Incident Response Engineer

3 semanas atrás


São Paulo, São Paulo, Brasil Crypto Tempo inteiro

As a member of the ETMSA team at Crypto.com, you will be integral to responding to and managing cybersecurity threats and incidents throughout their lifecycle – from Preparation to Identification, Containment, Eradication, Recovery, and Lessons Learned – collaborating with a global team of incident responders.

You will apply your comprehensive skills in cyber defense, digital forensics, log analysis, and intrusion analysis to address security incidents across our endpoints, network, and cloud infrastructure. In this role, you will be responsible for prevention, detection, response, and remediation activities, ensuring that information assets and technologies are adequately protected by leveraging various technologies such as Next-Generation Firewalls (NGFW), Endpoint Detection and Response (EDR), Intrusion Detection/Prevention Systems (IDS/IPS), Data Loss Prevention (DLP), and more.

You will also leverage your collaboration and communication skills to work effectively with all relevant stakeholders in multicultural and global environments.

Responsibilities
  1. Report to Director to facilitate all phases in the incident response lifecycle
  2. Be involved in various incident prevention projects to improve Security posture
  3. Preparation:
  • Understand different regulatory and compliance requirements like critical time to report, escalation flows, etc.
  • Take part in self-assessment exercises like Tabletop Exercises, Attack Simulations, Red/Purple Team exercises to make sure the incident response process is working smoothly
  • Develop incident response runbooks, playbooks and SOPs with reference to different regulatory requirements
  • Evaluate the incident response readiness of different layers - people, process, technology
Detection & Analysis:
  • Respond to the cyber security incidents escalated from various channels including the 24/7 SOC team.
  • Respond to cyber security incidents in compliance with the local authority / regulatory requirements.
  • Assess the risk, impact and scope of the identified security threats
  • Perform deep-dive incident analysis of various data sources by analysing and investigating security related logs against medium-term threats and IOCs
Containment, Eradication and Recovery:
  • Communicate with the stakeholders and provide guidance, recommendations to contain and eradicate the security incident
  • Participate in root cause analysis using forensic and other custom tools to identify any sources of compromise and/or malicious activities taking place.
  • Document and present investigative findings for high profile events and other incidents of interest.
Post incident activities:
  • Provide lessons learnt meeting to the stakeholders
  • Lead and keep track on the follow-up activities
  • Document the incident in the case management system and provide incident reports
Always ready to jump in, in the event of security incidents.Requirements
  • At least 5 years experience in the Cyber Security industry
  • Strong technical and analytical skills
  • Familiar with the cyber security incident response process
  • Familiarity with AI tools and their application in automating security tasks and processes.
  • Hands-on experience on performing incident response activities
  • Have scripting experience like Bash, PowerShell, Python, Go, etc, and the ability to use these skills to aid in responding to incidents involving Windows, Linux, macOS, as well as cloud environment
  • Have knowledge of cybersecurity tools and software like NGFW, EDR, IDS/IPS, EDR, DLP, SIEM, other log management platforms, etc.
  • Be familiar with the MITRE ATT&CK Framework and/or Cyber Kill Chain
  • Be passionate on exploring new technologies and having creative initiative to boost the team capabilities
  • Holders of security related certifications is a plus (e.g.Azure, AWS, CISSP, GCIH, GCIA, GCFA, GNFA, GREM, or other equivalent)
  • Awareness of regulatory and compliance requirements like GDPR, MAS, PSD2 etc is a plus.
Preferably
  • Fast learner with can do attitude and ready to get the hands dirty
  • A strong team player who can collaborate with compassion
  • Passionate to learn and willing to put in the extra effort
  • Understand the concept of ownership and accountability coupled with sense of urgency and prioritisation
  • Confidence in handling incidents and managing relevant senior and technical stakeholders
  • Possess business acumen/mindset (not only technical) when making critical decisions
#J-18808-Ljbffr

  • São Paulo, São Paulo, Brasil P2P Tempo inteiro

    As a member of the ETMSA team at Crypto.Com, you will be integral to responding to and managing cybersecurity threats and incidents throughout their lifecycle – from Preparation to Identification, Containment, Eradication, Recovery, and Lessons Learned – collaborating with a global team of incident responders.You will apply your comprehensive skills in...


  • São Paulo, São Paulo, Brasil P2P Tempo inteiro

    As a member of the ETMSA team at , you will be integral to responding to and managing cybersecurity threats and incidents throughout their lifecycle – from Preparation to Identification, Containment, Eradication, Recovery, and Lessons Learned – collaborating with a global team of incident responders.You will apply your comprehensive skills in cyber...


  • São Paulo, São Paulo, Brasil beBeeIncident Tempo inteiro R$72.000 - R$96.000

    Job DescriptionAs a Cybersecurity Incident Response Specialist, you will be part of an elite team responsible for managing and responding to cybersecurity threats and incidents throughout their lifecycle.You will apply your comprehensive skills in cyber defense, digital forensics, log analysis, and intrusion analysis to address security incidents across our...


  • São Paulo, São Paulo, Brasil beBeeIncident Tempo inteiro US$100.000 - US$150.000

    Cyber Digital Forensics and Incident Response ExpertAs a Senior Manager, you will provide strategic guidance to clients in managing their Incident Response Engagements. You will work closely with experienced professionals, enhancing your expertise in Cyber Digital Forensics and Incident Response while mentoring junior team members and delivering exceptional...


  • São Paulo, São Paulo, Brasil Kroll Tempo inteiro

    Senior Manager, Cyber Digital Forensics and Incident Response Cybersecurity Cybersecurity | Sao Paulo, Brazil | Senior Manager, Cyber Digital Forensics and Incident Response Cybersecurity | Sao Paulo, Brazil | We are looking for talented individuals with solid knowledge of Digital Forensics and Incident Response to join our Cyber & Data Resilience...

  • Site Reliability Engineer

    4 semanas atrás


    São Paulo, São Paulo, Brasil Sur LATAM Tempo inteiro

    2 weeks ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Our US based client is looking for a mission-driven Site Reliability Engineer to support and scale the infrastructure powering their secure, mission-critical SaaS platform.You must be confident in operating and debugging both modern infrastructure...

  • Site Reliability Engineer

    4 semanas atrás


    São Paulo, São Paulo, Brasil Sur LATAM Tempo inteiro

    2 weeks ago Be among the first 25 applicantsGet AI-powered advice on this job and more exclusive features.Our US based client is looking for a mission-driven Site Reliability Engineer to support and scale the infrastructure powering their secure, mission-critical SaaS platform.You must be confident in operating and debugging both modern infrastructure...


  • São Paulo, São Paulo, Brasil Kroll Tempo inteiro

    We are looking for talented individuals with solid knowledge of Digital Forensics and Incident Response to join our Cyber & Data Resilience Practice as a Senior Manager As a Senior Manager at Kroll, you will provide support and guidance to a wide variety of clients in managing their Incident Response Engagement. You will work alongside accomplished senior...


  • São Paulo, São Paulo, Brasil Kroll Tempo inteiro

    We are looking for talented individuals with solid knowledge of Digital Forensics and Incident Response to join our Cyber & Data Resilience Practice as a Senior Manager As a Senior Manager at Kroll, you will provide support and guidance to a wide variety of clients in managing their Incident Response Engagement. You will work alongside accomplished senior...

  • Network Engineer

    Há 2 dias


    São Paulo, São Paulo, Brasil Georgiatek Systems Inc. Tempo inteiro

    We're Hiring – Network Engineer (Junior–Mid Level) Location: Hybrid – Avenida Roque Petroni 999,Morumbi - São Paulo (3 days onsite) Employment Type: Full-time Experience: 5+ years in enterprise network supportAbout the RoleWe are seeking a motivated Network Engineer (Junior–Mid Level) to join our team.The ideal candidate will have strong hands-on...