4 ΡΠ°ΡΠ° Π½Π°Π·Π°Π΄
Senior Security Analyst - SOC/CTI (Fintech)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
Π’Π΅ΠΊΡΡ:
TL;DR
Senior Security Analyst - SOC/CTI (Fintech): Detecting, investigating, and neutralizing threats targeting payment infrastructure, digital assets, and customer data with an accent on real-time SOC operations, cyber threat intelligence, and threat hunting. Focus on leading incident response, mapping adversary TTPs with MITRE ATT&CK, enriching detection engineering, and prioritizing vulnerabilities across on-premises and cloud environments.
Location: Curitiba, Brazil β on-site
Company
is a global fintech and payments platform connecting digital businesses with customers across 21 high-growth markets.
What you will do
- Lead threat detection, monitoring, triage, incident response, and forensic investigations across SIEM, EDR/XDR, and cloud-native security tools.
- Produce and operationalize cyber threat intelligence on threat actors, TTPs, malware families, and campaigns targeting fintech and payment infrastructure.
- Lead intelligence-driven threat hunting across on-premises and AWS and Azure cloud environments.
- Develop and tune detection rules, correlation logic, and threat models to reduce dwell time and false positives.
- Assess vulnerabilities and CVEs against the attack surface, prioritize remediation, and coordinate with IT and development teams.
- Support PCI-DSS, ISO 27001, LGPD, and other security audits while producing technical and executive-level intelligence reports.
Requirements
- Hands-on L2/L3 SOC experience in incident handling, threat detection, and security monitoring across on-premises and cloud environments.
- Proven cyber threat intelligence experience, including threat actor tracking, malware and campaign analysis, and actionable intelligence reporting.
- Deep knowledge of MITRE ATT&CK, adversary profiling, TTP mapping, threat modeling, and ATT&CK Navigator.
- Experience conducting structured threat-hunting missions with behavioral analytics and custom queries such as KQL or SPL.
- Strong proficiency with SIEM, EDR/XDR, threat intelligence platforms, sandbox environments, and cloud-native security tools.
- Advanced English required for producing and presenting intelligence to technical and executive audiences; at least one required certification must be held: GIAC GCTI, GIAC GCIH, GIAC GCIA, CompTIA CySA+, or eCTHP.
Nice to have
- Experience with fintech or payments threat landscapes, fraud patterns, and payment infrastructure threats.
- Experience with PCI-DSS, ISO 27001, and SOC 2 governed environments.
- Additional certifications such as GIAC GCED, CHFI, eCDFP, BTL2, AWS Certified Security β Specialty, or Azure Security Engineer Associate.
- Experience with MISP, OpenCTI, YARA, or Sigma rules.
Culture & Benefits
- Annual performance bonus based on company results.
- Monthly meal allowance and medical and dental plans with dependent coverage.
- Financial assistance for undergraduate, graduate, and MBA programs.
- Budget for courses, certifications, and workshops, plus language classes.
- Semi-flexible hours, a birthday day off, year-end break, and well-being programs.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β
ΠΠΎΡ ΠΎΠΆΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
6 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
DevSecOps Engineer / Security Solutions Lead (AI Security)
10 ΡΠ°ΡΠΎΠ² Π½Π°Π·Π°Π΄
Senior Security Infrastructure Engineer (AWS/Kubernetes)
5Β 000 - 9Β 500$
5 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Staff Security Engineer (AppSec)
6 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Deputy CISO - Operational Delivery (Telecom Security)
7 ΡΠ°ΡΠΎΠ² Π½Π°Π·Π°Π΄
Solutions Engineer (Cybersecurity)
6 ΡΠ°ΡΠΎΠ² Π½Π°Π·Π°Π΄