Tier 2 Cyber Defense Analyst – Incident Analysis

🔥 13 hours ago

🇧🇷 Brazil – Remote

⏰ Full Time

🟢 Junior

🟡 Mid-level

🧐 Analyst

🚫👨‍🎓 No degree required

👻 Ghost score 10%

infoinfo

🗣️🇧🇷🇵🇹 Portuguese Required

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Vision Cybersecurity

Vision Cybersecurity

501 - 1000 employees

🔒 Cybersecurity

Cybersecurity

Vision Cybersecurity is a cybersecurity-focused company. The available information is mostly website/CSS fragments and Portuguese UI text (e. g. , 'Siga nossas redes sociais', 'Ouça o Podcast Safetalks'), which indicates the company maintains an online presence and produces content such as a podcast. There are no explicit details about specific products, services, customers, or company size in the provided text. Based on the name and the content, the primary focus is cybersecurity.

📋 Description

• Process, analyze, and manage cybersecurity requests, incidents, problems, and tasks • Perform advanced analysis of events and alerts from SIEM, EDR, firewalls, IDS/IPS, proxy, Active Directory, and other telemetry sources • Correlate events to identify malicious behavior • Investigate incidents, including IOCs, TTPs, lateral movement, privilege escalation, persistence, and potential data exfiltration • Participate in crisis rooms (war rooms) for high-severity incidents • Contribute to the containment, eradication, mitigation, and recovery of compromised environments • Analyze firewall logs, blocks, suspicious sessions, C2 communications, exploitation attempts, lateral movement, and exfiltration • Support DFIR operations by preserving and collecting evidence • Prepare technical and executive incident reports • Maintain technical and formal communication with clients and internal teams during incidents • Conduct proactive threat hunting • Develop, review, and update playbooks, runbooks, procedures, knowledge bases, and response workflows • Support the evolution of detection use cases, correlation rules, and response automations • Contribute to KPIs such as MTTD, MTTA, MTTR, false-positive rate, and operational efficiency • Perform advanced incident triage, classification, prioritization, and escalation • Execute immediate containment, including host isolation, IOC blocking, and revocation of compromised credentials • Conduct EDR, firewall, and SIEM investigations without direct supervision in medium- and high-complexity scenarios • Request emergency blocks in security controls • Propose improvements to detection rules, playbooks, processes, and cyber defense policies • Provide technical support to the Tier 1 team for complex escalations • Validate indicators of compromise and recommend engaging specialized teams • Participate in technical decision-making during critical incidents

🎯 Requirements

• A bachelor’s degree in Information Technology or another field is preferred • At least 2 years of proven experience in information security operations, maintenance, and support • Knowledge of information security, computer networks, and IT infrastructure • Experience with or knowledge of security event triage and analysis, monitoring, and threat and attack detection using tools such as SIEM is preferred • Knowledge of CIS, MITRE ATT&CK, NIST, and ISO 27001 • Ability to create and update security procedures, processes, and documentation • Knowledge of authentication, authorization, and cryptography is preferred • Experience with or knowledge of identity and access management, Azure AD, firewalls, IDS/IPS, and VPNs • Intermediate English proficiency for technical communication and documentation • Strong communication skills for interacting with clients, internal teams, and partners • Ability to work with DDoS mitigation solutions • Knowledge of SSL, TLS, and HTTPS

🏖️ Benefits

• Bradesco Top Nacional health insurance • Odontoprev dental insurance • Life insurance • Pipo Saúde • TotalPass • Public transportation allowance • Alelo Tudo: meal and food benefits on a single card • Private pension plan with a 2:1 employer matching contribution • Birthday day off • Employee referral program • Discounts at educational institutions • Vision Baby Kit • Exclusive discounts through the SESC group • Welcome kit • Morning and afternoon coffee with fruit on in-office days • DeepLearning: Corporate University • Professional growth opportunities • Feedback and development culture • Exclusive leadership program • Relaxed and innovative environment • Accessible leadership

Apply Now

Similar Jobs

🔥 13 hours ago

Cogna Educação

10,000+ employees

📚 Education

👥 B2C

🛍️ eCommerce

Analista de Avaliação na Cogna, empresa brasileira de soluções educacionais. Desenvolvendo dashboards, indicadores e automações para ENADE, Censo e avaliações institucionais.

🗣️🇧🇷🇵🇹 Portuguese Required

🕒 Yesterday

Grupo Boticário

10,000+ employees

🏭 Manufacturing

🍽️ Food & Beverage

💄 Beauty

Analista de RGM operacionalizando campanhas promocionais no Grupo Boticário. Validando regras, cadastros e processos para otimizar o ecossistema brasileiro de beleza.

🗣️🇧🇷🇵🇹 Portuguese Required

🕒 2 days ago

Konecta

10,000+ employees

📣 Marketing

📦 Logistics

🏥 Healthcare

Analista MIS remoto criando painéis de alto impacto e insights estratégicos para a Konecta. Garantia da qualidade dos dados e data storytelling para executivos.

🇧🇷 Brazil – Remote

💵 R$5.7k / month

💰 $78.7M Debt Financing - Konecta on 2025-02

⏰ Full Time

🟢 Junior

🧐 Analyst

🚫👨‍🎓 No degree required

🗣️🇧🇷🇵🇹 Portuguese Required

🕒 2 days ago

Cogna Educação

10,000+ employees

📚 Education

👥 B2C

🛍️ eCommerce

Analista administrativo gerindo contratos de locação, facilities, pagamentos e KPIs na Cogna. Empresa de serviços educacionais com marcas e soluções para escolas, governos e estudantes.

🗣️🇧🇷🇵🇹 Portuguese Required

🕒 3 days ago

Método Engenharia

201 - 500

🏥 Healthcare

🏨 Hospitality

📦 Logistics

Analista de Arquitetura Jr. desenvolvendo projetos arquitetônicos no Revit para empresa de engenharia e construção. Atuando em compatibilização, viabilidade técnica e controle de revisões.

🗣️🇧🇷🇵🇹 Portuguese Required