
Offensive Security and Detection
Posted 4 days ago

Posted 4 days ago
This is a fully remote position, open to applicants in Brazil.
• Perform adversary simulations and engage in offensive security exercises utilizing the MITRE ATT&CK framework.
• Strategically plan and carry out controlled attack scenarios.
• Assess the effectiveness of prevention, protection, and monitoring mechanisms.
• Identify security vulnerabilities through offensive exercises.
• Execute detection engineering by developing use cases, rules, alerts, and monitoring systems.
• Confirm the detection of utilized techniques and produce evidence of control coverage.
• Collaborate effectively with Cyber Defense, Application Security, and other technical teams.
• Prioritize remediation suggestions based on detected attack pathways and associated risks.
• Document scenarios, techniques, outcomes, gaps, and recommendations thoroughly.
• Assist in security incident investigations.
• Facilitate the automation of routines, tests, validations, and detection and response workflows.
• Contribute to the enhancement of ROIT’s Cybersecurity maturity.
• Hands-on experience in offensive security, as well as Purple Team or Red Team operations.
• Practical understanding of the MITRE ATT&CK framework.
• Experience in simulating adversary techniques and behaviors.
• Familiarity with detection engineering, including rule creation, use cases, and alerts.
• Competence in assessing whether existing controls effectively detect attack techniques.
• Knowledge of SOC, SIEM, EDR/XDR, and security monitoring principles.
• Ability to analyze technical evidence and convert it into recommendations for improvement.
• Understanding of operating systems, networks, applications, and foundational security concepts.
• Experience with automation and scripting for security-related routines.
• Strong skills in technical documentation and communication.
• An analytical and investigative mindset, driven by evidence.
• Experience in environments with Purple Team operations.
• Background in developing and fine-tuning detection rules.
• Familiarity with SIEM, EDR/XDR, and security platforms.
• Experience with automation using Python, PowerShell, Bash, or similar technologies.
• Knowledge of Cybersecurity frameworks and industry best practices.
• Experience in incident investigation and response.
• Relevant certifications in offensive security, defense, or detection.
• Competitive salary and performance-based incentives.
• Comprehensive health, dental, and vision insurance.
• Opportunities for professional development and training.
• Flexible work hours and remote work options.
• A collaborative and innovative work environment.
EXL
Reli Group
Second Nature
ASRC Federal
Get handpicked remote jobs straight to your inbox weekly.