Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Vision Cybersecurity

Cyber Defense Analyst, Tier 2 – Incident Analysis

Vision Cybersecurity

. Process, analyze, and manage requests, incidents, problems, and tasks related to cybersecurity .

Posted 9/21/2026full-timeRemote • BrazilJuniorMid-LevelWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in cybersecurity incident response, including advanced analysis of security events and effective communication with stakeholders. Proficient in utilizing security frameworks and tools to enhance detection and response capabilities.

Highest-signal resume keywords
Incident ResponseSIEM AnalysisCybersecurity FrameworksThreat HuntingTechnical Communication

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Information Security OperationsEvent CorrelationIncident InvestigationSecurity Procedures DevelopmentDDoS MitigationIdentity and Access ManagementAdvanced Security ConceptsTechnical Report PreparationFirewall AnalysisTelemetry Analysis
Soft Skills
Strong Communication SkillsTeam Collaboration
Tools & Technologies
SIEMEDRFirewallsIDS/IPSActive DirectoryAzure ADVPNs
Industry Keywords
CISMITRE ATT&CKNISTISO 27001Web Security ProtocolsIncident Response Workflows

Tech Stack

Tools & technologies
AzureFirewalls

About the role

Key responsibilities & impact
  • Process, analyze, and manage requests, incidents, problems, and tasks related to cybersecurity
  • Perform advanced analysis of events and alerts from SIEM, EDR, firewalls, IDS/IPS, proxy, Active Directory, and other telemetry sources
  • Correlate events to identify malicious behavior
  • Investigate security incidents, including IOCs, TTPs, lateral movement, privilege escalation, persistence, and potential data exfiltration
  • Participate in war rooms during high-severity incidents
  • Contribute to the containment, eradication, mitigation, and recovery of compromised environments
  • Perform specialized analyses of firewall devices
  • Support DFIR operations by preserving and collecting evidence
  • Prepare technical and executive incident reports
  • Maintain formal technical communication with clients and internal teams during incidents
  • Conduct proactive threat hunting based on hypotheses, IOCs, and suspicious behavior
  • Develop, review, and update playbooks, runbooks, procedures, knowledge bases, and incident response workflows
  • Support the enhancement of detection use cases, correlation rules, and response automations
  • Contribute to KPIs such as MTTD, MTTA, MTTR, false-positive rate, and operational efficiency
  • Triage, classify, prioritize, and escalate incidents
  • Perform immediate containment, including host isolation, IOC blocking, and revocation of compromised credentials
  • Conduct technical investigations in EDR, firewall, and SIEM environments without direct supervision in medium- and high-complexity scenarios
  • Provide technical support to the Tier 1 team and participate in technical decision-making during critical incidents

Requirements

What you’ll need
  • Bachelor’s degree in Information Technology or a related field
  • At least 2 years of proven experience in information security operations, maintenance, and support
  • Professional experience in information security, computer networks, and IT infrastructure
  • Knowledge of security frameworks and standards such as CIS, MITRE ATT&CK, NIST, and ISO 27001
  • Ability to create and update security procedures, processes, and documentation
  • Preferred knowledge of advanced security concepts, including authentication, authorization, and encryption
  • Experience with or knowledge of identity and access management, Azure AD, firewalls, IDS/IPS, and VPNs
  • Intermediate English proficiency for technical communication and documentation
  • Strong communication skills for interacting with clients, internal teams, and partners
  • Ability to work with DDoS mitigation solutions
  • Knowledge of web security protocols: SSL, TLS, and HTTPS
  • Preferred experience with the triage and analysis of security events, monitoring, and threat and attack detection using tools such as SIEM

Benefits

Comp & perks
  • Bradesco Top Nacional health insurance
  • Odontoprev dental insurance
  • Life insurance
  • Pipo Saúde: Digital healthcare and corporate benefits brokerage
  • TotalPass
  • Transportation allowance
  • Alelo Tudo: Meal and food benefits on a single card
  • Private pension plan with double employer matching
  • Birthday day off
  • Employee referral program
  • Discounts at educational institutions
  • Vision Baby Kit
  • Exclusive discounts through the SESC group
  • Welcome kit
  • Morning and afternoon coffee with fresh fruit on in-office days
  • DeepLearning: Our corporate university
  • Professional growth opportunities
  • Feedback and development culture
  • Exclusive leadership program
  • Relaxed environment driven by innovation
  • Accessible leadership