Senior Cybersecurity Engineer at 3CON responsible for detection and response engineering in Brazilian pharmaceutical retail. Collaborating with teams and improving security controls continuously.
Responsibilities
Act as a Senior Cybersecurity Engineer with a leading technical role, serving as a reference in detection, response, and security engineering, supporting the continuous evolution of the organization’s security controls and defensive capabilities;
Engineer, maintain, and continuously improve security solutions such as SIEM, EDR/XDR, NDR, and incident response tools;
Lead and support security incident response activities, including root cause analysis, containment, eradication, and lessons learned;
Perform threat hunting activities, identifying anomalous behavior and advanced techniques, tactics, and procedures (TTPs);
Tune and optimize security tools to reduce false positives and increase detection effectiveness;
Support the creation and evolution of detection use cases, correlation rules, and response playbooks;
Work collaboratively with SOC, GRC, infrastructure, networking, and technology teams;
Participate in defining secure architectures and technical security requirements;
Support simulation exercises, readiness tests, and, where applicable, Purple Team initiatives;
Produce technical documentation, executive reports, and recommendations for continuous improvement;
Actively contribute to the organization’s cybersecurity technical and cultural maturity.
Requirements
Strong experience in security engineering and/or cybersecurity operations;
Hands-on knowledge of incident response, basic forensic analysis, and alert investigation;
Experience with SIEM (e.g., Splunk, Microsoft Sentinel, QRadar) and EDR/XDR (e.g., Defender, CrowdStrike, SentinelOne);
Practical experience in threat hunting and TTP-based analysis (MITRE ATT&CK);
Ability to tune rules, alerts, and security policies;
Knowledge of networking, operating systems (Windows/Linux), and cloud security;
Strong technical communication skills and the ability to act as a reference for other analysts.
Behavioral Competencies:
Strong sense of responsibility and technical ownership;
Clear, concise, and risk-oriented communication;
Ability to perform under pressure during incident scenarios;
Collaborative, team-oriented mindset;
Cultural alignment, positive attitude, project and task management, vendor interaction skills, and organizational aptitude.
Preferred Qualifications:
Practical or conceptual experience with Purple Team methodology;
Knowledge of security automation and SOAR;
Experience in cloud environments (Azure, AWS, or GCP);
Certifications such as GCIA, GCED, GCIH, SC-200, AZ-500 or equivalents;
Knowledge of security and response frameworks (NIST CSF, NIST SP 800-61);
Experience with threat intelligence and use of external feeds.
Junior Information Security Analyst focusing on identity and access management at Evertec. Supporting operational activities and collaborating with IT and security teams in a hybrid setting.
Lead Security Analyst managing operational guidance and analytical oversight for security across crisis regions. Collaborating for timely decision - making and information delivery to clients in the field.
Analista de Segurança da Informação na Minsait investigando e respondendo a incidentes de segurança. Envolvimento em gestão de vulnerabilidades e boas práticas de segurança.
Senior Security Analyst providing advanced cybersecurity services in Stockholm and Malmö. Monitoring environments and handling incidents while collaborating with clients to ensure cybersecurity resilience.
Staff Cybersecurity Analyst focusing on cloud security for Southern Glazer’s. Leading security assessments, managing incidents, and collaborating with teams to enhance security posture.
Analyst supporting Nuclear Cyber Security program at Duke Energy. Addressing cyber security threats and managing compliance across multiple nuclear operations.
Security Analyst investigating employee fraud and misconduct for PNC across multiple US locations. Responsibilities include analyzing bank activities to minimize risk and detect suspicious activities.
Information Security Analyst managing access controls and ensuring compliance with information security policies. Supporting user demands in corporate environments while working in a hybrid model.
Cybersecurity Analyst supporting clients in threat analysis, system monitoring, and policy enforcement. Collaborating with teams to protect IT infrastructure in a contract role.
Cybersecurity Analyst at Ventas supporting monitoring, incident response, and security operations. Collaborating with IT and external partners to enhance overall security posture.