Faster chat, better deals — Get the App

CSIRT Specialist

Indeed

Company

Job typeFull-time
Workplace typeOnsite
Experience levelNo experience limit
Education levelNo degree limit

Description

Job Summary: The professional will be responsible for conducting advanced security investigations, incident response, forensic analysis, and threat hunting, managing complex incidents and enhancing SOC capabilities. Key Highlights: 1. Conducting advanced security investigations and incident response. 2. Performing forensic analysis and threat hunting across diverse environments. 3. Contributing to the continuous evolution of SOC detection capabilities. You will be responsible for conducting advanced security investigations, performing incident response, executing forensic analysis, and carrying out threat hunting activities. You will manage and resolve complex incidents, providing qualified technical support to clients in critical situations and ensuring the effectiveness of containment, eradication, and recovery actions. You will contribute to the continuous evolution of SOC detection and response capabilities, including process improvement, gap identification, implementation of technical enhancements, and active participation in emerging threat analysis. **Responsibilities and Duties** **Your main activities:** * Investigate incidents involving malware, lateral movement, credential abuse, and sophisticated threats; * Perform forensic analysis (live and offline) on endpoints, servers, networks, and cloud environments; * Conduct hypothesis-driven threat hunting mapped to MITRE ATT\&CK; * Coordinate technical actions during critical incidents and lead war rooms; * Perform containment, eradication, and recovery of affected environments; * Produce technical reports, root cause analyses (RCA), and lessons learned; * Develop and improve use cases, detection rules, and automations within the SOC; * Develop and review incident response playbooks. **Requirements and Qualifications** **We expect you to have:** * Completed undergraduate degree in Information Security, Cyber Defense, Computer Networks, Systems Analysis, Computer Science, or related fields; * Proven experience in Incident Response and forensic analysis; * Proficiency with SIEM, EDR/XDR, and log analysis; * Knowledge of networking, protocols, and attacker TTPs; * Experience with MITRE ATT\&CK and threat hunting; * Intermediate English proficiency. **It would be a plus if you also have:** * Certifications such as GCIH, GCFA, GCIA, GNFA, CHFI, or similar. * Experience with automation (Python, PowerShell) and SOAR platforms. * Knowledge of Azure, AWS, or GCP environments. * Experience in MSSP or critical environments (financial, industrial, healthcare). **Additional Information** At Redbelt Security, we believe everyone has the potential to play a key role in mutual growth. You will join a dedicated team focused on achieving outstanding results in a welcoming, enabling, relaxed, and continuously learning environment. **Want more?** On some weekdays, we host breakfast and happy hour events at the office because we believe that moments of relaxation strengthen relationship-building and foster an even more collaborative and motivating environment. **Work Model:** 4 days per week onsite and 1 day remote. **Our Benefits:** * Meal Voucher, with no payroll deduction (iFood Benefícios card); * Food Voucher, with no payroll deduction (iFood Benefícios card); * Transportation Voucher, with no statutory payroll deduction; * Health insurance, with no co-payment and no payroll deduction; * Dental insurance, with no co-payment and no payroll deduction; * Well-being: Wellhub and Totalpass; * Group life insurance; * Piwi Support; * Starbem: healthtech platform for medical services; * Avus: health benefits platform; * Childcare allowance; * Special needs child allowance; * Citizen Company: extended maternity and paternity leave; * Birthday day off; * Redbelt Referral Program: your referrals are highly valued; * Redbelt School: educational sponsorship program for courses and certifications; * Redbelt Celebra: tenure-based recognition awards; * SESC partnership; * Partnerships with educational institutions and language schools offering discounts; * PLR (Profit and Results Sharing): contingent upon achievement of company goals; * PBR (Redbelt Bonus Program): contingent upon achievement of company, departmental, and individual goals. Redbelt Security has been a reference in cybersecurity consulting for over 15 years, protecting companies across all sectors with advanced services and intelligence. Our commitment is to integrate people, systems, services, and products to deliver a unique, functional, and client-specific strategy aligned with each customer’s real needs. We believe every person has the potential to play an essential role in our growth. Therefore, we value professionals with **opportunity awareness**, **entrepreneurial spirit**, and high **adaptability**, capable of working **hands-on** and delivering **technical excellence** in everything they do. Here, the **team mindset** is not just a value—it is part of our identity and how we collectively build results. You will join a dedicated team focused on delivering excellence, in a welcoming, enabling, relaxed, and continuously learning environment. We value diversity and guarantee an inclusive and accessible workplace, promoting equal opportunity. This combination of culture, values, and passion for what we do makes Redbelt one of the market leaders. **Here, your talent makes all the difference. Join us as a Redbelter!**

Some content was automatically translated

Posted by

João Silva

Indeed · HR

Location

João Silva

Indeed · HR

Similar jobs

CSIRT Specialist job by Indeed in 2026 | ok.com