Junior Information Security Analyst focusing on vulnerabilities and helping to secure a financial market. Engaging in scanning, reporting, and remediation of security issues in a hybrid work environment.
Responsibilities
Execute and schedule vulnerability scans on servers, endpoints, and network assets, and report results to the responsible teams;
Produce reports and dashboards with KPIs and KRIs based on daily activities and challenges for presentation to leadership;
Track remediation of addressed vulnerabilities, follow up with responsible teams, and record evidence of remediation;
Assist in asset management, ensuring scans cover the entire technology estate;
Perform triage based on CVSS and business risk, and improve processes for remediation effectiveness and vulnerability reporting.
Requirements
Bachelor's degree in Information Technology (Security, Information Systems, Computer Networks, Computer Science) or related fields;
Familiarity with vulnerability scanners, preferably Qualys;
Understanding of CVSS, OWASP Top 10, and patch management;
Knowledge of operating systems (Windows and Linux) and computer networks (protocols and TCP/IP);
Experience with ITSM for opening and tracking tickets;
Proficiency with Microsoft Office suite;
Good communication skills to liaise with technical teams during cadences and to record evidence;
Desirable certifications: Security+, ISO 27001 Foundation, ITIL Foundation;
Desirable knowledge of Cloud Security, concepts of SAST, DAST, containers, IaC, Kubernetes, and Python programming for simple process automation;
Differentials: prior experience in a financial environment or managed service providers; experience with Power BI; participation in incident response involving vulnerability exploitation; knowledge of hardening.
Benefits
Health insurance
Dental insurance
Meal voucher
Food allowance
Life insurance
Total Pass
GymPass
PPR (Profit Sharing / Performance Bonus)
Job title
Junior Information Security Analyst – Vulnerability
Specialist in PingFederate, PingDirectory and PingID for IAM infrastructure management. Collaborating with teams for stable operation and development in Cotia.
Senior Security Analyst developing and implementing security strategies for logistics operations. Focus on risk assessment, staff training, and policy compliance.
IT Security Analyst supporting the Supreme Court of Nevada in safeguarding judicial information systems. Implementing security controls, maintaining compliance, and conducting security assessments in a collaborative environment.
Information Security Analyst SME protecting information assets by designing and maintaining security policies. Ensuring compliance with security standards in a tech services company focused on digital transformation.
Vulnerability Analyst role in BGS supporting government clients. Conduct vulnerability assessments and enhance cybersecurity protocols for effective mitigation strategies.
Analyst of Information Security focusing on Governance and Project Risk Analysis in software development. Join a dynamic team collaborating on security in tech projects.
Cybersecurity Analyst responsible for protecting corporate environments and managing security incidents. Collaborating with IT teams and providing strategic security communications.
Information Security Analyst role focusing on cybersecurity for a retail company based in Belo Horizonte. Tasks include managing security tools and monitoring incidents.