Skip to content

Jobgether

Senior Security Engineer - CSIRT

Location
Brazil, BR
Arrangement
Remote
Employment type
Full-time
Level
Senior
Posted
25 September 2026 (5 days ago)

Checked 5 days agoApplications go to the employer, never to RoleSprint

About this role

Accountabilities: • Act as the primary technical point of contact for Level 2 and Level 3 security incidents, leading response efforts across complex and high-criticality environments.

• Coordinate incident response activities with MSSPs and 24/7 SOC teams, ensuring operational quality, alignment, and continuous improvement.

• Collaborate rapidly with multicultural teams and multiple business functions, including Legal, Data Protection, Communications, and cybersecurity teams, throughout security incidents.

• Develop, maintain, and continuously improve Incident Response playbooks, procedures, and workflows, incorporating automation wherever possible.

• Lead Digital Forensics and Incident Response activities, including investigation of root causes, assessment of compromise scope, evidence analysis, and post-incident reviews.

• Drive post-mortem processes by facilitating technical discussions, documenting findings, and translating incidents into actionable improvements.

• Apply advanced threat detection expertise to create, tune, and enhance detection rules across SIEM and EDR platforms.

• Manage the full Cyber Threat Intelligence lifecycle, transforming threat data into actionable intelligence that strengthens SOC operations and defensive capabilities.

• Partner with Tier 1 and Tier 2 vendors to optimize operational routines, improve service delivery, and maximize the value of security contracts.

Requirements:

• At least 5 years of professional experience focused on Incident Response, Digital Forensics, or Threat Hunting.

• Strong hands-on expertise in Digital Forensics and Incident Response, including the preservation, collection, acquisition, and analysis of digital evidence.

• Experience investigating systems and networks across Windows, Linux, and macOS environments.

• Proficiency with memory forensics and host-based forensic tools.

• Ability to conduct basic static and dynamic malware analysis to identify Indicators of Compromise (IoCs) and understand malicious capabilities.

• Proven experience leading incident response activities in cloud environments, particularly AWS and GCP.

• Practical experience with Security Orchestration, Automation and Response (SOAR), including developing automated workflows that improve incident response efficiency.

• Strong risk assessment and prioritization skills, with the ability to allocate resources and make effective decisions during high-pressure situations.

• Excellent communication and leadership abilities, including the capacity to clearly explain technical findings to both technical specialists and executive stakeholders.

Benefits:

• Competitive salary.

• Profit-sharing opportunities.

• Meal allowance.

• Health insurance.

• Dental plan.

• Life insurance.

• Childcare subsidy and atypical parenthood subsidy.

• Wellhub membership.

• Home office allowance.

• Employee assistance program covering mental health, social, legal, and financial support.

• Extended parental leave.

• Day off for your birthday, Mother’s Day, and Father’s Day.

• Benefits Club with discounts on everyday services.

• Discounts at educational institutions.

• Reading kit for children through PlayKids.

• Remote-first work model, with the option to work from anywhere in Brazil.

• Access to São Paulo offices or partner coworking spaces up to twice per week.

How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

Work location

  • BR

Related jobs

Ready to make a decision?

This role is either worth your time or it isn’t.

Analyze the posting against your experience, see the gaps clearly, and build the right materials only if the opportunity makes sense.

Nothing is submitted automatically. You choose what happens next.

About this listing

Published on Lever under the board identifier Jobgether, which is the name the employer’s own job board carries. RoleSprint has not verified the company’s registered or trading name, so it is shown exactly as published rather than tidied up.

RoleSprint is not the employer and not a recruiter. Applications are made on the employer’s own site and never reach us; what RoleSprint does is help you decide whether a role is worth your time and prepare for it if it is.

Published 25 September 2026, last checked 5 days ago. A posting stops being advertised here 90 days after the employer published it, and one the employer takes down is marked closed rather than quietly removed.

Browse all current openings

No credit card requiredStart free