
Mid-level Information Security Analyst – Vulnerability and Identity Management
Posted Jul 1

Posted Jul 1
This is a fully remote position, open to applicants anywhere in the world.
• Implement the Vulnerability Management lifecycle: assess scan results, prioritize based on risk, and coordinate and monitor remediation with relevant teams (Infrastructure, Systems, etc.).
• Maintain, enhance, and update operational indicators and remediation workbooks (agent coverage, severity, monitoring of remediation SLAs).
• Manage Identity and Access Management (IAM) processes: provisioning, deprovisioning, privilege assignments, periodic access reviews, and support for MFA mechanisms.
• Actively assist in corporate access review campaigns and the validation of segregation of duties (SoD).
• Monitor, categorize, and investigate alerts generated by the security tools within your domain.
• Conduct initial triage and analysis of security incidents, escalating to a Specialist when required.
• Generate periodic operational reports and security metrics for your area of responsibility.
• Prepare and maintain technical documentation and Standard Operating Procedures (SOPs) in current status.
• Professional experience in Information Security, Infrastructure, Systems Administration, or related fields with a focus on security.
• Practical experience with Vulnerability Management processes and the utilization of market scanning tools (Qualys, Tenable, Rapid7, or equivalents).
• Strong knowledge of Active Directory, IAM, SSO, and MFA solutions.
• Hands-on experience in monitoring and triaging alerts on SIEM platforms.
• Understanding of TCP/IP networking, segmentation, and communication protocols.
• Basic administration knowledge of both Windows and Linux environments.
• Demonstrated technical analysis skills and a commitment to documenting activities.
• Excellent analytical skills with meticulous attention to detail.
• Strong organizational skills, discipline, and focus on executing standardized processes.
• Effective communication skills for daily interactions with technical teams and business areas.
• A sense of responsibility and a passion for continuous learning.
• Preferred/Additional:
• Specific experience with Wazuh, Elastic Stack (ELK), or other open-source SIEM platforms.
• Familiarity with the ISO/IEC 27001 and CIS Controls frameworks.
• Understanding of LGPD (Brazilian Data Protection Law) as it pertains to logs, identities, and personal data protection in security tools.
• Basic scripting skills (PowerShell, Bash, or Python) for automating routine tasks.
• Entry-level certifications in Information Security (e.g., Security+, CySA+, Microsoft SC-900/SC-300).
• Life insurance
• Health and dental plans
• Access to the Portobello Corporate University platform
• Profit Sharing (PPR)
• Discounts at local pharmacies
• Private pension plan
• Union membership
• Discount network — partnerships with various educational institutions
• Discounts on Portobello product purchases
• Vacation bonus
• "Portobello Mom" allowance — for purchasing a baby layette
• Daycare allowance
• Assistance for dependents with disabilities
• Professional training and development programs
• Wellhub and many more
Solo Network
Agile Defense
EMCOR Group, Inc.
ExtraHop
Get handpicked remote jobs straight to your inbox weekly.