JSOC - Senior Cybersecurity Specialist - Incident Response
Tasks
- Analyze threat indicators
- Collect and track incident metrics
- Communicate risk posture to stakeholders
- Conduct forensic triage
- Contain and eradicate threats
- Coordinate investigations with internal and third party teams
- Document incident timelines and evidence
- Execute playbooks and runbooks
- Investigate cybersecurity attacks
- Leverage SIEM and EDR for analysis
- Maintain detection rules and correlation rules
- Manage incident response lifecycle
- Monitor alerts and triage incidents
- Participate in on-call rotations
- Participate in tabletop exercises and IR simulations
- Perform threat hunting
- Provide technical guidance to SOC analysts
- Recover from security incidents
- Run post incident reviews and lessons learned
Perks/Benefits
- Career growth and development
- Community involvement opportunities
- Health and wellbeing resources
- Hybrid work environment
- Paid vacation
- Personal days
- Sick days
- Work-life balance
Skills/Tech-stack
API Integration | Application Firewall | Automation | Content Filtering | Correlation rules | CrowdStrike Falcon | Cybersecurity Framework | DDoS Protection | Detection rules | EDR | ESQL | Elastic Security | Email Security | Firewalls | Forensic triage | IDS/IPS | Incident Response | JavaScript | KQL | Linux | MITRE ATT&CK | MTTD | MTTR | MacOS | NIST Cybersecurity | NIST Cybersecurity Framework | Operating System | Operating system forensics | Operations Center | Phishing Protection | Playbooks | Python | Runbooks | SIEM | SOAR | Security Operations Center | Security Orchestration | Security operations | System forensics | Threat Intelligence | Threat hunting | Threat indicators | Timeline Analysis | WAF | Web Application | Web Application Firewall | Windows
Education
N/A
Related jobs
-
Cybersecurity Assurance & Compliance Senior Analyst BRL 100K-116KAudit | CIS Controls | Cybersecurity | Cybersecurity Framework | Demand ManagementSenior-level Full TimeGUA-Mars Brasil, Brazil1d ago
-
Security GRC Analyst BRL 96K-96KAI tools | API Integration | Audit management | BCB Resolution 85 21 | Cloud SecurityMid-level Full TimeSão Paulo R4d ago
-
Analista de IAM BRL 80K-80KABAC | Access Management | Access reviews | Active Directory | Automated DeprovisioningCertification opportunities | Hybrid work | Training opportunitiesMid-level Full TimeBRMM Hortolandia (BRMM), Brazil5d ago
-
Analista de IAM BRL 80K-80KAccess Control | Access Management | Access auditing | Active Directory | Attribute-Based Access ControlBe Well programs | Certification support | Hybrid work | Training opportunitiesMid-level Full TimeBRMM Hortolandia (BRMM), Brazil5d ago
-
800-53 | AWS | Azure | Event Correlation | Forensic InvestigationFully remote work | Professional development continuous learning support | Support high impact federal security programsSenior-level Full TimeBrazil R5d ago
-
Analista de Segurança da Informação - Júnior BRL 84K-84KActive Directory | CentOS | Check Point | CrowdStrike | Data Loss PreventionEntry-level Full TimeFortaleza, CE, BR, 60811-3416d ago
-
AI Governance | AI Risk | AI monitoring | AI risk management | Agentic AIHybrid work | SLA driven environmentExecutive-level Full TimeGUA-Mars Brasil, Brazil7d ago
-
Access Control | Authentication | Authorization | Digital forensics | Identity ManagementRemote workSenior-level Full TimeBrasilia, Brazil R7d ago
-
Authentication | Code review | Incident Response | JavaScript | ObservabilityContinuous learning support | Flexible work environment | Inclusive workplace culture | Paid time off | Professional development supportSenior-level Full TimeBrazil7d ago
-
Entry-level Full TimeSÃO PAULO, SÃO PAULO, Brazil11d ago
-
800-53 | Access Management | Cloud Governance | Cloud Security | Computer forensicsTravel up to 30 percentMid-level Full TimeChile; Brazil11d ago
-
Jr Security Engineer BRL 23K-23KAWS | CI/CD | Cloud Security | DevSecOps | GCPTravel opportunitiesEntry-level Full TimeSão Carlos, SP, Brazil12d ago
-
Sr Security Engineer BRL 180K-184KAWS | CI/CD | Cloud Security | Cloud platform | DevSecOpsTravel opportunitiesSenior-level Full TimeSão Carlos, SP, Brazil12d ago
-
API querying | AWS | Azure | Dark Web | EDRMid-level Full TimeRecife, PE, BR, 50030-23013d ago
-
Email analysis | Indicators of compromise | Mitre Attack | OSINT | PythonAdoption Assistance | Certification completion bonus | Certification reimbursement | Company bonuses | Employee referral bonusMid-level Full TimeSão Paulo, Brazil13d ago
-
Indicators of compromise | MITRE ATT&CK | OSINT | Python | URLscan.ioAdoption Assistance | Certification completion bonus | Certification reimbursement | Company bonuses | Employee referral bonusMid-level Full TimeSão Paulo, Brazil13d ago
-
Senior Security Analyst BRL 184K-184KAWS | Authentication Management | CSIRT | CVE Analysis | Cloud SecurityBonus | Career progression | Health care | Hybrid work | MentorshipSenior-level Full TimeSão Paulo13d ago
-
API Security | Application Testing | Attack chain | Attack chain mapping | EDRChildcare support | Complementary Retirement Plan | Dental insurance | Gympass or Totalpass | Life insuranceEntry-level Full TimeSANTANDER RADAR BL A 2 AND, …14d ago
-
Analista Sênior de Segurança da Informação BRL 80K-94KAccess Control | Antivirus | Compliance | Cybersecurity | EncryptionMid-level Full TimeCampinas, Brazil15d ago
-
API Security | AWS | Azure | Bash | Cloud SecurityDiversity and inclusion | On site work 2 days per week | Remote work flexible daysMid-level Full TimeSão Paulo18d ago
-
IAM Governance Analyst BRL 98K-107KAccess Certification | Access Control | Access Management | Access Review | Audit SupportMid-level Full TimeSao Paulo, São Paulo, BR, 05423-01019d ago
-
IAM Governance Analyst BRL 98K-107KAccess Certifications | Access Control | Access Management | Access Review | Artificial IntelligenceMid-level Full TimeSao Paulo, São Paulo, BR, 05423-01019d ago
-
Operational Risk Analyst BRL 80K-80KAI Agents | Artificial Intelligence | Bacen Regulation | COBIT | Control Self-AssessmentMid-level Full TimeSão Paulo R19d ago
-
AWS | Cloud Security | Endpoint Security | Forensic analysis | Incident ResponseAfter-hours support | On-call support | Travel as neededMid-level Full TimeSao Paulo, Brazil20d ago
-
Domain analysis | Email Security | File Hash Analysis | Hash analysis | Indicators of compromiseAdoption Assistance | Certification completion bonuses | Certification reimbursement | Employee referral bonuses | Tuition reimbursementMid-level Full TimeSão Paulo, Brazil26d ago