




Description: Technical Skills: * Proven senior experience in IT infrastructure and security. * Advanced knowledge of computer networks (TCP/IP, VPN, VLANs, routing, firewalls, Load Balancers) and network security solutions. * Solid experience in hardening servers and desktops (Linux/Windows) and services, as well as network devices. * Experience in vulnerability analysis within infrastructure and associated security tools. * Ability to read and interpret regulatory documents and information security policies. * Knowledge of operating systems (Linux, Windows Server) and virtualization. * Proficiency in technical English (reading \& listening). * Excellent analytical skills, interpersonal communication, and teaching ability to interact with different technical and managerial levels. It will be a differentiator if: * Holds high-level certifications such as CCNP Security, Fortinet NSE (advanced levels), Palo Alto PCNSE, CISSP, CISM or CISA. * Strong experience in on\-premise and hybrid environments. * Practical and in-depth experience in collecting, validating, and presenting technical evidence for security and compliance audits (e.g.: SOC 2, PCI DSS, LGPD). * Practical experience in technical infrastructure audits and regulatory compliance in sectors such as finance/banking. * Skills in scripting and automation (Python, Ansible) for managing and validating security configurations at scale. * Prior involvement in Blue Team or Red Team roles focused on infrastructure. We are seeking an Information Security Analyst focused on Infrastructure Security, with expertise in computer networks and strong technical capabilities to support audits and strengthen the company's security controls. Responsibilities and duties: * Participate in the design, implementation, and maintenance of secure network and system infrastructures, focusing on on\-premise environments, ensuring the robustness of controls. * Act as the focal point during security audits, being primarily responsible for extracting, validating, and presenting detailed technical evidence across multiple areas, such as: * Network Access Control, Vulnerability Management and Hardening, Encryption, Change Management, Asset Management, Monitoring and Alerts, Backup and Business Continuity Plans, Secure Information Disposal, Information Security and Privacy, Workspace Security, Device Management, Supplier Security. * Conduct internal technical audits and security reviews with Infrastructure and Development teams, identifying gaps and proposing remediation plans. * Configure, administer, and optimize infrastructure security solutions, including firewalls (Next\-Gen), proxies, IPS/IDS, endpoint solutions (EDR/XDR), and VPNs. * Develop and review security policies, procedures, and hardening guides, ensuring adherence to best practices and regulatory requirements. * Mentor and train technical teams on infrastructure security topics, promoting a security\-first culture. 2509120202531748253


