Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Bauducco

Senior Information Security Analyst

Bauducco

. Lead security incident investigations, conducting threat analysis, containment, eradication, and recovery.

Posted 9/22/2026full-timeGuarulhos • BrazilSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in leading security incident investigations, vulnerability management, and implementing security controls across hybrid environments. Proficient in utilizing Microsoft Security platforms and conducting advanced threat analysis and risk assessments.

Highest-signal resume keywords
Microsoft SentinelDefender for EndpointVulnerability ManagementIncident ResponseThreat Hunting

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
KQL QueriesCyber Incident ResponseSecurity AssessmentsEndpoint SecurityPowerShell AutomationRisk RemediationCloud SecuritySIEM/EDR/XDRSystem HardeningCIS Controls
Soft Skills
Technical MentorshipCommunication
Tools & Technologies
Microsoft Defender XDRMicrosoft PurviewMicrosoft Entra IDIntuneConditional AccessDLP PoliciesAzure SecurityTCP/IP NetworkingDNSHTTP/HTTPS
Certifications & Qualifications
Microsoft SC-200Microsoft SC-300CompTIA Security+CompTIA CySA+ISO 27001 Lead Implementer
Industry Keywords
MITRE ATT&CKZero TrustNIST CSFISO 27001Brazil’s LGPD

Tech Stack

Tools & technologies
AzureCloudDNSTCP/IP

About the role

Key responsibilities & impact
  • Lead security incident investigations, conducting threat analysis, containment, eradication, and recovery.
  • Serve as the technical focal point for critical incidents and high-severity events.
  • Perform advanced analysis of events involving endpoints, identities, email, networks, applications, and cloud environments.
  • Operate, administer, and enhance the Microsoft Defender XDR and Microsoft Sentinel platforms.
  • Develop KQL queries, analytics rules, dashboards, automations, and playbooks focused on detection and response.
  • Conduct threat hunting activities based on IoCs, anomalous behavior, and the MITRE ATT&CK framework.
  • Lead vulnerability management, including criticality analysis, risk-based prioritization, and remediation tracking.
  • Participate in defining and implementing controls related to Microsoft Entra ID, MFA, Conditional Access, Identity Governance, and PIM.
  • Support corporate projects by assessing security requirements, risks, and preventive controls.
  • Perform security assessments of Azure, Microsoft 365, and hybrid infrastructure environments.
  • Support data protection initiatives using Microsoft Purview, information classification, and DLP policies.
  • Develop security posture indicators, metrics, and executive reports.
  • Create and maintain security procedures, playbooks, technical standards, and documentation.
  • Conduct risk assessments and support internal and external audits.
  • Act as a technical mentor and reference for Junior and Mid-Level Analysts.
  • Monitor new vulnerabilities, attack campaigns, threat landscape trends, and risks relevant to the business.

Requirements

What you’ll need
  • Bachelor’s degree in Information Security, Computer Science, Information Systems, Computer Engineering, Networking, or a related field.
  • Proven experience in Information Security, Cyber Defense, SOC operations, or Incident Response.
  • Experience with Microsoft Security platforms.
  • Experience conducting incident analysis and investigations.
  • Experience in vulnerability management and risk remediation.
  • Experience working in hybrid environments (cloud and on-premises).
  • Experience implementing or improving security controls.
  • Required technical knowledge: Microsoft Sentinel; Defender for Endpoint, Office 365, Cloud, and XDR; Entra ID; Intune; Purview (DLP/Information Protection); Conditional Access; PIM; Azure Security; TCP/IP, DNS, and HTTP/HTTPS networking; endpoint security; vulnerability management; SIEM/EDR/XDR; MITRE ATT&CK; CIS Controls; ISO 27001; Cyber Incident Response; system and server hardening; and PowerShell for automation and investigations.
  • Preferred certifications and knowledge: Microsoft SC-200, SC-300, AZ-500, and SC-100; CompTIA Security+; CompTIA CySA+; CEH; ISO 27001 Lead Implementer or Internal Auditor; security process automation; threat hunting; industrial OT/ICS environments; Cisco Secure Access/ISE/Umbrella/Firepower; Microsoft Security Copilot; NIST CSF/800-61/800-53; Zero Trust; Brazil’s LGPD; Logic Apps; Power Platform; Application Security; and DevSecOps.

Benefits

Comp & perks
  • Transportation allowance and/or company shuttle service departing from Tatuapé and Tietê subway stations, as well as Pimentas and Cecap bus terminals in Guarulhos
  • On-site meals
  • Meal allowance or grocery basket
  • Medical and dental insurance
  • Private pension plan
  • Life insurance
  • Pharmacy benefit
  • Discounts on Bauducco products
  • Wellhub
  • Wellz