CyberSecurity Specialist

2 semanas atrás


São Paulo, São Paulo, Brasil Betta Global Partner Tempo inteiro

We're Hiring: Cybersecurity Specialist

(SIEM / SOAR / Detection Engineering / CSIRT / Automation)

Location:
[Remote / Hybrid / On-site – SP]

Employment Type:
Full-time

Experience Level:
Senior

Role Overview

We are seeking a
Cybersecurity Specialist
to join our
Cybersecurity Engineering and Response Team (CSIRT)
. This role combines
detection engineering, SIEM & SOAR development, security automation, and incident escalation
, with direct involvement in
security projects and platform implementations
.

You will play a critical role in strengthening detection capabilities, improving incident response workflows, and implementing enterprise-grade cybersecurity solutions across the organization.

Key Functions & Responsibilities

  • Act as an active member of the
    CSIRT / CESRT
    , supporting incident response and threat containment
  • Handle
    incident escalation
    from SOC Tier 1/2 through advanced investigation and resolution
  • Design, develop, and maintain
    SIEM correlation rules
    , detections, and advanced queries
  • Perform
    SIEM engineering
    : log onboarding, parsing, normalization, tuning, and optimization
  • Develop and manage
    SOAR playbooks
    , automations, and response workflows
  • Implement
    security automation
    using scripting, APIs, and orchestration platforms
  • Lead or contribute to
    security projects
    , including:
  • SIEM / SOAR platform implementation and upgrades
  • EDR/XDR deployment and optimization
  • Integration of security tools and data sources
  • Map detections and response processes to
    MITRE ATT&CK
    and
    NIST frameworks
  • Collaborate with IT, SOC, Cloud, and Infrastructure teams on security architecture and improvements
  • Reduce false positives and continuously enhance detection coverage and response effectiveness
  • Create and maintain technical documentation, runbooks, and incident procedures

Required Skills & Experience

  • Proven experience in
    Cybersecurity, SOC, Detection Engineering, or Incident Response
  • Strong hands-on experience with
    SIEM platforms
    (NG-SIEM, Splunk, Microsoft Sentinel, QRadar, Elastic, etc.)
  • Experience building
    correlation rules, queries, dashboards, and alerts
  • Hands-on experience with
    SOAR platforms and security automation
  • Strong understanding of
    NIST
    ,
    MITRE ATT&CK
    , and incident response lifecycle
  • Experience with
    programming or scripting languages
    (Python, PowerShell, Bash, etc.)
  • Experience integrating security tools using
    REST APIs
  • Ability to manage escalations and work under incident-driven pressure

Certifications (Required or Preferred)

  • CompTIA Security+
  • CISSP
    or equivalent
  • CrowdStrike Certifications
    : CCFA, CCSE (or equivalent experience)
  • Additional security certifications are a plus

Nice to Have

  • Hands-on experience with
    CrowdStrike Falcon (EDR/XDR)
  • Cloud security experience (AWS, Azure, GCP)
  • Experience in
    enterprise SOC or MSSP environments
  • Exposure to DevSecOps and security-as-code
  • Experience leading or contributing to security architecture projects

What We Offer

  • Competitive salary and benefits
  • Opportunity to work on
    enterprise-scale security projects
  • Direct involvement in
    CSIRT operations and strategic security initiatives
  • Career growth, training, and certification support
  • Collaborative, security-first culture


  • São Paulo, São Paulo, Brasil Shield Consulting Tempo inteiro

    Position OverviewIn partnership with AgileBlue, Shield Consulting is seeking aCybersecurity Account Managerto act as a trusted advisor and dedicated point of contact for our customers' leadership teams. This role is key to ensuring strong client relationships, seamless onboarding, proactive communication, and strategic alignment between Shield Consulting's...


  • São Paulo, São Paulo, Brasil Palo Alto Networks Tempo inteiro

    Our MissionAt Palo Alto Networks everything starts and ends with our mission:Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we're looking for...


  • São Paulo, São Paulo, Brasil Palo Alto Networks Tempo inteiro

    Company Description Our MissionAt Palo Alto Networks everything starts and ends with our mission:Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and...

  • IS Specialist

    Há 2 dias


    São Paulo, São Paulo, Brasil Expeditors Tempo inteiro

    We're not in the shipping business; we're in the information business" -Peter Rose, Expeditors FounderGlobal supply chain management is what we do, but at the heart of Expeditors you will find professionalism, leadership, and a friendly environment, all of which foster an innovative, customer service-based approach to logistics.15,000 trained...


  • São Paulo, São Paulo, Brasil CloudWalk Tempo inteiro

    At CloudWalk, operational excellence is key to building a trusted and scalable financial ecosystem.  As an Operational Risk Specialist, you'll join a high-performing team driving the evolution of our Operational Risk Management Framework in full compliance with BACEN regulations — including Res. BCB nº 265/2022, Res. CMN nº 4.557/2017, and related...


  • São Paulo, São Paulo, Brasil CloudWalk, Inc. Tempo inteiro

    At CloudWalk, operational excellence is key to building a trusted and scalable financial ecosystem.As an Operational Risk Specialist, you'll join a high-performing team driving the evolution of our Operational Risk Management Framework in full compliance with BACEN regulations — including Res. BCB nº 265/2022, Res. CMN nº 4.557/2017 , and related...

  • Data Management

    Há 15 horas


    São Paulo, São Paulo, Brasil vaga para Data Management & Privacy Specialist na Exadel Tempo inteiro

    Why Join ExadelWe're an AI-first global tech company with 25+ years of engineering leadership, 2,000+ team members, and 500+ active projects powering Fortune 500 clients, including HBO, Microsoft, Google, and Starbucks.From AI platforms to digital transformation, we partner with enterprise leaders to build what's next. What powers it all? Our people are...


  • São Paulo, São Paulo, Brasil BANCO ABC BRASIL Tempo inteiro

    Great oportunity for a Specialist Auditor, with responsabilities to lead and deliver complex audit engagements focusing on our information technology, cybersecurity and data governance frameworks. Also, you will act as a strategic advisor to Senior Management contributing to maintain a stable internal control framework (including adherence to regulatory and...

  • Regional Account Executive

    2 semanas atrás


    São Paulo, São Paulo, Brasil KnowBe4 Tempo inteiro

    About KnowBe4Join the cybersecurity company that puts security first; literally and without compromise. At KnowBe4, our AI-driven Human Risk Management platform empowers over 70,000 organizations worldwide to strengthen their security culture and transform their workforce from their biggest vulnerability into their strongest security asset. As the undisputed...


  • São Paulo, São Paulo, Brasil CloudWalk Tempo inteiro

    About CloudWalk: We are not just another fintech unicorn. We are a pack of dreamers, makers, and tech enthusiasts building the future of payments. With millions of happy customers and a hunger for innovation, we're now expanding our neural network - literally and metaphorically. Compliance at CloudWalk is a strategic, multidisciplinary team that connects...