About this role
Phone numbers and emails in this ad are masked until you log in.
auto_translated_note
Our purpose is to create technologies that challenge the world's best and change the game for our customers. Therefore, we are looking for professionals who want to be part of a culture guided by excellence and innovation. If you identify with a collaborative work environment driven by curiosity, come build the future of technology with us.
We are looking for a Full Cloud Security Analyst to join our team and work at the center of our cloud security operation. In this challenge, you will be a key player in combating and responding to security incidents, ensuring the protection of cloud-native environments with a strong focus on AWS. More than just putting out fires and monitoring alerts, your goal will be to transform manual responses into code, creating security automations, refining playbooks and raising the level of maturity and efficiency of our Cyber Security operation.
What you'll do here Conduct analysis, containment and response to security incidents, with a focus on native AWS cloud environments. Develop, optimize and automate incident response playbooks and security controls. Define, monitor and report operational metrics related to security and response performance (SOC/SecOps).
Support the review and continuous improvement of policies, procedures and incident response plans based on post-mortem reviews. Develop automation of operational tasks and technical research to increase the efficiency of security processes. What We Expect You to Know Hands-on experience with incident response and security operations in cloud environments (with a focus on AWS).
Mastery of process automation using languages such as Python, Bash or PowerShell. Experience in operating and configuring operational security tools (such as SIEM and EDR, as well as familiarity with WAF, CSPM, DLP, CASB or IDS/IPS). Practical application of security frameworks recognized by the market (such as MITER ATT&CK or NIST CSF).
Practice with Git and code/script versioning for automation. What would be really cool if you knew Integration and orchestration of incident responses using SOAR solutions. Knowledge or practical experience in computer forensics in cloud environments.
Development of customized scripts for threat monitoring and hunting. Expertise in security management and automation in CI/CD pipelines (DevSecOps). Participation in the implementation or review of controls aimed at compliance and certifications (ISO 27001, PCI DSS, LGPD).
What we offer youWe operate in a remote work model by default, prioritizing your freedom and responsibility. In addition, we provide: Career Freedom to work from wherever you want Flexible hours Education Assistance Own career development tool Internal guilds and study and interest groups Health and well-being Health plan Dental plan Telemedicine available 24x7 Free online therapy Wellhub Extended maternity leave Extended paternity leave CAZ - Zuppers Service Center Financial comfort Meal and food vouchers Life insurance Transport vouchers Home office assistance Childcare assistance Telephone plan assistance Profit Sharing Originally posted on Himalayas
Community Q&A
Anyone worked here? Ask before you apply.
No threads yet for this job or company.