Sr. Network and Security Analyst (Cyber Security)
Must-have:CloudSecurityLead
Machine translation — original language: Portuguese.Show original
We are looking for professionals passionate about technology to act in a dynamic and strategic environment, contributing to the connectivity, security, and reliability of BYD's network infrastructure.
In this position, you will be responsible for operating and maintaining corporate network and security platforms, managing configurations of switches, routers, firewalls, and VPN, in addition to performing network backups, supporting vulnerability scans, and contributing to the continuous documentation and optimization of traffic and bandwidth utilization.
Responsibilities and assignments
- Design, implement, and manage network segmentation between IT and OT domains, ensuring compliance with Zero Trust and Defense-in-Depth principles;
- Configure and maintain high-availability firewalls, redundant paths, and routing failover policies between datacenters and remote sites;
- Lead Root Cause Analysis (RCA) for critical network or security incidents and develop corrective action plans;
- Develop and maintain network addressing plans, DHCP scopes, NAT rules, and routing policies to ensure scalability and consistency;
- Supervise vulnerability remediation activities and validate the effectiveness of mitigation actions identified in penetration tests;
- Integrate security device logs into SIEM tools and coordinate with the SOC for event correlation and incident escalation;
- Perform periodic configuration audits and apply change management best practices (RFC approval, rollback validation, and documentation);
- Define and maintain technical standards for VLAN naming, access control, and monitoring configurations;
- Mentor junior and mid-level analysts, promoting knowledge transfer sessions and technical workshops;
- Coordinate network preparation activities for factory expansion, datacenter updates, and cloud integrations;
- Prepare and present monthly KPI and performance dashboards, highlighting latency, availability, and incident rate trends;
- Represent the Network Operations area during internal and external audits, ensuring evidence of compliance with ISO 27001;
- Participate in policy reviews and contribute to global infrastructure standardization in collaboration with global IT teams;
- Conduct Disaster Recovery (DR) tests and validate failover mechanisms to ensure business continuity.
Requirements and qualifications
- Degree in Networks, Information Security, or Telecommunications;
- Experience in corporate network design, administration, or security operations;
- Advanced knowledge in routing, switching, VPN, and firewall management in multivendor environments;
- Proven experience in segmentation projects between OT and IT environments;
- Hands-on experience with firewalls, IDS/IPS, NAC, and SIEM platforms (Fortinet, Cisco, or Palo Alto);
- Deep understanding of availability, latency, and network performance metrics (MTTD / MTTR);
- Proficiency in network troubleshooting using packet capture and analysis tools (Wireshark, NetFlow);
- Strong ability to manage incident response, root cause analysis, and post-incident reports;
- Familiarity with ISO 27001, NIST, and LGPD security controls applied to network operations;
- Fluent English for documentation, reports, and technical meetings; Mandarin is a plus;
- Excellent leadership and mentoring skills to guide junior and mid-level analysts;
- Solid knowledge of EHS and NR standards, ensuring safe interventions in critical environments;
- Strong analytical capacity to standardize processes across multiple sites;
- Availability for travel and participation in corporate audits and projects between units.
Desirable:
- Cisco Certified Network Professional (CCNP – Enterprise or Security);
- Fortinet NSE 5–6 – Advanced Security Analyst;
- Palo Alto PCNSA – Next Generation Firewall Administrator;
- CompTIA CASP+ – Advanced Security Practitioner;
- ISO/IEC 27001 Lead Implementer or Lead Auditor (PECB / BSI / EXIN);
- ITIL Managing Professional (MP) or Service Transition certification;
- EC-Council Certified Ethical Hacker (CEH) or equivalent pentest certification;
- NIST Cybersecurity Framework Practitioner Certificate;
- Certified Network Defender (CND – EC-Council);
- Microsoft Certified: Security Operations Analyst (SC-200).
Additional information
Here at BYD, we prioritize the well-being of our employees and are constantly seeking improvements for our benefits package. Your package will include:
- Medical and dental insurance for you and your dependents;
- Golden Farma card for purchases at registered pharmacies with direct payroll discount, valid for both medications and hygiene and beauty items;
- Well Hub to take care of your physical and mental health;
- Cafeteria meals and Vale Alimentação to help with your monthly shopping;
- Chartered Transport or Fuel Allowance;
- Porto Seguro group life insurance, without payroll deduction;
- Childcare assistance for dependents, subject to eligibility rules.