Offensive Security and Detection

Job not on LinkedIn

🔥 3 hours ago

🇧🇷 Brazil – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 25%

infoinfo

🗣️🇧🇷🇵🇹 Portuguese Required

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of ROIT

ROIT

51 - 200 employees

Founded 2016

💼 Consulting

⚖️ Legal

☁️ SaaS

Consulting • Legal • SaaS

ROIT is a Brazilian tax-technology company that provides an integrated ecosystem of SaaS solutions and AI-powered tools to help medium and large companies prepare for and manage the 2026 tax reform. Its offerings include an official tax-reform calculator that reprocesses SPED files and invoices, an Invoice-to-Pay automation suite (with ERP/SAP integrations), Tax Discovery for reclaiming taxes, regulatory consulting and education programs, and ongoing support for compliance and scenario planning.

📋 Description

• Conduct adversary simulations and offensive security exercises using MITRE ATT&CK • Plan and execute controlled attack scenarios • Validate the effectiveness of prevention, protection, and monitoring controls • Identify security gaps based on offensive exercises • Perform detection engineering by creating use cases, rules, alerts, and monitoring mechanisms • Validate the detection of the techniques used and generate evidence of control coverage • Collaborate with Cyber Defense, Application Security, and other technical teams • Prioritize remediation recommendations based on identified attack paths and risks • Document scenarios, techniques, results, gaps, and recommendations • Support security incident investigations • Support the automation of routines, tests, validations, and detection and response processes • Contribute to the advancement of ROIT’s Cybersecurity maturity

🎯 Requirements

• Hands-on experience in offensive security, Purple Team, or Red Team operations • Applied knowledge of the MITRE ATT&CK framework • Experience simulating adversary techniques and behaviors • Knowledge of detection engineering, including the creation of rules, use cases, and alerts • Ability to assess whether an attack technique is effectively detected by existing controls • Knowledge of SOC, SIEM, EDR/XDR, and security monitoring concepts • Ability to interpret technical evidence and translate it into improvement recommendations • Knowledge of operating systems, networks, applications, and security fundamentals • Familiarity with automation and scripting for security routines • Strong technical documentation and communication skills • Analytical, investigative, and evidence-driven mindset • Experience in environments with Purple Team operations • Experience developing and tuning detection rules • Knowledge of SIEM, EDR/XDR, and security platforms • Experience with automation using Python, PowerShell, Bash, or similar technologies • Knowledge of Cybersecurity frameworks and best practices • Experience with incident investigation and response • Certifications related to offensive security, defense, or detection

Apply Now

Similar Jobs

🔥 22 hours ago

NinjaOne

1001 - 5000

☁️ SaaS

🔒 Cybersecurity

🤝 B2B

Application Security Architect securing NinjaOne’s endpoint management platform across Brazil, Colombia, Ecuador, and Mexico. Leading threat modeling, secure architecture reviews, and software security initiatives.

AWS

Cloud

Java

Kotlin

Linux

C++

🕒 2 days ago

MTP Brasil

501 - 1000

💼 Consulting

🛡️ Insurance

📦 Logistics

Banco de talentos para profissionais de Cyber Security, AppSec e Segurança da Informação na MTP. Atuação em projetos de transformação digital, de funções técnicas a liderança.

🗣️🇧🇷🇵🇹 Portuguese Required

Cloud

Cyber Security

Kubernetes

SDLC

Splunk

🕒 2 days ago

Kyndryl

10,000+ employees

💼 Consulting

📦 Logistics

🏥 Healthcare

Cybersecurity Auditor leading risk-based IT audits and control testing for Kyndryl’s mission-critical technology systems. Reviewing cybersecurity risks, reporting control effectiveness, and leading IT audit teams remotely in Brazil.

Cloud

Cyber Security

SDLC

🕒 2 days ago

Kyndryl

10,000+ employees

💼 Consulting

📦 Logistics

🏥 Healthcare

Remote Cybersecurity Auditor conducting risk-based IT control audits for Kyndryl’s mission-critical technology services. Leading audit teams, testing controls, and reporting cybersecurity risks.

Cloud

Cyber Security

SDLC

🕒 2 days ago

DOMVS iT

51 - 200

💼 Consulting

🏥 Healthcare

🏢 Enterprise

Engenheiro sênior de segurança da informação definindo guardrails e práticas secure-by-design. Protegendo desenvolvimento de software e produtos de IA da DOMVS iT contra vulnerabilidades e ataques emergentes.

🗣️🇧🇷🇵🇹 Portuguese Required

Open Source