
SOC Engineering Analyst N2 – Senior
Posted 13 hours ago

Posted 13 hours ago
This is a fully remote position, open to applicants in Brazil.
• Conduct comprehensive technical investigations of security incidents from start to finish.
• Implement response measures including containment, eradication, and recovery processes.
• Carry out forensic analyses on endpoints and network events at an intermediate to advanced level.
• Create and enhance incident response playbooks.
• Engage in proactive threat hunting informed by hypotheses and threat intelligence.
• Generate both technical and executive incident reports.
• Collaborate with teams focused on infrastructure, cloud services, and identity management.
• Develop and implement threat hunting strategies based on Tactics, Techniques, and Procedures (TTPs).
• Design and refine use cases and detection rules.
• Integrate and evaluate threat intelligence feeds.
• Assist in complex investigations and critical incident management.
• Create dashboards, advanced queries, and conduct behavioral analyses.
• Take part in Red/Purple Team exercises.
• Contribute to the technological advancement of the Security Operations Center (SOC).
• Completed Bachelor's degree.
• Proficiency with SIEM platforms such as Microsoft Sentinel, Splunk, or IBM QRadar.
• Experience with SIEM, including complex queries utilizing KQL and/or SPL.
• Background in EDR/XDR for incident investigation and response.
• Capability to analyze logs, endpoint telemetry, and network traffic (PCAP).
• Familiarity with the MITRE ATT&CK framework.
• Proficient in using traffic analysis tools such as Wireshark and Zeek.
• Experience with cloud environments, including Azure, AWS, and/or GCP.
• Intermediate knowledge of malware analysis techniques.
• Skills in automation and scripting, particularly with PowerShell and/or Python.
• Health insurance.
• Dental plan.
• iFood benefits.
• Wellhub.
• Commuter allowance (transportation voucher).
• Childcare assistance.
• Profit-sharing (PLR).
• Life insurance.
• Remote work model.
• Day off.
Valid
Ad Hoc LLC
Sigma Software Group
CloudWave, Healthcare IT Solutions
Get handpicked remote jobs straight to your inbox weekly.