About the Opportunity:
Modirum | Gespi is strengthening our Information Security team to protect our growing operations. We are seeking a skilled Security Analyst to join our cybersecurity team and play a crucial role in safeguarding our information assets, monitoring security threats, and ensuring compliance with security policies and regulatory requirements. This position offers the opportunity to work in a dynamic environment supporting both traditional business operations and specialized manufacturing systems.
Your Role in the Team:
As a Security Analyst, you will be at the forefront of our cybersecurity operations, working to detect, analyze, and respond to security threats. You will:
- Monitor security events and alerts using SIEM tools and security monitoring platforms
- Conduct security incident analysis, investigation, and coordinate incident response activities
- Perform vulnerability assessments and manage vulnerability remediation processes
- Analyze security logs, network traffic, and system activities to identify potential threats
- Develop and maintain security monitoring rules, alerts, and detection capabilities
- Conduct security risk assessments and contribute to risk management activities
- Support security audits and compliance assessments, including ISO 27001 preparation
- Implement and maintain security controls across IT infrastructure and applications
- Collaborate with IT teams on security tool deployment and configuration
- Investigate security incidents and prepare detailed incident reports
- Support security awareness training and user education initiatives
- Maintain security documentation, procedures, and knowledge base
- Monitor third-party security assessments and vendor security compliance
- Assist with security policy development and implementation
- Support email security monitoring and threat analysis
Qualifications:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field
- 2+ years of experience in cybersecurity, security operations, or security analysis
- Strong knowledge of security frameworks and best practices
- Experience with security monitoring tools, SIEM platforms, and log analysis
- Understanding of network security concepts and technologies
- Knowledge of vulnerability management processes and tools
- Experience with incident response procedures and forensic analysis
- Familiarity with compliance frameworks (ISO 27001, NIST, etc.)
- Strong analytical and problem-solving skills
- Excellent written and verbal communication skills
- Ability to work independently and manage multiple priorities
- Security certifications (Security+, GSEC, CySA+, or equivalent)
- Experience with Microsoft 365 security features and Azure security tools
- Knowledge of manufacturing and industrial control system security
- Experience with threat intelligence platforms and analysis
- Familiarity with cloud security (AWS, Azure, GCP)
- Experience supporting ISO 27001 or other compliance certifications
- Scripting skills (PowerShell, Python, Bash)
- Experience with penetration testing or ethical hacking
- Knowledge of LGPD and data privacy regulations
What We Offer:
- Key role in building and strengthening our cybersecurity capabilities
- Opportunity to work on diverse security challenges across office and manufacturing environments
- Direct involvement in ISO 27001 certification preparation and implementation
- Collaboration with cross-functional teams and exposure to various technologies
- Professional development opportunities and security certification support
- Opportunity to contribute to security policy development and program growth
- Competitive salary and comprehensive benefits package
- Dynamic work environment with opportunities for career advancement