Description
**[Tech] Senior SecOps Analyst**
====================================
TOTVS | São Paulo - SP | Hybrid
Job Description
Responsible for administering and maintaining the proper functioning of controls and routines related to Information Security operations, ensuring security in accordance with industry best practices across TOTVS Cloud environments.
Responsibilities and Duties
* Respond to and resolve service tickets, requests, events, and change tasks using ITSM tools;
* Support TOTVS Cloud Information Security tools, including backup testing, monitoring, performance evaluation, and configuration best practices, with a focus on networking solutions such as firewalls, Anti-DDoS, WAF, Zero Trust, and DNS Security;
* Administer Anti-DDoS tools, configuring rules, groups, whitelists, exceptions, and handling false positives;
* Design, implement, and optimize DDoS attack mitigation strategies, including threshold definition, policy creation, and continuous adjustments based on traffic behavior;
* Conduct advanced network traffic analysis using tools such as NetFlow, sFlow, tcpdump, and Wireshark, focusing on identifying anomalous patterns, attacks, and high-complexity troubleshooting;
* Manage and operate scrubbing architectures—both SaaS and on-premises—evaluating redirection scenarios such as GRE and BGP diversion, as well as the effectiveness of applied mitigations;
* Continuously review and enhance perimeter security controls to ensure alignment with best practices and reduction of the attack surface;
* Develop and maintain automations for incident response and dynamic rule application across security tools;
* Administer IPS signatures, performing validation and deployment of new intrusion prevention system rules;
* Execute action plans (RDMs), including outside regular business hours, as required by operational needs;
* Review security controls and propose improvements to managed tools, considering usage practices and identified requirements;
* Diagnose and resolve issues related to blocking or performance of Information Security solutions;
* Administer firewall rules, ensuring compliance with Information Security best practices;
* Author operational documentation and procedures using internal knowledge base tools;
* Develop scripts to automate repetitive tasks and monitoring, using PowerShell, Shell Script, and other scripting languages;
* Support the architecture team in deploying new Information Security tools;
Requirements and Qualifications
Knowledge of network architecture, TCP/IP model, SDN, and traffic monitoring and troubleshooting using tools such as tcpdump, Wireshark, MTR, ping, tcping, and httping; Knowledge of advanced routing and mitigation protocols and concepts, including BGP (peering, policies, and communities), GRE tunneling, CNI/PNI architectures, and traffic distribution strategies such as Anycast; Knowledge of Flowspec for dynamic attack mitigation and traffic analysis using NetFlow and sFlow; Experience with DDoS attack mitigation techniques, including rate limiting, TCP challenge, SYN cookies, black-holing, and related strategies; Proficiency in ASN-related concepts and prefix advertisement management, including IRR, LOA, MSS, prefix control, and routing policies; Understanding of traffic flow (ingress and egress) and its impacts on security and performance scenarios; Knowledge of mitigation architectures, including scrubbing centers in both SaaS and on-premises models; Experience with market solutions focused on Anti-DDoS protection and edge security; Knowledge of Windows and Linux operating system architectures; Knowledge of cryptography concepts, including TLS ciphers and X.509 certificates; Knowledge of multi-tenancy concepts, shared responsibility model, and service delivery models such as IaaS, PaaS, and SaaS; Knowledge of threat modeling and cyberattack anatomy; Familiarity with scripting and programming languages such as PowerShell, Python, and Bash;
Desirable Requirements
Advanced English;
Knowledge of TOTVS products.
Salary Range
To be determined
Employment Type
CLT
Benefits
* TOTVS Network University, a corporate university offering free content and certifications for all employees;
* +Saudáveis Program, supporting each TOTVER through advisory services and initiatives focused on physical, mental, and financial well-being;
* +Vantagens Program, Latin America’s largest discount network, exclusively for our employees;
* +Cuidado Program, a personal support program for employees and their families, offering guidance across multiple specialties including psychology, social work, pet consulting, etc.;
* Einstein Conecta, a free online medical consultation benefit provided by physicians from Hospital Israelita Albert Einstein;
* Health and dental insurance;
* Meal and/or food allowance;
* Transportation allowance and shuttle buses at selected metro stations;
* Extended maternity and paternity leave;
* Lactation room;
* Bicycle parking;
* Changing rooms;
* Life insurance;
* Childcare allowance;
* Private pension plan;
* Office designed to foster creativity and productivity, featuring snack areas, game rooms, billiard tables, and relaxation lounges;
* Gympass.
About the Company
As a technology leader, we are a universe of nonconformist people driven by innovation, autonomy, learning, and performance.
Together, we create opportunities, transform futures, and share knowledge. Here, your professional development happens in an inclusive, respectful, and energizing environment—people helping people!
We pursue sustainable growth. We leverage data and AI to drive smarter, more efficient outcomes for our customers.
Join us to innovate and build the future of technology.
#VemPraTOTVS #SomosTOTVS