Description
Job Summary:
The Information Security Analyst (Blue Team) will strategically protect cloud assets by applying security guidelines and frameworks to ensure resilience.
Key Highlights:
1. Protagonist in protecting cloud assets and environments
2. Strategic and operational engagement with industry-standard frameworks
3. Collaboration with Cloud, Architecture, and Development teams
As an **Information Security Analyst (Blue Team)**, you will be the protagonist in protecting assets, operating both strategically and operationally to secure cloud environments. Your role will involve implementing the Information Security Policy guidelines and industry-standard frameworks such as **NIST, PCI, CIS Controls, and OWASP**, ensuring business resilience and protection.
### **Key Responsibilities**
* Ensure implementation of security best practices in **AWS, Azure, and OCI** environments, aligned with industry frameworks and internal requirements.
* Support and lead **cloud security incident investigations**, including evidence collection, forensic analysis, and mitigation.
* Collaborate with **Cloud, Architecture, Networking, and Development** teams to ensure secure configurations of cloud services.
* Perform **infrastructure vulnerability management**, jointly with the Cloud technical team.
* Monitor, assess, and respond to alerts from cloud security tools (e.g., **Splunk, Prisma, GuardDuty, Security Hub, CloudTrail, CloudWatch**, among others).
* Develop and maintain **scripts and automations** for security monitoring and incident response.
* Create and update **procedures, playbooks, and technical reports** focused on cloud security.
* Participate in **architecture assessments, security reviews**, and support cloud-native projects.
* Prepare, consolidate, and present **executive reports, dashboards, and presentations** for business units, leadership, and audits.
* Support the updating and dissemination of **information security policies, standards, and procedures**.
* Demonstrate strong **interpersonal relationship skills**, collaborating effectively with both technical and non-technical teams.
### **Mandatory Requirements**
* Bachelor's degree in **Information Technology, Computer Science, Computer Engineering**, or related fields.
* Minimum **3 years of experience working in a Blue Team**.
* Solid experience in **Cloud Security**, with focus on **AWS**, and knowledge of other clouds (Azure, OCI, or GCP).
* Hands-on experience with **CSPM and CNAPP**.
* Practical experience in **cloud incident response**, including log analysis, investigation, and remediation.
* Experience across security processes: **Incident Management, SOC/CTI, Vulnerability Management, Forensic Analysis, Data Protection and Classification**.
* Knowledge of native AWS security tools (e.g., IAM, GuardDuty, KMS, CloudTrail, WAF, Security Groups, etc.).
* Experience with **SIEM, Password Vaults, CASB, CSPM, Vulnerability Management, WAF, CDN, and DNSSEC** tools.
* Experience with **security automation** using **Python, Bash, or Terraform**.
* Strong understanding of **networking, cryptography, identity, and access control** applied to cloud environments.
* Experience with **compliance audits** and information security maturity assessments.
* Ethics, accountability, and confidentiality in handling sensitive information.
### **Preferred Qualifications**
* Certifications such as **AWS Security Specialty, AWS Solutions Architect, GCIH, GCFA, or CEH**.
* Knowledge of **digital certificates**.
* Additional experience with **Azure or OCI**.
* Experience with **SIEM and SOAR integrated into cloud environments (e.g., Splunk)**.
* Participation in **Cloud Security Posture Management (CSPM)** projects.
* **Postgraduate degree in Information Security**.
* Experience in environments with **Agile culture**.