Senior Cyber Security Analyst

Jobtailor

São Paulo

Presencial

BRL 120 000 - 180 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

Jobtailor in São Paulo is seeking a Security Engineer specializing in security operations, incident response, and threat hunting, to design, implement and optimize security controls across SIEM and EDR/XDR tools.

You will work with SOC, infrastructure and cloud teams, tune detections, develop playbooks, and produce technical docs to drive continuous improvement.

Qualificações

  • Solid experience in security engineering and/or cybersecurity operations.
  • Practical knowledge of incident response, basic forensic analysis and alert investigation.
  • Experience with SIEM (e.g., Splunk, Sentinel, QRadar) and EDR/XDR (e.g., Defender, CrowdStrike, SentinelOne).
  • Experience in threat hunting and TTP-based analysis (MITRE ATT&CK).
  • Ability to tune rules, alerts and security policies.
  • Knowledge of networking, operating systems (Windows/Linux) and cloud security fundamentals.
  • Strong technical communication skills and ability to act as a reference for other analysts.
  • Strong sense of ownership and technical leadership.
  • Clear, objective, risk-oriented communication.
  • Ability to perform under pressure in incident scenarios.
  • Collaborative, team-oriented profile.

Responsabilidades

  • Lead and support security incident response, including root cause analysis, containment, eradication and lessons learned.
  • Perform threat hunting activities, identifying anomalous behaviors and advanced techniques, tactics and procedures (TTPs).
  • Tune and optimize security tools to reduce false positives and improve detection effectiveness.
  • Support creation and evolution of detection use cases, correlations and response playbooks.
  • Collaborate closely with SOC, GRC, infrastructure, network and technology teams.
  • Contribute to the definition of secure architectures and technical security requirements.
  • Support simulation exercises, readiness tests and, when applicable, Purple Team initiatives.
  • Produce technical documentation, executive reports and continuous improvement recommendations.

Conhecimentos

Security Engineering
Incident Response
Threat Hunting
SIEM Experience
Technical Leadership
Collaboration
Risk Communication
Rule Tuning
Cloud Security Fundamentals
Networking Knowledge
OS Knowledge

Ferramentas

SIEM (Splunk)
SIEM (Sentinel)
SIEM (QRadar)
EDR/XDR (Defender)
EDR/XDR (CrowdStrike)
EDR/XDR (SentinelOne)

Descrição da oferta de emprego

  • Work on engineering, maintenance and continuous improvement of security solutions such as SIEM, EDR/XDR, NDR and incident response tools;
  • Lead and support security incident response, including root cause analysis, containment, eradication and lessons learned;
  • Perform threat hunting activities, identifying anomalous behaviors and advanced techniques, tactics and procedures (TTPs);
  • Tune and optimize security tools to reduce false positives and improve detection effectiveness;
  • Support creation and evolution of detection use cases, correlations and response playbooks;
  • Collaborate closely with SOC, GRC, infrastructure, network and technology teams;
  • Contribute to the definition of secure architectures and technical security requirements;
  • Support simulation exercises, readiness tests and, when applicable, Purple Team initiatives;
  • Produce technical documentation, executive reports and continuous improvement recommendations;
Requirements
  • Solid experience in security engineering and/or cybersecurity operations;
  • Practical knowledge of incident response, basic forensic analysis and alert investigation;
  • Experience with SIEM (e.g., Splunk, Sentinel, QRadar) and EDR/XDR (e.g., Defender, CrowdStrike, SentinelOne);
  • Experience in threat hunting and TTP-based analysis (MITRE ATT&CK);
  • Ability to tune rules, alerts and security policies;
  • Knowledge of networking, operating systems (Windows/Linux) and cloud security fundamentals;
  • Strong technical communication skills and ability to act as a reference for other analysts.
  • Strong sense of ownership and technical leadership;
  • Clear, objective, risk-oriented communication;
  • Ability to perform under pressure in incident scenarios;
  • Collaborative, team-oriented profile;
Core Competencies

Demonstrates expertise in security engineering and incident response, with a strong focus on threat hunting, security tool optimization, and technical communication. Capable of collaborating across teams to enhance security architectures and improve detection capabilities.

Highest-signal resume keywords
  • Security Engineering
  • Incident Response
  • Threat Hunting
  • SIEM Experience
  • Technical Communication
ATS Optimization Keywords
Hard Skills
  • Security Engineering
  • Incident Response
  • Threat Hunting
  • Forensic Analysis
  • TTP-Based Analysis
  • Rule Tuning
  • Alert Investigation
  • Cloud Security Fundamentals
  • Networking Knowledge
  • Operating Systems Knowledge
Soft Skills
  • Technical Leadership
  • Collaborative
  • Risk-Oriented Communication
  • Ability to Perform Under Pressure
  • Team-Oriented
Industry Keywords
  • Continuous Improvement
  • Detection Use Cases
  • Correlations
  • Response Playbooks
  • Purple Team Initiatives
Tools & Technologies
  • SIEM
  • Splunk
  • Sentinel
  • QRadar
  • EDR
  • Defender
  • CrowdStrike
  • SentinelOne
Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Senior Information Security Analyst
Senior Information Security Analyst

Jobtailor • São Paulo

Presencial
BRL 120 000 - 190 000
Engenheiro de Cybersegurança Sênior
Engenheiro de Cybersegurança Sênior

Jobtailor • São Paulo

Presencial
BRL 180 000 - 260 000
Cybersecurity Manager – DFIR, Vulnerability Management
Cybersecurity Manager – DFIR, Vulnerability Management

Jobtailor • São Paulo

Presencial
BRL 240 000 - 360 000
Information Security Specialist, Red Team
Information Security Specialist, Red Team

Jobtailor • São Paulo

Presencial
BRL 180 000 - 280 000
Cyber Security Specialist
Cyber Security Specialist

Jobtailor • Belo Horizonte

Presencial
BRL 110 000 - 170 000
Information Security Analyst (Mid-level) – Focus on Cyber Threat Intelligence
Information Security Analyst (Mid-level) – Focus on Cyber Threat Intelligence

Jobtailor • Porto Alegre

Presencial
BRL 60 000 - 120 000
Offensive Security Specialist
Offensive Security Specialist

Jobtailor • São Paulo

Presencial
BRL 180 000 - 300 000
Senior Project Security Analyst
Senior Project Security Analyst

Jobtailor • São Paulo

Presencial
BRL 180 000 - 240 000
Mid-Level Information Security Analyst – Cyber Threat Intelligence
Mid-Level Information Security Analyst – Cyber Threat Intelligence

Jobtailor • Porto Alegre

Presencial
BRL 180 000 - 280 000
Information Security Analyst – Mid/Senior, Network Security
Information Security Analyst – Mid/Senior, Network Security

Jobtailor • São Paulo

Presencial
BRL 180 000 - 260 000