Analyst in information security at Unimed with focus on data protection and security compliance. Engaging in incident management and supporting business operations with safe practices.
Responsibilities
Monitor, analyze and respond to security alerts (antivirus/EDR, firewall, among others).
Investigate security incidents, perform root cause analysis and propose containment, eradication and prevention actions.
Support log management and event correlation in SIEM tools (or similar).
Perform and track vulnerability scans on servers, endpoints, applications and network devices.
Assess criticality (CVEs, CVSS and business context) and prioritize remediation with infrastructure, development teams and vendors.
Support implementation of hardening best practices based on CIS Benchmarks, NIST and other market references.
Contribute to the maintenance and evolution of Information Security and Privacy policies, standards, procedures and controls.
Support LGPD compliance initiatives, ANS regulations and other regulatory requirements applicable to the healthcare sector.
Assist in performing risk assessments for projects, processes and third parties, recommending mitigation controls.
Work with development and infrastructure teams to integrate security into the application lifecycle (SDLC).
Support risk analysis for new solutions, integrations and services (on-premises and cloud).
Propose and follow up on implementation of DevSecOps practices (SAST/DAST, dependency analysis, architecture standards review).
Support Information Security and Privacy awareness campaigns for employees and third parties.
Produce technical and management reports (security metrics, incidents, vulnerabilities, non-conformities).
Act in a consultative manner with business areas, translating technical risks into business impact.
Requirements
This position is primarily remote, with scheduled in-person meetings as needed.
Bachelor's degree completed in Information Technology, Information Security, Information Systems, Computer Science, Engineering or related fields.
Previous experience as an Information Security Analyst (mid-level) or in an equivalent role.
Cyber Threat Intelligence Analyst supporting IT Security team in identifying and mitigating cyber threats. Ensuring network security and protecting company secrets in high - tech environment.
Risk Analyst supporting cyber risk management activities for PokerStars and other brands. Ensuring accurate risk documentation, reporting, and stakeholder engagement in Cluj - Napoca, Romania.
Cyber Security Analyst responsible for governance, risk management, and compliance projects for clients and internally at Cyberlogic. Engaging with clients on project - based work while developing policies and standards.
Analista de segurança de informação supporting the maintenance of data privacy and protection programs at Minsait. Involves audit support, training, and compliance with legislation.
IT Security Analyst assisting in managing technology environments ensuring security compliance. Supporting Brasilseg's platforms with adherence to best practices in software and hardware.
Senior Cybersecurity Analyst applying RMF concepts to enhance cybersecurity for defense program. Conducting risk assessments and developing reports, based in Colorado Springs, CO.
Junior Information Security Analyst assisting federal clients at OCT Consulting with NIST security assessments and risk analyses. Responsible for executing hands - on security control assessments and recommending process improvements.
Journeyman Information Security Analyst providing expertise to federal clients in Security Controls Assessments and Risk Analyses. Responsibilities include technical assessments and recommendations for security improvements.
Information Security Analyst supporting security practices at Silimed, the leading silicone implant manufacturer in Latin America. Ensuring compliance and resilience in critical OT & IT environments.
Security Analyst defending enterprise systems against cyber threats. Supporting threat intelligence and incident response activities in a global biotechnology organization.