FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Information Security Analyst (Mid-level) – Vulnerability and Identity Management
Portobello ShopInformation Security Analyst managing Vulnerability and Identity Management processes at Portobello. Collaborating on incident response and maintaining security measures in a dynamic retail environment.
Tech Stack
Tools & technologiesLinuxOpen SourcePythonTCP/IP
About the role
Key responsibilities & impact- Operate Information Security controls focused on the Vulnerability Management lifecycle and the operation of Identity and Access Management (IAM), working collaboratively on monitoring, triage, and initial incident response across the company.
- Execute the Vulnerability Management lifecycle: analyze scan results, perform risk-based prioritization, and coordinate and follow up on remediation with the responsible teams (Infrastructure, Systems, etc.).
- Maintain, update, and improve operational metrics and remediation workbooks (agent coverage, severity, SLA tracking for fixes).
- Operate Identity and Access Management (IAM) processes: provisioning, deprovisioning, privilege granting, periodic access reviews, and support for MFA mechanisms.
- Actively support corporate access review campaigns and validation of segregation of duties (SoD).
- Monitor, classify, and investigate alerts generated by security tools within your scope.
- Perform triage and initial analysis of security incidents, executing structured escalation to a Specialist when necessary.
- Produce periodic operational reports and security indicators for your area of responsibility.
- Create and keep technical documentation and standard operating procedures (SOPs) up to date.
Requirements
What you’ll need- Professional experience in Information Security, Infrastructure, Systems Administration, or related areas with a security focus.
- Hands-on experience in Vulnerability Management processes and with commercial scanning tools (Qualys, Tenable, Rapid7, or equivalents).
- Solid knowledge of Active Directory, IAM, SSO, and MFA solutions.
- Practical experience monitoring and triaging alerts in SIEM platforms.
- Knowledge of TCP/IP networking, segmentation, and communication protocols.
- Basic administration knowledge of Windows and Linux environments.
- Proven ability for technical analysis and strong care for documenting activities.
- Strong analytical skills and meticulous attention to detail.
- Organized, disciplined, and focused on executing standardized processes.
- Good communication skills for daily interaction with technical teams and business areas.
- Sense of responsibility and interest in continuous learning.
- Specific experience with Wazuh, Elastic Stack (ELK), or other open-source SIEM platforms.
- Knowledge of the ISO/IEC 27001 and CIS Controls frameworks.
- Knowledge of LGPD (Brazilian General Data Protection Law) as applied to logs, identities, and personal data protection in security tools.
- Basic scripting skills (PowerShell, Bash, or Python) for automating routine tasks.
- Entry-level information security certifications (e.g., Security+, CySA+, Microsoft SC-900/SC-300).
Benefits
Comp & perks- Life insurance
- Health and dental insurance
- On-site cafeteria
- Transportation voucher or dedicated company shuttle for employees — specific routes
- Corporate learning platform (Universidade Portobello)
- On-site medical clinic
- Workplace physical exercise program
- Profit-sharing program (PPR)
- Discounts at local pharmacies
- Free parking
- Private pension plan
- Union membership
- Discount network — partnerships with various educational institutions
- Discounts on Portobello product purchases
- Vacation allowance
- Portobello "Mom" allowance — assistance for baby layette purchases
- Childcare allowance
- Assistance for dependents with disabilities
- Training and professional development programs
- Wellhub and many more!
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Vulnerability Management ProcessesRisk-Based PrioritizationTCP/IP NetworkingBasic Scripting (PowerShell, Bash, Python)Technical Analysis
Soft Skills
Analytical SkillsAttention To DetailOrganizational SkillsCommunication SkillsSense Of Responsibility
Certifications
Security+CySA+Microsoft SC-900Microsoft SC-300