
Security Analyst
Posted Jul 17

Posted Jul 17
This is a fully remote position, open to applicants in Brazil.
• Utilize leading industry tools to identify vulnerabilities in applications and infrastructure.
• Execute and oversee DAST, SAST, and software composition analysis (SCA) initiatives.
• Evaluate vulnerability scan outcomes, confirm findings, minimize false positives, and prioritize risks.
• Work closely with development teams to evaluate detected vulnerabilities and provide clear, actionable remediation guidance.
• Monitor vulnerabilities throughout the remediation process and confirm resolutions.
• Serve as a reliable AppSec advisor to engineering and product teams.
• Apply knowledge of OWASP Top 10 and prevalent web application and API attack techniques.
• Promote secure development practices, including threat modeling and design reviews.
• Contribute to secure coding standards, patterns, and best practices.
• Utilize AI-driven tools to enhance vulnerability analysis, expedite triage and reporting, and improve testing effectiveness.
• Identify chances to automate repetitive security processes and workflows.
• Lead and assist in the security testing of AI and LLM-powered features across the organization.
• Evaluate and test for risks associated with the OWASP Top 10 for LLM Applications.
• Assist in defining and implementing AI security testing strategies within the software development lifecycle (SDLC).
• Over 5 years of experience in Application Security, Product Security, or Vulnerability Management.
• Proficient with cloud platforms such as AWS, Azure, and OCI along with CSPM tools (WIZ).
• Extensive hands-on experience with DAST and SAST tools, as well as Web Application and API Security Testing.
• Comprehensive understanding of OWASP Top 10 and Secure SDLC principles.
• Exceptional documentation and communication skills, both verbal and written.
• Strong analytical problem-solving abilities and knowledge of application security architecture.
• Experience collaborating directly with software development teams on remediation efforts.
• Solid grasp of modern application architectures including REST APIs, microservices, and cloud environments.
• Familiarity with OWASP Top 10 for LLMs.
• Health insurance
• Paid time off
• Flexible work arrangements
• Professional development
Proficio
Compass
CyberSheath
Cresol Cooperativa
Get handpicked remote jobs straight to your inbox weekly.