EBANX is one of the most successful fintechs to emerge from Latin America — and today, we are building a truly global payments company. Our mission has remained constant from day one: to unlock access and enable companies and consumers to participate in the digital economy, no matter where they are.
What started as a bold vision has grown into a platform that connects some of the world’s largest digital businesses with customers across 21 of the fastest-growing markets. We operate where complexity exists — turning local challenges into global opportunities, and building the infrastructure that allows payments to move further, faster, and smarter.
We are a team of builders and problem-solvers. We think globally, act with curiosity, and believe diversity of thought is a competitive advantage.
As EBANX enters its next phase of hyper growth, we are looking for people who want to shape the future of payments, expand what’s possible, and help connect businesses and consumers across borders.
Let’s build what’s next — together.
At EBANX’s IT team you don’t just manage systems and infrastructure. You ensure that our technology, which connects millions of people to global companies, runs flawlessly every day. Here, every solution you create has a direct impact on the revolution of digital payments, making our work truly Out Of The Ordinary.
Mission
As a Senior SOC & CTI Analyst, your mission is to proactively detect, investigate, and neutralize threats targeting EBANX's payment infrastructure, digital assets, and customer data. You will be at the intersection of real-time security operations and strategic threat intelligence, translating adversary knowledge into actionable defenses that protect EBANX's operations, reputation, and financial performance. By leading threat hunting initiatives, enriching detection capabilities with intelligence, and driving the maturity of SOC processes, you will help EBANX stay ahead of the evolving threat landscape while scaling securely.
What your day-to-day will look like
- Leading threat detection and incident response operations — monitoring, triaging, and investigating alerts across SIEM, EDR/XDR, and cloud-native security tools, managing incidents end-to-end to minimize operational and financial impact, and conducting forensic analysis on compromised assets;
- Producing and operationalizing Cyber Threat Intelligence — collecting, analyzing, and disseminating finished intelligence on threat actors, TTPs, malware families, and campaigns targeting the fintech and payments sector, with a strong focus on MITRE ATT&CK mapping and adversary profiling;
- Leading proactive threat hunting initiatives — hypothesizing and investigating potential compromises across on-premises and cloud environments (AWS, Azure) before alerts fire, using intelligence-driven hypotheses and behavioral analytics;
- Managing and enriching detection engineering — developing and tuning detection rules, correlation logic, and threat models based on intelligence findings and gap analysis, reducing dwell time and false positive rates;
- Monitoring vulnerabilities with an intelligence lens — contextualizing CVEs and emerging threats against EBANX's attack surface, prioritizing remediation based on active exploitation evidence, and coordinating with IT and development teams;
- Supporting compliance and security audits — ensuring alignment with PCI-DSS, ISO 27001, LGPD, and other applicable frameworks, collaborating with risk, legal, and compliance teams on evidence and control validation;
- Producing intelligence and executive-level reporting — delivering tactical, operational, and strategic threat intelligence products for both technical teams and leadership stakeholders.
What you need to shine in this role
- Solid hands-on experience in SOC operations, including L2/L3 incident handling, threat detection, and security monitoring across on-premises and cloud environments;
- Proven experience in Cyber Threat Intelligence — producing intelligence reports, tracking threat actor groups, analyzing malware and campaigns, and converting raw data into actionable intelligence products;
- Deep knowledge of the MITRE ATT&CK framework — proficiency in adversary profiling, TTP mapping, threat modeling, and using ATT&CK Navigator for gap analysis and detection coverage;
- Experience with threat hunting — developing and executing structured hunting missions using intelligence-driven hypotheses, behavioral analytics, and custom queries (e.g., KQL, SPL, or similar);
- Strong proficiency with SOC tooling — SIEM platforms, EDR/XDR solutions, threat intelligence platforms (TIPs), sandbox environments, and cloud-native security tools;
- Familiarity with fintech or payments threat landscape — understanding of fraud patterns, adversary motivations, and threat vectors specific to payment infrastructure is a strong advantage;
- Experience in environments governed by PCI-DSS, ISO 27001, and SOC2 frameworks;
- Strong technical leadership — ability to mentor peers, lead complex investigations, drive detection improvement initiatives, and coordinate with cross-functional teams;
- Strong ownership mindset — autonomy, accountability, and proactive problem-solving with a bias for action;
- Advanced English — ability to produce and present intelligence products for both technical and executive audiences.
Required Certifications (at least one required; others are a strong plus)
- GIAC GCTI – Cyber Threat Intelligence
- GIAC GCIH – Incident Handler
- GIAC GCIA – Intrusion Analyst
- CompTIA CySA+
- eCTHP – eLearnSecurity Certified Threat Hunting Professional
Bonus points if you have
- GIAC GCED – Enterprise Defender
- CHFI – Computer Hacking Forensic Investigator
- eCDFP – eLearnSecurity Certified DFIR Professional
- Blue Team Level 2 (BTL2)
- AWS Certified Security – Specialty or Azure Security Engineer Associate
- Experience with open-source CTI tooling (MISP, OpenCTI, YARA, Sigma rules)
- Performance Bonus: Annual bonus program based on company results.
- Meal Allowance: Monthly allowance to support your meals.
- EBANX Education: Financial assistance for undergraduate, graduate, and MBA programs to support your professional growth.
- EBANX Skills: Dedicated budget for courses, certifications, and workshops to encourage continuous learning.
- Language Classes: Language classes to support your personal and professional development.
- Health & Well-being: Medical and dental plans with extensive coverage, including support for dependents and wellness programs.
Flexible Work Culture: Semi-flexible hours, additional day off on your birthday, and year-end break to support work-life balance. - Well-being Program: Access to activities and resources that promote physical and mental health.
Learn more about our #ebanxlife on LinkedIn and Instagram, and see what it’s like to be part of a global team that breaks barriers, creates opportunities, and celebrates every achievement together.
✨ An Out Of The Ordinary career is waiting for you here!
Skills Required
- Hands-on SOC operations experience including L2/L3 incident handling and forensic analysis
- Proven Cyber Threat Intelligence experience producing finished intelligence and adversary profiling
- Deep knowledge of MITRE ATT&CK and experience using ATT&CK Navigator for mapping and gap analysis
- Threat hunting experience using intelligence-driven hypotheses and queries (e.g., KQL, SPL, or similar)
- Proficiency with SOC tooling: SIEM platforms, EDR/XDR solutions, TIPs, and sandbox environments
- Experience operating in cloud environments (AWS, Azure) and with cloud-native security tools
- Experience in environments governed by PCI-DSS, ISO 27001, and SOC2
- At least one of the required certifications (GCTI, GCIH, GCIA, CompTIA CySA+, eCTHP)
- Advanced English proficiency for producing and presenting intelligence to technical and executive audiences
- Familiarity with the fintech/payments threat landscape (fraud patterns, payment infrastructure threats)
- Familiarity with open-source CTI tooling and detection rule formats (MISP, OpenCTI, YARA, Sigma)
Ebanx Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Ebanx and has not been reviewed or approved by Ebanx.
-
Healthcare Strength — Healthcare coverage is positioned as a core benefit in Brazil, with medical and dental plans and added supports like dependent subsidies and pharmaceutical assistance. This breadth suggests a stronger-than-baseline health offering for many Brazil-based roles.
-
Wellbeing & Lifestyle Benefits — Wellbeing benefits include gym and studio access via Wellhub/TotalPass plus an internal sports/wellness program, alongside lifestyle perks such as snacks, pet-friendly space, and partner discounts. These items indicate a meaningful emphasis on day-to-day wellbeing beyond salary.
-
Parental & Family Support — Family-oriented benefits include childcare assistance, extended caregiver leave, and support programs for pregnancy and parenting. This points to structured support for employees with caregiving responsibilities, at least in the Brazil baseline package.
Ebanx Insights
What We Do
WE GIVE ACCESS Since our founding in 2012, our aim is to make the world an explorable place for Latin Americans, and Latin America a possible region for international companies to enter. By offering local payment methods across LatAm we are conquering these desire day after day and already helped over 1000 merchants expand their business into the region and over 50 million Latin Americans to access global services and products. Companies like Airbnb, Wish, Spotify, Deezer, Aliexpress, Shopee, Ctrip and many other are among our portfolio. EBANX is headquartered in Curitiba - Brazil, but we are spread in all Latin America, US, China and Europe. Today, we are almost 1000 bankers around the world. More information about the company can be found on the official website. Watch our official video to know more about EBANX: https://youtu.be/h6y13xsDw-c







