
5001 - 10000 employees
Founded 1965
📚 Education
👥 B2C
Education • B2C
Cruzeiro do Sul Educacional S/A is a large Brazilian private education group with about 60 years of history that offers education from basic schooling through higher education, delivered both in-person and via distance learning. The company serves hundreds of thousands of students across multiple branded institutions, emphasizes student autonomy and protagonism, invests in pedagogical innovation and methodology development, and operates one of the largest distance-education networks in Brazil. It also engages in investor relations and ESG, employing thousands of faculty and staff to support its educational programs.
🕒 July 15
🗣️🇧🇷🇵🇹 Portuguese Required
Improve your chances of getting an interview by checking your resume score before you apply.

5001 - 10000 employees
Founded 1965
📚 Education
👥 B2C
Education • B2C
Cruzeiro do Sul Educacional S/A is a large Brazilian private education group with about 60 years of history that offers education from basic schooling through higher education, delivered both in-person and via distance learning. The company serves hundreds of thousands of students across multiple branded institutions, emphasizes student autonomy and protagonism, invests in pedagogical innovation and methodology development, and operates one of the largest distance-education networks in Brazil. It also engages in investor relations and ESG, employing thousands of faculty and staff to support its educational programs.
• Execute and improve monitoring, detection, and response activities for cybersecurity incidents. • Continuously monitor networks, endpoints, applications, and critical assets, identifying anomalies and threats to information security. • Detect and analyze attack attempts, suspicious behavior, exploitable vulnerabilities, malicious actions, and data leakage events. • Triage, classify, and escalate security alerts according to criticality and business impact. • Lead and support incident response processes from initial identification through containment, eradication, and recovery. • Participate in cyber exercises, red/blue team simulations, and Capture the Flag (CTF) events with internal teams and external partners. • Prepare technical and executive post-incident (post-mortem) reports, including root cause analysis and remediation recommendations. • Perform proactive threat hunting based on hypotheses and threat intelligence (CTI/OSINT) to anticipate attack vectors before they materialize. • Work with CTI and OSINT platforms and security ecosystem partners to collect and analyze indicators of compromise (IOCs). • Monitor trends in cyber threats, critical vulnerabilities (CVEs), and TTPs mapped to the MITRE ATT&CK framework. • Operate, configure, and maintain security solutions: SIEM, EDR/XDR, Firewalls, WAF, IDS/IPS, and Proxy. • Contribute to the creation and tuning of detection rules, correlations, and alerts to reduce false positives under technical supervision. • Perform cyber hygiene activities: configuration checks, patching/updates, and hardening of systems and services. • Develop and review documentation, playbooks, runbooks, operational procedures, and cybersecurity standards. • Support continuous improvement initiatives for the security program, promoting the evolution of SOC and CSIRT maturity.
• Knowledge of key frameworks: MITRE ATT&CK, NIST CSF, CIS Controls, ISO 27001/27002, and the Cyber Kill Chain. • Familiarity with vulnerability management and incident response processes. • SIEM (primary): hands-on experience with at least one market solution (Google SecOps, Splunk, Microsoft Sentinel, IBM QRadar, Elastic SIEM, or similar). • EDR / XDR: experience with SentinelOne, Microsoft Defender, Cortex XDR (Palo Alto), and Bitdefender Endpoint Protector. • Perimeter security: Fortinet firewalls, NGFW, F5 Big-IP WAF, IDS/IPS, Proxy, Zero Trust architectures, and CDNs (AKAMAI). • SOAR: experience with automating playbooks and orchestration of incident responses. • Strong knowledge of TCP/IP networks, protocols (DNS, HTTP/S, SMB, LDAP, etc.), traffic analysis tools (Wireshark, tcpdump), and environment segmentation. • Experience securing Windows and Linux operating systems, including hardening and log analysis. • AWS: familiarity with security services such as AWS Security Hub, Amazon GuardDuty, AWS IAM, AWS CloudTrail, and Amazon Inspector. • GCP: experience with security architecture, Cloud Armor, Security Command Center, IAM, and access policy management. • Azure: knowledge of Microsoft Defender for Cloud, Sentinel, and identity controls (Entra ID / MFA). • Desired: Python or Shell scripting for task automation and detection support scripts. • Desired: Basic knowledge of malware analysis and digital forensics. • Desired: Knowledge of LGPD (Brazilian General Data Protection Law) in the context of incidents affecting personal data. • Education: Bachelor's degree in Cybersecurity / Information Security or a Technology degree with a specialization in Security. • Certifications: CompTIA, CySA+, CompTIA Security+, CEH, GMON, or other relevant certifications are a plus.
• Medical and Dental coverage. • Meal allowance (Meal voucher). • Total Pass (commuting benefit). • Full scholarship for undergraduate or postgraduate studies. • Life insurance. • Birthday day off.
Apply Now🕒 July 14
Senior Information Security Analyst in a remote Computer Security Incident Response Team. Leading incident response and threat containment activities for Votorantim's Excellence Center.
🗣️🇧🇷🇵🇹 Portuguese Required
🕒 July 8
Information Security Analyst III focusing on Cyber Risk Management. Engage in risk identification, tracking, and regulatory compliance for Central Ailos.
🗣️🇧🇷🇵🇹 Portuguese Required
🕒 July 8
Red Team activities for a cybersecurity specialist at Central Ailos. Focus on security, collaboration, and extensive opportunity in a cooperative financial environment.
🗣️🇧🇷🇵🇹 Portuguese Required
🕒 July 8
Information Security Analyst focusing on Offensive Security techniques at Central Ailos. Engaging in pentests and security evaluations across various platforms and environments.
🗣️🇧🇷🇵🇹 Portuguese Required
🕒 July 8
Information Security Analyst evaluating vulnerabilities in applications and APIs. Supporting squads in secure development and continuous improvement of security practices.
🗣️🇧🇷🇵🇹 Portuguese Required