Especialista em Wazuh | Cyber Security
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Especialista em Wazuh | Cyber Security based in Brazil.
This role is designed for a cybersecurity specialist with deep expertise in SIEM platforms, security monitoring, and threat detection.
You will be responsible for implementing, configuring, and continuously improving security monitoring capabilities using Wazuh.
The position offers the opportunity to work closely with SOC teams, investigating incidents and enhancing detection strategies.
You will contribute to strengthening cybersecurity operations through advanced event analysis, automation, and security engineering practices.
Working in a fully remote environment, you will collaborate with skilled professionals focused on protecting critical digital environments.
This is an opportunity for a security expert who wants to work with modern technologies and help organizations improve their cyber resilience.
Accountabilities:
The role focuses on managing and evolving security monitoring solutions through Wazuh implementation, SIEM administration, threat detection improvements, and incident investigation support. The professional will work closely with security operations teams to improve visibility, reduce risks, and strengthen cybersecurity processes.
- Implement, configure, and administer Wazuh environments according to security monitoring requirements.
- Create, customize, and optimize detection rules, decoders, and event correlations.
- Perform alert tuning activities to reduce false positives and improve detection accuracy.
- Analyze security events, logs, and alerts to support incident investigations.
- Configure and maintain Wazuh agents across Windows and Linux environments.
- Integrate Wazuh with other cybersecurity tools and platforms.
- Support the evolution of monitoring use cases and SOC capabilities.
- Create dashboards and improve security visibility through effective reporting and analysis.
- Troubleshoot issues related to event collection, communication, and processing.
- Document configurations, procedures, improvements, and technical solutions.
- Support SOC operations by enhancing detection workflows and security monitoring maturity.
- Advanced experience with Wazuh implementation, configuration, and administration.
- Experience managing and operating SIEM environments.
- Strong knowledge of creating and customizing detection rules and security correlations.
- Experience analyzing logs, alerts, and security events.
- Knowledge of Windows and Linux operating systems.
- Familiarity with security data formats and technologies such as:
- JSON.
- YAML.
- Regex.
- Syslog.
- Experience investigating security alerts and supporting incident response activities.
- Understanding of SOC operations, Blue Team practices, and cybersecurity monitoring concepts.
- Ability to troubleshoot technical issues and improve security processes.
- Experience with security frameworks, monitoring tools, and threat analysis is highly valued.
- Experience with SIEM platforms such as IBM QRadar, Elastic Stack, Splunk, or Microsoft Sentinel.
- Knowledge of MITRE ATT&CK, Threat Intelligence, EDR/XDR, and Vulnerability Management.
- Understanding of infrastructure technologies, including networks, firewalls, cloud environments, and containers.
- Experience developing automation scripts using Python, Bash, or PowerShell.
- Fully remote work model.
- PJ contracting model with immediate availability.
- Structured career development plan with periodic reviews.
- Support for technical courses and professional certifications.
- Online healthcare support, including telemedicine, specialists, nutrition, and psychology services.
- Life insurance.
- Accounting support for MEI professionals.
- Birthday day off.
- Additional paid leave after one year.
- Opportunity to work with advanced cybersecurity technologies and real-world security projects.
Nice-to-have qualifications:
Benefits:
Requirements:
The ideal candidate is a cybersecurity professional with advanced experience in Wazuh, SIEM technologies, and security operations. The role requires strong technical knowledge, analytical thinking, and experience working with security events, detection engineering, and incident response processes.
How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether? Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1