Cyber Security Incident Response Technical Leader
Mercado LibreWhat You'll Do
Lead the technical strategy for Incident Response, defining architecture, processes, and stacks for SIEM, EDR, XDR, or SOAR. Act as a reference for critical incidents, enhancing the team's technical capabilities in Threat Hunting, digital forensics, malware analysis, and automation of playbooks using APIs and Python. Ensure operational excellence from triage to postmortem, utilizing metrics like MTTD and MTTR.
What We're Looking For
Solid experience in Cybersecurity focusing on Incident Response, Threat Hunting, and Digital Forensics, preferably in large-scale 24/7 environments like SOC or CSIRT. Advanced knowledge of security tools and frameworks, including EDR or XDR (e.g., CrowdStrike, Defender) and SIEM (e.g., Elastic, Splunk). Proficiency in Python or Bash for automation and scripting, and experience with cloud environments like AWS or GCP.
What We Offer
Hybrid work arrangement with an office located in Osasco, São Paulo. The company promotes innovation and collaboration across teams.
Key Skills & Technologies
Additional Information
Experience Level
Lead / Principal
Job Language
Portuguese
Employment Type
Full-time
Work Mode
Hybrid