Senior Information Security Analyst focused on Blue Team/CSIRT at PagBank. Engaging in cybersecurity incident response and advanced security solutions support.
Responsibilities
Act in cybersecurity incident response, including investigation, root cause analysis (RCA) and preparation of technical and executive reports.
Operate and provide advanced support for Endpoint Security solutions (EPP, EDR, XDR, encryption, MDR).
Create, maintain and evolve security rules, use cases and playbooks (EDR, SIEM, SOAR and incident response).
Support forensic investigations, log analysis and handling of critical incidents.
Work collaboratively with SOC, Red Team, CTI, IT and GRC teams.
Support maturity control of cybersecurity processes and respond to security-related requests.
Requirements
Bachelor's degree in Information Security, Information Systems, Computer Science or a related field.
Experience in Information Security with a focus on Blue Team, SOC or CSIRT.
Experience in Information Security and Cybersecurity in corporate environments.
Experience with Cloud Security (AWS, Azure or GCP) and On-Premises environments.
Knowledge of security architecture, IT infrastructure and network architecture.
Experience with SIEM, SOAR, EDR, antivirus, IDS/IPS, firewalls, Web Security, CASB and DLP tools.
Knowledge of incident response, mapping of risks, threats and vulnerabilities, and post-incident recovery.
Knowledge of cyber threats, attack and exploitation techniques (MITRE ATT&CK, CVE, CVSS, CWE, among others).
Experience defining and reviewing incident response playbooks and plans.
Skills in programming or scripting languages for automating security processes.
Knowledge of security standards, legislation and frameworks such as ISO 27000, NIST, LGPD, ITIL, FIPS 140-2 and MITRE ATT&CK.
Benefits
Meal allowance and/or food voucher.
Health and dental insurance.
Life insurance.
Partnerships with TotalPass and ZenKlub.
Extended maternity and paternity leave.
Childcare subsidy.
Up to 50% discounts on postgraduate and MBA programs from top institutions such as FIA, FAAP and PUCRS.
No dress code: what matters is wearing what makes you comfortable.
#TáDeParabéns: day off on your birthday.
Baby Gift: present for newborns.
Job title
Senior Information Security Analyst – Blue Team, CSIRT
Partner Sales Specialist focusing on enabling partners to sell Microsoft Security solutions. Collaborating with teams to activate partners for effective sales across their customer base.
Activity Security Representative providing multi - disciplined security support for a customer’s facility at GDIT. Role involves ensuring security protocols and maintaining documentation for classified materials.
Cybersecurity Engineer enhancing enterprise security posture at GDIT. Designing secure identity controls and managing authentication solutions for Microsoft environments.
Information Security Officer developing risk management systems and collaborating with stakeholders for a tech company. Working on information assets and engineering teams in a hybrid working environment.
Security Lead managing GSA cloud applications security architecture. Collaborating with teams to ensure compliance with federal security standards and best practices.
Security Officer providing safety and security services in East Valley locations for Banner Health. Involves emergency response, patrols, alarm monitoring, and writing reports.
Security Engineer contributing to security initiatives for incident management platform at Rootly. Collaborating cross - functionally to ensure reliable and scalable security solutions.
Lead Senior Information System Security Manager (ISSM) for Boeing's cybersecurity programs. Focus on implementing compliance for DFARS/NIST and managing a large portfolio for CUI.
Técnico de Segurança do Trabalho supporting Segurança, Meio Ambiente e Saúde in submarinas operations for Petrobras in Macaé/RJ. Contribuir para ambientes de trabalho seguros e cumprimento de normas.
Information Security Engineer supporting vulnerability management efforts at PagBank. Collaborating with teams to enhance financial services security and compliance.