Skip to content

Open nowPosted 73 days ago

Analista de Segurança da Informação Sr. (Blue Team / CSIRT)

Gupy (Portal de Vagas)74,621 open roles

Where
Sao Paulo, São Paulo, Brazil
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowAnalista de Segurança da Informação Sr. (Blue Team / CSIRT)Gupy (Portal de Vagas) · Sao Paulo, São Paulo, Brazil
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Gupy (Portal de Vagas)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 73 days ago

The posting

Quando você pensa em carreira, o que vem à sua mente? Propósito? Colaboração? Ser protagonista para fazer a diferença? No PagBank temos tudo isso e muito mais. 💛 Estamos em busca de pessoas que vistam a camisa com orgulho. Gente com vontade de facilitar a vida financeira das pessoas e impulsionar negócios! Tá a fim de uma carreira que rende mais? Confira essa oportunidade e #VemProPags!Responsabilidades e atribuiçõesAtuar na investigação e resposta a incidentes de segurança cibernética, conduzindo atividades de identificação, análise, contenção, erradicação, recuperação e lições aprendidas.Liderar tecnicamente a análise e tratativa de incidentes que impactem produtos bancários, plataformas digitais, APIs, identidades e serviços corporativos.Coordenar e acompanhar incidentes de segurança junto às equipes de Engenharia, Infraestrutura, Produtos e Arquitetura, garantindo o tratamento adequado das causas identificadas.Realizar análises de causa raiz (RCA), identificando vetores de ataque, falhas de controle e oportunidades de fortalecimento dos mecanismos de proteção.Investigar cenários envolvendo exploração de APIs, enumeração de contas, abuso de funcionalidades, comprometimento de credenciais, ataques contra identidades e movimentação lateral em ambientes corporativos.Apoiar investigações relacionadas a Active Directory, Entra ID, autenticação, autorização e controles de privilégio.Atuar em conjunto com equipes de Prevenção a Fraudes para determinar se eventos suspeitos possuem relação com falhas sistêmicas, vulnerabilidades exploradas ou comprometimento de contas.Apoiar o SOC na investigação de alertas complexos, incidentes críticos e eventos de segurança de alta severidade.Desenvolver, revisar e evoluir playbooks, runbooks e procedimentos de resposta a incidentes.Produzir relatórios técnicos e executivos contendo análise dos incidentes, impactos, riscos identificados e recomendações de melhoria.Participar de exercícios de crise cibernética e iniciativas voltadas ao fortalecimento da capacidade de detecção e resposta da organização.Requisitos e qualificaçõesEnsino Superior completo em tecnologia da informação ou áreas correlatas.Experiência com Blue Team, CSIRT, SOC ou Cyber Defense.Vivência em investigação e resposta a incidentes de segurança em ambientes corporativos.Conhecimento em cenários de ataque envolvendo aplicações web, APIs, identidades, endpoints e infraestrutura corporativa.Experiência com ferramentas SIEM, SOAR, EDR/XDR, Threat Intelligence e plataformas de investigação de segurança.Conhecimento em Active Directory, Microsoft Entra ID, protocolos de autenticação e gestão de identidades.Conhecimento em sistemas operacionais Windows e Linux, redes e infraestrutura corporativa.Experiência com ambientes Cloud (AWS, Azure e/ou GCP).Conhecimento em frameworks e metodologias de segurança, como MITRE ATT&CK, NIST, OWASP e ISO 27001.Capacidade de conduzir investigações complexas envolvendo múltiplas equipes técnicas e áreas de negócio.Inglês intermediário para leitura e análise de documentações e materiais técnicos.Informações adicionaisExperiência com instituições financeiras, fintechs ou empresas de meios de pagamento.Vivência em investigações relacionadas a fraude eletrônica, autenticação, Open Finance, PIX e abuso de contas digitais.Experiência com Threat Hunting, Purple Team e Forense Digital.Certificações como Security+, CySA+, GCIH, GCFA, SC-200, AZ-500 ou equivalentes.Pós-graduação ou especialização em Segurança da Informação, Cibersegurança ou áreas correlatas.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Gupy (Portal de Vagas)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Gupy (Portal de Vagas)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Gupy (Portal de Vagas)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.