Infrastructure and Cyber Security Analyst (4785)

Keep Simplegupypublished 09/11/2026
Must-have:PythonAWSDockerKubernetesDevOpsSecurity
Machine translation — original language: Portuguese.Show original

Be part of an Agile Innovation Hub with a business focus. We have a vast portfolio of clients, creating countless possibilities in various technologies. Here we work for your success! 🚀Our environment is dynamic, agile, and very relaxed; we have a team made up of various specialists such as tech recruiters, developers, engineers, and market consultants.We are looking for a Hands on professional with a focus on professional development. Check the requirements.👇🏽Responsibilities and assignments

Main Responsibilities:Cloud Security and Containers: Implement and manage security controls in AWS (VPC, EC2, S3, RDS, Lambda, IAM, CloudFront, GuardDuty, Organizations, etc.), apply CSPM rules, ensure the security of Kubernetes (EKS) workloads, and fix vulnerabilities in container images together with DevOps teams;Identity and Access Management (IAM): Structure and audit permissions based on the principle of least privilege, administer AWS Identity Center, and implement/manage AWS Secrets Manager to eliminate exposed credentials in code and pipelines;Incident Response and Monitoring: Act in the containment and root cause investigation of critical incidents (data leaks, phishing, DDoS); integrate security tools into the SIEM (QRadar), adjusting alerts and reducing false positives;Vulnerability Management and Pentests: Operate solutions such as CrowdStrike Falcon (EDR/CSPM), Qualys, and BitSight. Orchestrate intrusion tests (Red Team) with external vendors and coordinate vulnerability remediation with development teams;Governance, Risk, and Compliance (GRC): Create and maintain policies, procedures, and runbooks. Monitor regulatory audits (such as Banco Central) and ensure alignment with LGPD, CIS Controls, NIST, and OWASP Top 10;Automation and DevSecOps: Develop scripts (Python/Bash) and use tools to automate compliance checks, violation alerts, and operational security tasks. Evaluate architecture risks in Change Management (GMUD) processes before production deploys.

Requirements and qualifications

Technical Requirements:

Mastery of AWS architecture, Terraform, Docker, Kubernetes (EKS), and Linux systems administration;Practical experience with CrowdStrike platform (EDR and CSPM), QRadar SIEM, Qualys, BitSight, AWS Secrets Manager, WAF (Signal Sciences / AWS WAF), and VPN/DNS solutions;Skill in Python and Bash for security task automation and log analysis;Applied knowledge of NIST, CIS Controls, OWASP Top 10, Zero Trust architecture, and LGPD regulation;Advanced English (reading, writing, and technical communication).

Differentials:

  • Previous experience in responding to Financial Sector audits (Banco Central);
  • Market certifications (e.g.: AWS Certified Security – Specialty, Certified Kubernetes Security Specialist (CKS), CISSP, CompTIA Security+ or similar);
  • Experience in the Financial sector.Additional informationContract model: PJ.Work mode: Remote.