Senior Information Security Analyst, Pentester

Jobtailor • Barueri

Presencial
BRL 120 000 - 180 000
Senior Information Security Analyst – AppSec
Senior Information Security Analyst – AppSec

Jobtailor • São Paulo

Presencial
BRL 200 000 - 320 000
Offensive Security Specialist
Offensive Security Specialist

Jobtailor • São Paulo

Presencial
BRL 180 000 - 300 000
Senior Security Analyst
Senior Security Analyst

Jobtailor • São Paulo

Presencial
BRL 120 000 - 240 000
Information Security Analyst, Junior
Information Security Analyst, Junior

Jobtailor • São Paulo

Presencial
BRL 17 000 - 30 000
Information Security Analyst – Mid/Senior, Network Security
Information Security Analyst – Mid/Senior, Network Security

Jobtailor • São Paulo

Presencial
BRL 180 000 - 260 000
Senior AppSec / DevSecOps
Senior AppSec / DevSecOps

Jobtailor • São Paulo

Presencial
BRL 180 000 - 260 000
Junior Information Security Analyst
Junior Information Security Analyst

Jobtailor • Rio de Janeiro

Presencial
BRL 100 000 - 140 000
Information Security Analyst – Senior
Information Security Analyst – Senior

Jobtailor • Barueri

Presencial
BRL 180 000 - 320 000