Senior Information Security Analyst (remote in Brazil)
Sign up free to see how well your resume matches this role.
What you'll do
- Conduct Security, vulnerability, and risk assessments across services, cloud and applications, using both automated tools and manual testing procedures.
- Operational Leadership. Direct the SOC team in identifying, investigating, and triaging security alerts; act as the lead investigator for complex or high-stakes security incidents
- Advanced Threat Hunting. Proactively hunt for threats across cloud, hybrid, and on-prem environments using behavior-based analysis and threat intelligence feeds.
- Cloud Security Governance. Lead regular security audits of AWS/Azure/SaaS environments, developing and enforcing hardening standards to mitigate cloud-specific risks
- Conduct regular security reviews and risk assessments for cloud environments to identify vulnerabilities and threats. Develop strategies to mitigate risks and enhance the overall security posture of cloud services.
- Monitor environments for security incidents and anomalies. Lead the response to security breaches or attacks, coordinating efforts to contain and resolve incidents while minimizing impact.
- Collaborate with various business units, ensuring adherence to security policies and procedures.
- Advanced Scripting. Expertise in Python or Bash for parsing complex logs, automating data collection during forensics, and integrating disparate security APIs.
- SOC Mentorship. Serve as a subject matter expert (SME) for junior analysts, developing training materials and conducting tabletop exercises to improve team readiness.
What they're looking for
- Bachelor’s degree in information security, information systems, or similar preferred
- Relevant industry certification in information security, management information systems security or similar preferred
- Minimum 2+ years experience in information security and Technology or related role
- AWS Cloud Security: Proficient in Amazon Web Services (AWS) cloud environments, including managing security groups, IAM roles, and other security relevant aspects of AWS. Skilled in implementing best practices for AWS security, automating deployments, and optimizing cloud resources for security and efficiency.
- Elastic Search SIEM Expertise: Demonstrates in-depth knowledge and hands-on experience with Elastic Search as a Security Information and Event Management (SIEM) tool within a SOC environment. Skilled in configuring and customizing Elastic Search for optimal log collection, analysis, and real-time monitoring of security events.
- Advanced Threat Investigation Skills: Proficient in conducting in-depth investigations of cyber threats within cloud environments. Skilled in analyzing security logs, network traffic, and system behaviors to identify and understand the nature of potential security incidents. Capable of using various forensic tools and techniques to trace the source of threats and recommend mitigation strategies.
- SOC Alert Expertise: Experienced in optimizing SOC alerts for cloud-based infrastructures. Skilled in configuring and fine-tuning alerting systems to minimize false positives while ensuring critical threats are identified and escalated promptly. Understands the nuances of different cloud environments and tailors alerting mechanisms accordingly.
Summarised by NextRaise from the employer’s description, which follows in full below.
Full description from employer
KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15-years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.
Please submit your resume in English.
To learn more about our team and office culture in São Paulo, Brazil, visit the following links.
Careers Page: https://www.knowbe4.com/careers/locations/sao-paulo
Glassdoor: https://www.glassdoor.com/Location/KnowBe4-S%C3%A3o-Paulo-Location-EI_IE969384.0,7_IL[…]M_-C1lsxoZq7Cx8IriVE8MkrzuTmnJzqego77RAWZz9sqGt_55BflwYKpQeg
LinkedIn: https://www.linkedin.com/company/knowbe4/life/brazil/
KnowBe4 is seeking a Senior Information Security Analyst in Brazil to join our Security team! In this role, your primary focus will be proactive threat hunting, internal vulnerability assessment/penetration testing, and building custom security automations to ensure enterprise data and infrastructure remain safe
As our infrastructure evolves, you will play a critical role in bridging an internal coverage gap in threat hunting and penetration testing, solving root-cause security challenges, and collaborating with and mentoring global SOC team members across the US, UK, and Brazil.
Responsibilities:
- Threat Hunting & Penetration Testing: Conduct proactive threat hunting across cloud and hybrid environments, identify log coverage gaps, and perform internal vulnerability assessments and penetration testing to recommend system hardening and patching.
- Security Automation & Tooling: Build internal security tools and automated testing workflows using Python or Bash to parse complex logs, streamline forensic data collection, and integrate security APIs.
- Cloud Security & Incident Response: Conduct security reviews and audits of AWS cloud environments, act as lead investigator for complex security incidents, and optimize ElasticSearch SIEM alerts to minimize false positives.
- Strategic Security Operations: Move beyond routine alert triage to solve root-cause security problems, improving overall infrastructure resilience and security posture.
- SOC Leadership & Mentorship: Serve as a subject matter expert for junior and mid-level analysts, developing training materials, leading tabletop exercises, and providing technical guidance to elevate overall team readiness.
Requirements:
- Experience in Security Operations (SOC), Information Security, or a related technical role.
- SOC & Threat Hunting: Proven track record in active threat hunting, incident investigation, and building or maturing SOC operational components rather than solely triaging alerts
- Scripting & Automation: Strong hands-on proficiency in Python or Bash for log parsing, forensic data collection, and custom security tool development
- Cloud & Linux Fluency: Hands-on experience securing cloud infrastructure (AWS as the primary focus) and navigating Linux command-line interfaces
- SIEM Expertise: In-depth knowledge and practical experience configuring and customizing ElasticSearch SIEM for log collection and alert tuning
- Language: Fluency in technical English (written and spoken) to collaborate smoothly across global teams
- Cultural Fit: Personable, open communication style with authentic engagement, willingness to share personal context, and a collaborative spirit
- Experience participating in Capture The Flag (CTF) competitions, ethical hacking, or red/blue team testing.
- Personal GitHub repositories or open-source security projects.
- Exposure to multi-cloud environments (Azure or GCP)
- Relevant industry certifications or a degree in Information Security / Computer Science.
Our Fantastic Benefits
Note: An applicant assessment and background check may be part of your hiring procedure.
Individuals seeking employment at KnowBe4 are considered without prejudice to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, sexual orientation or any other characteristic protected under applicable federal, state, or local law. If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please visit www.knowbe4.com/careers/request-accommodation.
No recruitment agencies, please.
Company
Company facts come from this company's own listings. We only show what the postings themselves carry.