Analista de Segurança Pleno
Jobgether
57 minutos atrás
•Nenhuma candidatura
Sobre
- This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Analista de Segurança Pleno based in Brazil.
- This is an opportunity for a cybersecurity professional to help protect technology environments, applications, systems, and data through proactive security practices. You will monitor events and incidents, investigate vulnerabilities, assess risks, and support the implementation of effective security controls. The role combines operational security activities with opportunities to contribute to risk management, compliance, cloud security, identity management, and secure development practices. You will collaborate with technology and business teams to strengthen resilience and continuously improve the organization’s security posture. The position also involves supporting audits, security awareness initiatives, and the evolution of policies, processes, and tools. A collaborative, innovative, and flexible environment provides room for professional development and meaningful technical impact.
- n
Accountabilities
- Monitor security events, alerts, and occurrences, performing analysis, classification, and escalation according to established procedures.
- Identify, analyze, prioritize, and track vulnerabilities across technology assets, systems, applications, and infrastructure, coordinating remediation plans based on risk.
- Support the investigation, classification, treatment, documentation, and resolution of information security incidents throughout the incident response lifecycle.
- Contribute to incident response activities including identification, containment, eradication, recovery, and root cause analysis.
- Support identity and access management activities, including authentication, permission reviews, and access controls based on least privilege, segregation of duties, and business need.
- Perform information security risk assessments by identifying threats, vulnerabilities, potential impacts, and recommended mitigation measures.
- Follow up on action plans related to risks, vulnerabilities, non-conformities, and corrective measures, maintaining communication with responsible stakeholders.
- Support security assessments of systems, applications, suppliers, and new technology solutions, identifying technical risks and security requirements.
- Support the implementation and monitoring of security controls across cloud environments and SaaS platforms.
- Contribute to initiatives related to personal data protection and LGPD compliance, including risk assessments, security evaluations, and information protection controls.
- Support secure development initiatives and security assessments for applications and technology projects.
- Prepare and maintain security records, evidence, technical documentation, reports, and other relevant materials.
- Consolidate and analyze information security indicators, providing visibility into risks, performance, and improvement opportunities.
- Support internal and external audits by providing documentation, evidence, and information related to security controls.
- Contribute to security awareness initiatives by helping communicate good information security practices and guidelines across the organization.
- Support the review and continuous improvement of information security policies, procedures, controls, tools, and processes.
- Execute security activities and projects of low to medium complexity while escalating or supporting more complex initiatives led by senior professionals.
Requirements
- Hold a completed bachelor’s degree in Information Technology, Information Security, Computer Science, Systems Analysis, or a related field.
- Have intermediate knowledge of information security, networks, operating systems, infrastructure, and cloud computing.
- Demonstrate professional experience identifying, analyzing, prioritizing, and treating security vulnerabilities, threats, and incidents.
- Have knowledge of security technologies and tools such as SIEM, EDR/XDR, IAM, vulnerability management platforms, and security monitoring solutions.
- Have experience with access management, multi-factor authentication (MFA), permission reviews, and identity security controls.
- Be familiar with Microsoft 365 security technologies, including Microsoft Entra ID, Microsoft Defender, Microsoft Intune, Conditional Access, and related solutions.
- Have knowledge of cloud security environments such as Azure, Oracle Cloud, or similar platforms.
- Be familiar with recognized information security frameworks, standards, and best practices such as ISO 27001, CIS Controls, and the NIST Cybersecurity Framework.
- Demonstrate the ability to prepare technical reports, security indicators, risk analyses, and action plans.
- Have experience monitoring risks, vulnerabilities, non-conformities, and corrective actions through to resolution.
- Demonstrate analytical thinking, attention to detail, organization, and strong follow-up skills when managing security risks and remediation activities.
- Communicate effectively with technical and business stakeholders and collaborate across multidisciplinary teams.
- Certifications such as SC-900, SC-200, Security+, AZ-900, or ISO 27001 Foundation are considered a plus.
Benefits
- Flexible hybrid or fully remote work options.
- Health insurance for employees and dependents with no monthly premium.
- Dental insurance for employees and dependents with no monthly premium.
- Food and meal allowance.
- TotalPass membership for fitness and wellness activities.
- Emotional health and well-being program for employees and dependents.
- Life insurance.
- Birthday day off.
- Education allowance to support professional development.
- Home office allowance.
- Transportation allowance.
- Parking assistance.
- A collaborative and relaxed work environment.
- A culture focused on innovation, excellence, commitment, teamwork, and continuous learning.
- Opportunities to grow within an organization undergoing significant development.
- An inclusive workplace that values diversity, equity, and inclusion across different identities, backgrounds, cultures, ages, and abilities.
- n
How Jobgether works
- We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
- We appreciate your interest and wish you the best!
- Why Apply Through Jobgether?
- Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
- #LI-CL1
Adzuna


