
Senior Security Analyst – SOC
Posted 22 hours ago

Posted 22 hours ago
This is a fully remote position, open to applicants in Brazil.
• Engage in operations within the Security Operations Center (SOC)
• Monitor and evaluate security alerts, events, and incidents
• Execute incident triage, investigation, classification, and remediation
• Analyze logs and correlate events from various sources and assets
• Detect anomalous behavior, threats, attack attempts, and potential compromises within the environment
• Assist in the containment, mitigation, eradication, and recovery of security incidents
• Conduct root cause analysis and aid in defining preventive measures
• Observe and assess events concerning network and security infrastructure
• Utilize SIEM tools and other solutions for environmental monitoring and protection
• Support the analysis of events from firewalls, IDS/IPS, endpoints, servers, network devices, and other security sources
• Collaborate with Network, Infrastructure, and other technical teams to investigate and resolve incidents
• Aid in the development and continuous improvement of incident response procedures, playbooks, and processes
• Contribute to the ongoing enhancement of monitoring, correlation, and threat detection rules
• Prepare records, evidence, technical reports, and documentation pertaining to incidents and SOC activities
• Support initiatives aimed at enhancing the security posture of corporate environments
• Professional experience in Cybersecurity, Information Security, and/or SOC operations
• Experience in security incident monitoring, investigation, and response
• Familiarity with SIEM tools and log and event analysis
• Understanding of network security concepts and technologies
• Strong knowledge of TCP/IP, DNS, HTTP/HTTPS, VPNs, firewalls, and network protocols
• Awareness of controls and tools for threat protection, detection, and monitoring
• Ability to correlate events and recognize suspicious or anomalous behavior
• Experience in investigating and analyzing incidents in corporate environments
• Knowledge of security incident management and response processes
• Skills in technical analysis, troubleshooting, and root cause identification
• Proficiency in English for working in a technical environment and utilizing industry documentation
• Familiarity with MITRE ATT&CK and techniques for threat detection and investigation
• Knowledge of Information Security frameworks and best practices, such as NIST and CIS Controls
• Experience with EDR/XDR, IDS/IPS, NDR, and other detection and response solutions
• Understanding of security in Cloud environments
• Experience with Threat Intelligence and Threat Hunting processes
• Knowledge of vulnerability management
• Cybersecurity, SOC, or Network Security certifications are an advantage
• Investigative and analytical mindset
• Ability to identify and correlate technical information
• Critical thinking and problem-solving orientation
• Flexibility in analyzing and managing incidents
• Proactive and autonomous
• Strong communication skills and capacity to collaborate with various technical teams
• Excellent organization and attention to detail
• Commitment to security, confidentiality, and the quality of deliverables
• Commitment: Full-time
• Work arrangement: Remote
Axians Somnitec AG
Mercury Insurance
CCM Tecnologia
Palo Alto Networks
Get handpicked remote jobs straight to your inbox weekly.