Faster chat, better deals — Get the App

Purple Team Analyst

Indeed

Company

Job typeFull-time
Workplace typeRemote
Experience levelMore than 10 years
Education levelBachelor's Degree

Description

***\#WeAreVision*** **Vision Cybersecurity:** we are the beginning, the growth, and the success of technology infrastructure in Brazil We protect data, drive business, and strengthen our customers' future through innovation, technical excellence, ethics, and anticipation. Every day, we work to simplify complex challenges and ensure greater enterprise-level security in the Brazilian market. At Vision, we value knowledge sharing, continuous learning, collaboration, and ownership. We are a team that believes in the power of connections, people's development, and building an environment where every professional can grow, contribute, and generate real impact. We seek curious, committed individuals who want to evolve alongside us and help make the digital world safer every day. We are a team composed of **people who see beyond the obvious!** **Responsibilities and Duties** * Plan and execute attack simulations based on real-world scenarios and relevant Cyber Threat Intelligence (CTI) for the company's industry sector, using the MITRE ATT\&CK framework as the methodological foundation; * Continuously test the effectiveness of security tools (SIEM, EDR, NDR, Firewalls) to ensure they detect and block threats as expected; * Work side-by-side with SOC and *Detection Engineering* analysts to create, fine-tune, and refine detection rules, aiming to increase alert fidelity and reduce operational fatigue (false positives); * Implement and manage automated testing routines using *Breach and Attack Simulation* (BAS) tools or open-source frameworks to prevent detection regression; * Identify visibility gaps (e.g., logs not reaching the SIEM); * Translate emulation results into actionable reports (Root Cause Analysis, Improvement Plans) for both technical teams and management, ensuring completion of the learning cycle. **Requirements and Qualifications** * Prior and solid experience in *Incident Response*, SOC (L2/L3\), *Threat Hunting* **OR** *Penetration Testing* / *Red Teaming*; * Ability to translate adversary Tactics, Techniques, and Procedures (TTPs) into practical tests and monitoring rules; * Hands-on experience operating or consulting platforms such as SIEM (e.g., Splunk, Microsoft Sentinel, QRadar) and EDR/XDR (e.g., CrowdStrike, Defender for Endpoint, Cortex XDR); * **Scripting and Automation Languages:** Essential for automating simulations, evidence collection, event enrichment, advanced queries, and continuous validation of security controls; * Deep understanding of operating systems (Windows, Linux) and, critically, of Active Directory (AD) and Entra ID architecture and common vulnerabilities; * Bachelor’s degree in Information Technology, Cybersecurity, or related fields is desirable; * Intermediate English proficiency for reading, analyzing technical documentation, and communicating with international teams; * Practical experience with open-source tools (e.g., Atomic Red Team, Caldera, Prelude) or commercial BAS platforms (e.g., Picus, AttackIQ, Cymulate); * Knowledge of writing universal detection rules, such as Sigma and YARA; * Familiarity with executing security tests and interpreting native cloud provider logs (AWS, Azure, GCP); * Experience creating, tuning, and validating detection rules, hunting queries, and correlations for SIEM, EDR/XDR, and monitoring platforms. **Additional Information** **BENEFITS OF BEING VISION!** At Vision, security starts with people. Therefore, we constantly pursue well-being, development, and growth for our employees. **For your physical and mental health:** Bradesco Top National Health Insurance Plan; Odontoprev Dental Insurance Plan; Life Insurance; Pipo Saúde: Digital health and corporate benefits brokerage; ‍ TotalPass: A platform connecting you to various networks to support your well-being (and your family’s). **For your daily life:** Transportation Allowance; Alelo Tudo: Meal and Food Benefits on a single card; Private Pension Plan: Double-match contribution — Vision contributes alongside you; Birthday Day Off: How about a paid day off during your birthday month? Employee Referral Program: Your referrals earn you money; Discounts at Educational Institutions; Vision Baby Kit: Because new beginnings also deserve care and celebration; Exclusive SESC Group Discounts: Leisure for you and your family; Welcome Kit: We prepare a premium kit to support your daily work; Breakfast and afternoon fruit snacks for in-office days. **For your career development:** DeepLearning: Our Corporate University; Opportunities for professional growth; Feedback- and development-oriented culture; Exclusive leadership program; Here, you’ll find a relaxed environment breathing innovation; our leadership is approachable! Doors are always open, and you can meet them in the company hallways. You’ll stay updated on market trends and remain connected with an innovative team. What are you waiting for? **\#WeAreVISION** At Vision, we don’t wait for risks to occur — we work to stay ahead. Born from ISH Tecnologia’s proven expertise, Vision is a technology, cybersecurity, and information security company specializing in the private sector, dedicated to anticipating risks, reducing complexity, and ensuring control across critical digital environments. We combine intelligence, automation, and specialized operations to transform security into strategic advantage. Here, you’ll work alongside experts who bring deep technical expertise, business acumen, and focus on what truly matters. If you’re pursuing a career in technology and cybersecurity and want to build the future of security with people who see beyond the obvious, this may be your place.

Some content was automatically translated

Posted by

João Silva

Indeed · HR

Location

João Silva

Indeed · HR

Similar jobs

Purple Team Analyst job by Indeed in 2026 | ok.com