Offensive Security and Detection

Posted 4 days ago

This is a fully remote position, open to applicants in Brazil.

📋 Description

• Perform adversary simulations and engage in offensive security exercises utilizing the MITRE ATT&CK framework.

• Strategically plan and carry out controlled attack scenarios.

• Assess the effectiveness of prevention, protection, and monitoring mechanisms.

• Identify security vulnerabilities through offensive exercises.

• Execute detection engineering by developing use cases, rules, alerts, and monitoring systems.

• Confirm the detection of utilized techniques and produce evidence of control coverage.

• Collaborate effectively with Cyber Defense, Application Security, and other technical teams.

• Prioritize remediation suggestions based on detected attack pathways and associated risks.

• Document scenarios, techniques, outcomes, gaps, and recommendations thoroughly.

• Assist in security incident investigations.

• Facilitate the automation of routines, tests, validations, and detection and response workflows.

• Contribute to the enhancement of ROIT’s Cybersecurity maturity.


⛳️ Requirements

• Hands-on experience in offensive security, as well as Purple Team or Red Team operations.

• Practical understanding of the MITRE ATT&CK framework.

• Experience in simulating adversary techniques and behaviors.

• Familiarity with detection engineering, including rule creation, use cases, and alerts.

• Competence in assessing whether existing controls effectively detect attack techniques.

• Knowledge of SOC, SIEM, EDR/XDR, and security monitoring principles.

• Ability to analyze technical evidence and convert it into recommendations for improvement.

• Understanding of operating systems, networks, applications, and foundational security concepts.

• Experience with automation and scripting for security-related routines.

• Strong skills in technical documentation and communication.

• An analytical and investigative mindset, driven by evidence.

• Experience in environments with Purple Team operations.

• Background in developing and fine-tuning detection rules.

• Familiarity with SIEM, EDR/XDR, and security platforms.

• Experience with automation using Python, PowerShell, Bash, or similar technologies.

• Knowledge of Cybersecurity frameworks and industry best practices.

• Experience in incident investigation and response.

• Relevant certifications in offensive security, defense, or detection.


🏝️ Benefits

• Competitive salary and performance-based incentives.

• Comprehensive health, dental, and vision insurance.

• Opportunities for professional development and training.

• Flexible work hours and remote work options.

• A collaborative and innovative work environment.

People also viewed

EXL2 days ago

AVP, Cyber Application Security Architect

US flagNew Jersey OnlyFull-timeCybersecurity / Security Engineer$160k – $195.1k/year
ApplyView job
Reli Group2 days ago

Senior Cybersecurity Disaster Recovery, Contingency Planning SME

US flagMaryland OnlyFull-timeCybersecurity / Security Engineer$140k – $150k/year
ApplyView job
Second Nature2 days ago

Cloud Specialist – Security SSR

AR flagArgentina OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
ASRC Federal2 days ago

Information Security Engineer

US flagVirginia OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Kyndryl2 days ago

Lead, Application Consulting – Workday Security

US flagIllinois, +1 more stateFull-timeCybersecurity / Security Engineer$92k – $174.8k/year
ApplyView job
HomeServe USA2 days ago

Senior Cybersecurity Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$114.5k – $167.9k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers