Description
SSD Brasil \- Cyber Analyst I
Country: Brazil
**\#WHO WE ARE**
We are Santander Serviços Digitais Brasil, a global, innovative, and strategic company created to accelerate the bank's digital transformation.
Here, we are responsible for technology, process, and operations solutions that support and enhance business outcomes, always leveraging a modern, automated, and integrated platform connected to Santander's global teams.
Joining our team means gaining global visibility, access to high-impact projects, and the opportunity to grow in an environment that values talent, excellence, and continuous innovation.
Join us and be a protagonist of this transformation.
We have an opening for you to become **SSD Brasil \- Cyber Analyst I**
**In this role, your responsibilities will include:**
Continuously monitoring security events across diverse technologies to support the SOC in combating a wide range of cyber threats, through the following functions:
* Monitoring and triaging security events received via SIEM alerts or other security tools to identify suspicious/malicious activities
* Executing playbooks by following standard procedures for alert investigation and applying predefined solutions
* Escalating more complex alerts requiring deeper investigation by the N2 team
* Actively participating in incident resolution, even after escalation
* Responding to telephone calls and e\-mails from customers
* Classifying security alerts to determine whether detections represent real threats or false positives
* Conducting initial alert investigations, performing initial containment actions or other specific countermeasures to mitigate threats
* Enhancing SOC capabilities by identifying opportunities to improve detection mechanisms and processes
Understanding internal and external threat landscapes, coupled with the ability to prioritize which alerts require immediate attention.
*
**Mandatory Requirements:**
* Extensive experience in SOC Blue Team cybersecurity operations
* Knowledge of major attack vectors and methods (DDoS, Sniffing, phishing, Trojan, privilege escalation, etc.)
* Threat identification and assessment of attack scope.
**Desirable Requirements:**
* Skills in analyzing complex security events
* Knowledge of security incident investigation and response
* Familiarity with SIEM tools and search processing languages
* Knowledge of cybersecurity frameworks (e.g., MITRE ATT\&CK, Cyber Kill Chain) and stages comprising cyberattacks
* Knowledge of network communication protocols (e.g., TCP/IP stack, SMTP, SMB, HTTP, etc.)
* Familiarity with security tools (Firewalls, Antivirus, Intrusion Detection Systems, Authentication Systems, Malware Detection, EDR, WAF, Proxy, etc.)
* Knowledge of operating systems (Windows and Linux)
* Knowledge of cloud environments (Azure, GCP, AWS, and OCI)
**Work Location:**
CTC Campinas – Rua Giuseppe Máximo Scolfaro, 1860 \- Campinas – SP.
**\# BENEFITS:**
➡️ Meal allowance;
➡️ Health insurance;
➡️ Dental insurance: Basic and intermediate plans;
➡️ Transportation allowance;
➡️ Flexible Vacation: 24 working days of vacation, divisible into up to 6 periods; for every 2 months worked, you can already enjoy 4 working days;
➡️ Birthday Day Off;
➡️ PPG
➡️ Gym partnerships: Wellhub, Totalpass;
➡️ Flex Working: Hybrid work model — 2 days remote and 3 days onsite;
➡️ Training platforms with over 100,000 courses;
➡️ Career paths for professional development;
➡️ Flex Learning: Exclusive study incentive for High-Performance employees;
➡️ Childcare allowance;
➡️ Nascer Program and Extended Paternity Leave.
➡️ Life insurance;
➡️ Be Healthy — Program encouraging healthier habits;
➡️ PAPE — Specialized Personal Support Program;
**\#LI\-Hybrid**