Ensure the continuity, security, and evolution of the information technology infrastructure, guaranteeing that physical and logical resources are always available, up-to-date, and aligned with the organization’s operational needs through efficient, proactive, and innovative management.
Configure and manage security policies on Linux operating systems, including access control, file permissions, and firewall settings;
Monitor event logs on Linux servers and workstations to identify suspicious or anomalous activity;
Apply patches and security updates to Linux systems in accordance with established guidelines;
Implement hardening practices on Linux servers and workstations, in line with the organization’s security standards;
Conduct periodic compliance audits on Linux systems, verifying adherence to internal and regulatory security policies;
Evaluate user permission and privilege configurations on Linux systems to identify deviations or excessive access;
Document security incidents related to the Linux environment and propose technical recommendations for mitigation;
Collaborate with internal teams in investigating incidents involving Linux systems;
Prepare technical reports on the security status of Linux systems and performance metrics of the tools used;
Configure and maintain firewalls and other security tools on Linux systems, such as iptables and UFW (Uncomplicated Firewall);
Perform periodic scans to detect vulnerabilities on Linux servers and workstations;
Conduct integrity audits of critical files and log systems in Linux environments;
Evaluate the use of privileged accounts and the segregation of duties on Linux systems during audits;
Implement and manage data encryption solutions on Linux systems, such as LUKS (Linux Unified Key Setup), to protect sensitive information;
Evaluate and configure application control policies (SELinux/AppArmor) to prevent the execution of unauthorized software;
Monitor and respond to security alerts generated by SIEM (Security Information and Event Management) tools specific to Linux environments;
Implement and monitor security policies to protect critical services, such as SSH, LDAP, and databases on Linux systems;
Perform forensic analysis on compromised Linux systems to identify attack vectors and impacts;
Evaluate and implement multi-factor authentication (MFA) solutions in Linux environments;
Develop resilient and secure architectures for Linux systems, including network segmentation, load balancing, and the implementation of granular controls to minimize attack surfaces;
Conduct simulations of advanced attacks, such as exploiting zero-day vulnerabilities, privilege escalation techniques, and lateral movement, to identify flaws and propose robust improvements;
Create and maintain custom scripts (in Bash, Python, or other languages) to automate tasks such as containing compromised endpoints, disabling suspicious accounts, and removing malware;
Design and implement advanced strategies for the prevention, detection, and recovery from ransomware attacks, including immutable backups, rapid restoration of critical systems, and regular disaster scenario simulations;
Perform other activities related to information security and Linux environments, as required by the operation.
· Bachelor’s degree in Information Technology (IT).
· Experience in information security or Linux environments. Experience must be demonstrated through a corporate employment contract or Work Permit, both of which must include start and end dates for the position.
CERTIFICATIONS/COURSES/TRAINING:
· ITIL 4 training, with a minimum duration of 12 (twelve) hours.
· Official ITIL 4 Foundation certification or higher
· Linux Professional Institute (LPIC-3) Security certification.
Must hold one of the following certifications:
◦ ECSA (EC-Council Certified Security Analyst) or ◦ CySA+ (CompTIA Cybersecurity Analyst) or ◦ ECIH (EC-Council Certified Incident Handler) or
CSIH (Certified Specialist Incident Handler).
Additional Information
Our benefits:
Hapvida, Bradesco, or Unimed health insurance (based on regional collective bargaining agreement rates);
Hapvida Odonto or Bradesco Dental dental insurance;
Food or meal vouchers;
Life insurance fully covered by Lanlink;
Totalpass;
Pharmacy discount program;
College discount program;
Corporate education platform;
“Welcome to the World, Baby” kit;
Moodar platform.