Description
Job Summary:
A cybersecurity professional to perform incident detection and response, protect IT environments, and ensure compliance with industry best practices.
Key Highlights:
1. Conduct penetration tests and adversarial simulations
2. Manage vulnerability management programs
3. Promote innovation and continuous improvement in security
**Description and Responsibilities:**
**Working Hours:** Monday to Friday, from 9:00 AM to 6:00 PM
**Level:** Professional
**Employment Type:** Permanent – CLT
The **Cyber Incident Detection and Response** team is responsible for maintaining cybersecurity solutions in operation, observing and implementing industry best practices as well as guidelines and procedures established in policies, standards, and regulations related to cybersecurity; monitoring the IT environment of the Sicoob Cooperative Center (CCS) and affiliated cooperatives from a cybersecurity perspective to identify and remediate weaknesses that could pose a negative risk to the Sicoob conglomerate; installing, deploying, and maintaining CCS IT environments, ensuring their continued operation for cooperative members and IT resource users through implementation of systems, security solutions for environments, and methodologies aligned with defined requirements; and finally, generating evidence requested by internal or external audit teams and preparing technical reports.
**Responsibilities:**
* Conduct penetration tests (pentests) and adversarial simulations to identify vulnerabilities.
* Execute social engineering and phishing campaigns to assess employee awareness.
* Manage vulnerability management programs and propose security improvements.
* Analyze and report test findings, providing recommendations for remediation.
* Support Sicoob’s cybersecurity governance, including policies, contracts, and budgeting.
* Collaborate in project development and ensure security is embedded from solution conception.
* Monitor and respond to security incidents, prioritizing response time and criticality.
* Provide specialized technical support and maintain service quality.
* Promote cybersecurity training and organizational security culture.
* Track trends, evaluate new solutions, and develop defense strategies.
* Encourage innovation and continuous improvement in the security domain.
**Requirements:** **Mandatory Requirements:**
* Bachelor's degree in Computer Science, Information Systems, Information Technology, Computer Engineering, or related fields;
* Penetration testing experience;
* Experience leading teams;
* Standards, policies, and regulations related to cybersecurity;
* Network infrastructure, device, and data security;
* Software security;
* Contract, license, specification, technical evaluation, advisory opinion, RFP, etc. management;
* Cloud, containers, and automation tools;
* Networks and telecommunications;
* Vulnerability management;
* Company’s technological infrastructure.
**Desirable Requirements:**
* Internet protocols and security technologies;
* Operating systems;
* Information technology (Office Suite: Word, PowerPoint, Excel, Outlook);
* Intermediate English;
* CRTE – Certified Red Team Expert certification;
* OSWE – Offensive Security Web Expert certification.
**Benefits:**
Childcare/Babysitter Allowance, Undergraduate and Postgraduate Scholarship Program, Christmas Basket, Year-End Day Off, Extended Maternity Leave, Extended Paternity Leave, Annual Profit Sharing, Health Insurance Plan, Dental Insurance Plan, Multi-Sponsored Private Pension Plan, Soft and Hard Skills Development Program, Internal Mobility Program – Internal Opportunity Matching, “Viver Bem” (Well-being) Program, Life Insurance, Sicoob Corporate University, Meal Allowance, Food Voucher, Transportation Voucher (optional), Wellhub