
Security/SecOps Analyst – SIEM/Sentinel
Posted 18 hours ago

Posted 18 hours ago
This is a fully remote position, open to applicants in Brazil.
• Design, oversee, and manage a hybrid Log Analytics Workspace environment, ensuring the PCI environment remains strictly isolated through detailed RBAC.
• Convert audit requirements into actionable use cases within Microsoft Sentinel.
• Generate automated reports using Workbooks.
• Ensure the retention and integrity of logs.
• Develop and sustain intricate playbooks within Azure Logic Apps.
• Utilize APIs for autonomous response measures, such as machine isolation and account suspension.
• Establish version detection rules, playbooks, and infrastructure (IaC) that are integrated with CI/CD pipeline tools.
• Spearhead monthly threat-hunting initiatives utilizing cross-workspace queries with advanced KQL.
• Set up connectors for multiple vendors.
• Enhance ingestion and retention costs in Azure.
• A Bachelor's degree in Information Technology or a relevant postgraduate qualification in Information Security.
• Extensive experience with Microsoft Sentinel (SIEM/SOAR) architecture and administration, along with Azure Log Analytics.
• Advanced expertise in KQL (Kusto Query Language) for complex and cross-workspace rules.
• Hands-on knowledge of PCI DSS compliance as it pertains to security monitoring.
• Experience with Infrastructure as Code (IaC) and advanced automation workflows, including API utilization and orchestration.
• Preferred: Official Microsoft Security certifications (e.g., SC-200 or SC-100).
• Preferred: Proficiency in tactical mapping using MITRE ATT&CK within the financial services/acquiring sector.
• Preferred: Practical understanding of Microsoft’s ASIM normalization model.
• Preferred: Experience with FinOps practices for optimizing cloud costs.
• Profit-sharing bonus (PLR).
• Health insurance.
• Dental insurance.
• Comprehensive benefits package, including meal and food allowances, among others.
• Transportation allowance.
• TotalPass.
• Day off (your day, your way).
• Sesc partnership.
• Extended maternity and paternity leave.
• Mental health platform (therapy).
• Highly skilled technical team.
• Minimal bureaucracy and significant impact.
• Freedom with accountability.
• Commitment to diversity, respect, and creativity.
• Opportunities for growth and involvement in strategic technical decisions.
• Regular happy hours.
• Relaxation and social space available.
• A wide variety of food and beverages provided daily, with no limits.
• Regular feedback sessions.
• A collaborative environment that respects diversity, reduces bureaucracy, and consistently fosters creativity and professional development.
Axians Somnitec AG
ASAAS
Motive
Reinsurance Group of America, Incorporated
Get handpicked remote jobs straight to your inbox weekly.