Faster chat, better deals — Get the App

Incident Response Security Specialist

Indeed

Company

Job typeFull-time
Workplace typeRemote
Experience levelMore than 10 years
Education levelNo degree limit

Description

If you want to expand your talent, join us on this journey of opportunities, development, and strong collaboration to propel you toward an unexplored universe! **Responsibilities and Duties** Take technical command of critical incidents (P1\), defining the response strategy, prioritization, and business trade\-offs. Coordinate complex, multi-vector investigations covering endpoint, identity, e\-mail, cloud, network, and applications. Perform or guide advanced forensic analyses, ensuring chain of custody and proper interaction with legal and privacy teams. Design, evolve, and maintain incident response capabilities, including processes, tools, integrations, metrics, and readiness roadmaps. Mentor junior and mid-level professionals, lead tabletop exercises and crisis simulations, and represent the team before executives, auditors, and regulators. Manage relationships with strategic vendors and partners (DFIR, CSIRT, Threat Intelligence), conducting POCs and technical evaluations as needed. Define and maintain detection standards and conventions, including naming conventions, severity levels, lookback windows, and cost/performance thresholds. Plan and execute the detection roadmap aligned with key risks, threats, and organizational goals (e.g., coverage of top TTPs). Establish quality metrics and technical gates, such as minimum accuracy, mandatory testing, cross-review, and production promotion criteria. Lead purple teaming initiatives, continuous control and detection validation for emerging techniques, and hypothesis-driven threat hunting. Serve as the technical reference in detection code reviews, mentor the team, and represent the topic in technical committees and executive forums. Evaluate SIEM/XDR/NDR tools, frameworks, and architectures, conducting POCs and scaling detection-as-code adoption. Define content standards, detection architecture, and coverage strategy based on MITRE ATT\&CK. Ensure operational quality through SLOs, efficacy metrics, and advanced detection testing. **Requirements and Qualifications** **Essential:** Solid experience in cyber incident response within complex corporate environments. Strong expertise in detection engineering, SIEM/XDR/NDR, and practical use of MITRE ATT\&CK. Advanced knowledge of investigations involving endpoint, identity, cloud, e\-mail, network, and applications. Experience with forensic analysis, chain of custody, and interaction with legal and privacy teams. Proven ability to provide technical leadership, mentoring, and cross-functional influence. Excellent technical communication skills, with ability to operate during crises, audits, and committee engagements. **Preferred:** Experience with detection-as-code (e.g., Sigma, KQL, SPL, Terraform, CI/CD pipelines). Prior experience with purple teaming, structured threat hunting, and adversary simulations. Knowledge of frameworks such as NIST CSF, NIST 800\-61, ISO 27001/27002\. Experience working with DFIR, Threat Intelligence, and MSSP vendors. Relevant certifications (e.g., GCED, GCIA, GCIH, GNFA, CISSP, or equivalents). **Additional Information** WHAT ELSE WE OFFER... * Medical Assistance – it’s good to have when needed * Dental Assistance – because we love smiles here * Renascer Program – one life renews another * Significant Dates – we love feeling what truly matters * Education Investment – we’re with you on your learning journey ;) * Profit Sharing – we build together, and celebrate together on Belonging Day! * Individual Development Plan – we value your career ownership * Private Pension Plan – we like thinking about future possibilities * Life Insurance – important, right? rs * Time Together – we recognize those who enjoy being with us * Meal and/or Food Allowance – delicious! * Transportation Allowance – no deductions? Yes. * Childcare/Babysitting Assistance – because your baby deserves a safe and welcoming place. At Central Ailos, **we are driven by the union of diverse talents sharing the same purpose: to cooperate in transforming lives.** This is how we grow and evolve — working together to reach places no one else has, taking our talents further than ever before, offering a collaborative environment, and abundant opportunities and encouragement to achieve your goals alongside us. We are part of the Ailos System, composed of 14 credit cooperatives, an insurance brokerage, and our Central Cooperative. We are expanding both physically and technologically to develop increasingly effective solutions, as well as financial products and services that make a real difference in the lives of our more than 1.7 million members. If you also believe in the power of cooperation to transform lives, your place is with us. **Come explore the universe of opportunities at Central Ailos too!** #### **WANT TO EXPAND YOUR KNOWLEDGE AND LEARN MORE ABOUT THE COOPERATIVE UNIVERSE?** **Click here** and explore various free courses on our Ailos Educação platform to strengthen your resume!

Some content was automatically translated

Posted by

João Silva

Indeed · HR

Location

João Silva

Indeed · HR

Similar jobs

Incident Response Security Specialist job by Indeed in 2026 | ok.com