Security Incident Response Specialist

Job not on LinkedIn

🔥 7 minutes ago

🗣️🇧🇷🇵🇹 Portuguese Required

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Cooperativa Central Ailos

Cooperativa Central Ailos

1001 - 5000 employees

Founded 2002

💸 Finance

👥 B2C

Finance • Cooperative • B2C

Cooperativa Central Ailos is a cooperative organization that focuses on providing accessible financial services to its members, ensuring inclusivity and support for various communities. The organization emphasizes user-friendly interfaces and high contrast accessibility features, catering to a diverse clientele.

📋 Description

• Take technical command of critical (P1) incidents, defining response strategy, prioritization, and business trade-offs. • Coordinate complex, multivector investigations covering endpoints, identity, email, cloud, network, and applications. • Perform or direct advanced forensic analyses, ensuring chain of custody and proper engagement with legal and privacy teams. • Design, evolve, and maintain the Incident Response capability, including processes, tools, integrations, metrics, and a readiness roadmap. • Mentor junior and mid-level professionals, lead tabletop exercises and crisis simulations, and represent the function to executives, auditors, and regulators. • Manage relationships with vendors and strategic partners (DFIR, CSIRT, Threat Intelligence), conducting POCs and technical evaluations as needed. • Define and maintain detection standards and conventions, including naming, severity, lookback windows, and cost/performance thresholds. • Plan and execute the detection roadmap aligned to key risks, threats, and organizational objectives (e.g., coverage of top TTPs). • Establish quality metrics and technical gates, such as minimum accuracy, mandatory testing, peer review, and promotion criteria for production. • Lead purple teaming initiatives, continuous validation of controls, and detection of emerging techniques; guide hypothesis-driven threat hunting. • Serve as the technical reference for detection code reviews, mentor the team, and represent the topic in technical committees and executive forums. • Evaluate tools, frameworks, and architectures for SIEM/XDR/NDR, conducting POCs and adopting detection-as-code at scale. • Define content standards, detection architecture, and coverage strategy based on MITRE ATT&CK. • Ensure operational quality through SLOs, effectiveness metrics, and advanced detection testing.

🎯 Requirements

• Proven experience in cyber Incident Response within complex corporate environments. • Strong background in Detection Engineering, SIEM/XDR/NDR, and practical use of the MITRE ATT&CK framework. • Advanced knowledge of investigations involving endpoints, identity, cloud, email, network, and applications. • Experience with forensic analysis, chain of custody, and interaction with legal and privacy teams. • Proven technical leadership, mentoring, and cross-functional influence. • Excellent technical communication skills, with the ability to operate during crises, audits, and committee meetings. • Preferred: Experience with detection-as-code (e.g., Sigma, KQL, SPL, Terraform, CI/CD pipelines). • Prior experience with purple teaming, structured threat hunting, and adversary simulations. • Familiarity with frameworks such as NIST CSF, NIST 800-61, ISO 27001/27002. • Experience working with DFIR, Threat Intelligence, and MSSP vendors. • Relevant certifications (e.g., GCED, GCIA, GCIH, GNFA, CISSP, or similar).

🏖️ Benefits

• Health insurance – valuable coverage when you need it. • Dental insurance – because we care about smiles. • Renascer Program – employee support and well‑being initiative. • Meaningful Dates – we celebrate important moments. • Education investment – we support your learning journey. • Results participation – we build together and share in the outcomes. • Individual Development Plan – we value your career ownership. • Private pension plan – supporting long‑term future planning. • Life insurance – an important benefit. • Time Together – recognition for team engagement and in‑person participation. • Meal and/or grocery allowance. • Transportation allowance – no deductions. • Childcare / babysitting assistance – because your child deserves a safe, welcoming place.

Apply Now

Similar Jobs

🔥 4 hours ago

Spassu

1001 - 5000

☁️ SaaS

Cloud Engineer responsible for implementing and managing cloud security and infrastructure projects at Spassu. Collaborating with technical teams to ensure best practices in cloud deployment and security measures.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Azure

Cloud

🕒 Yesterday

Jusbrasil

201 - 500

Security Engineer Partner ensuring secure product development for B2B at Jusbrasil. Integrating closely with development teams and implementing proactive security measures.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Azure

Cloud

Google Cloud Platform

GRPC

🕒 Yesterday

Kyndryl

10,000+ employees

🏢 Enterprise

🔒 Cybersecurity

☁️ SaaS

Auditing cybersecurity and IT controls for global organizations. Conduct risk assessments and prepare reports on security compliance issues.

Cyber Security

🕒 4 days ago

Digibee

51 - 200

☁️ SaaS

🔌 API

🏢 Enterprise

Business Information Security Officer at Digibee acting as a bridge between security, engineering, and product teams. Translate security risks into business-aligned decisions while driving a risk-informed culture.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Azure

Cloud

Cyber Security

Google Cloud Platform

Kubernetes

Microservices

SDLC

🕒 4 days ago

Capco

1001 - 5000

💸 Finance

⚡ Energy

Técnico de Segurança do Trabalho specializing in safety management in oil & gas. Conducting training, audits, and technical assessments for safety compliance.

🗣️🇧🇷🇵🇹 Portuguese Required