Brazil
4 weeks ago

Job Overview

Job Type
Full Time
Pay
Not disclosed

Job description

Ensure the continuity, security and evolution of the information technology infrastructure, ensuring that physical and logical resources are always available, updated and aligned with the organization's operational needs, through efficient, preventive and innovative management.

Develop and apply hardening policies on operating systems, servers and network devices;

Configure and manage endpoint protection solutions, including antivirus, EDR (Endpoint Detection and Response), XDR (Extended Detection and Response) and device control tools;

Apply patches and security updates to operating systems and applications installed on endpoints;

Perform periodic scans on devices to detect vulnerabilities and threats;

Monitor security events on endpoints to identify suspicious or anomalous activity;

Perform detailed analysis of logs and events to detect anomalous behavior on endpoints;

Document security incidents related to endpoints and propose technical mitigation recommendations;

Support forensic investigations of device incidents, documenting attack vectors and recommendations;

Develop and maintain incident response playbooks for scenarios such as ransomware, APTs and other advanced threats;

Perform incident simulation tests to validate and improve response processes;

Prepare and present detailed technical reports on incidents, including attack vectors, impacts and prevention recommendations;

Prepare and present materials about the endpoint environment, such as the current situation, relevant events, suggestions for improvement;

Develop and maintain incident response playbooks for scenarios such as ransomware, APTs and other advanced threats;

Perform incident simulation tests (tabletop exercises) to validate and improve response processes;

Monitor sources such as NVD, vendor alerts, and CVEs to identify new critical vulnerabilities;

Validate the effectiveness of fixes in controlled environments before application in production;

Assess the impact of vulnerabilities from the perspective of standards such as LGPD, ABNT NBR ISO/IEC 27001 and other applicable standards and regulations;

Configure and manage network segmentation policies (VLANs, security zones, DMZs) to minimize attack surfaces;

Implement and optimize Network Detection and Response (NDR) solutions to detect anomalies in internal and external traffic;

Configure and manage Identity and Access Management (IAM) solutions with role-based policies (RBAC) and attributes (ABAC);

Knowledge of operating Windows and Linux operating systems;

Implement and optimize Privileged Access Management (PAM) systems, with automatic password rotation and secure vaults;

Design and execute multi-factor authentication (MFA) flows integrated into critical systems;

Manage user life cycles (provisioning and deprovisioning), ensuring adherence to Policies;

Carry out periodic audits of permissions, identifying excesses and adjusting PAM Policies;

Monitor privileged account logs to detect anomalous behavior.

EDUCATION

  • Bachelor's degree in Information Technology (IT), Computer Science, Information Systems or similar.

PROFESSIONAL EXPERIENCE
Experience in information security. The experience must be demonstrated through a Legal Entity contract or Work Card, which must include a start and end date for the activity.
CERTIFICATIONS/COURSES/TRAINING

  • Official ITIL 4 Foundation certification or higher.
  • Advanced or professional or expert certification or equivalent of the Endpoint protection tool

Certification

  • ECSA (EC-Council Certified Security Analyst) or
  • CySA+ (CompTIA Cybersecurity Analyst) or
  • ECIH (EC-Council Certified Incident Handler) or
  • CSIH (Certified Specialist Incident Handler).

Additional Information

Benefits

Hapvida, Bradesco Saúde or Unimed health plan (according to location availability);

Hapvida Odonto or Bradesco dental plan;

Food Voucher or Alelo Meal

Life insurance 100% funded by Lanlink;

Transport voucher;

Pharmacy agreement;

College agreement;

TotalPass;

Internal education platform;

Moodar Platform (Platform for Therapy)

Originally posted on Himalayas

Role:
Error 500 (Server Error)!!1500.That’s an error.There was an error. Please try again later.That’s all we know.
Job Type:
Full Time

More jobs at Lanlink

Similar Security Engineer jobs at other companies