Associate Director Threat Detection & Response
Tasks
- Analyze attacker behavior tactics techniques procedures
- Assess CSOC maturity
- Contain incidents
- Coordinate incident triage
- Create Security Operating Procedures
- Develop incident response playbooks
- Eradicate threats
- Escalate high-severity incidents
- Improve detection coverage
- Improve investigation fidelity
- Lead complex incident investigations
- Mentor analysts on incident response
- Optimize CSOC workflows
- Perform post-incident analysis
- Recover services
- Reduce alert fatigue
- Report CSOC metrics
- Scope incident impact
- Support tabletop exercises and readiness
- Support threat hunting partnerships
- Translate incident trends into security recommendations
Perks/Benefits
Skills/Tech-stack
Alert triage | Case management | EDR | Email Security | Escalation management | Forensic analysis | Identity Monitoring | Incident Response | Incident Response Lifecycle | Log Analysis | Mitre Attack | NIST | SIEM | Security operations | Security playbooks | Threat Intelligence | Threat detection | Threat hunting | XDR
Education
Bachelor of Engineering | Bachelor of Science | Master of Science
Related jobs
-
Senior Security Architect MXN 934K-1260KApplication Security | CI/CD | Cloud Security | Code Management | DefectDojoDental insurance | Health insurance | Hybrid work options | Performance bonus | Remote workSenior-level Full TimeMexico R14h ago
-
IAM Engineer II MXN 500K-640KAWS | AWS CDK | Access Control | Access Management | AutomationHybrid work | Occasional travel | On-call rotationMid-level Full TimeMexico Office2d ago
-
Automation | Cloud Forensics | Forensics | Host Forensics | Incident ResponseTravel opportunitiesSenior-level Full TimeMexico; Colombia2d ago
-
Adversary Emulation | Alert triage | Case management | Cybersecurity | Digital forensicsHybrid work | Mentorship | Tabletop Exercise ParticipationMid-level Full TimeINSURGENTES, Mexico3d ago
-
SRE Platform Engineer USD 52K-52KAWS | Amazon EKS | Ansible | Argo CD | Cause analysisRelocation assistance | Remote workMid-level Full TimeRemote, Mexico R3d ago
-
SRE Platform Engineer USD 52K-52KALB | AWS | Amazon EKS | Ansible | Apache KafkaRelocation assistance | Remote workMid-level Full TimeRemote, Mexico R3d ago
-
Active Directory | Azure | Azure Backup | Azure ExpressRoute | Azure FilesMid-level Full TimeGuadalajara, Mexico3d ago
-
Systems Engineer MXN 360K-540K3DES | 802.1Q | AWS | Account Management | Alibaba CloudReasonable accommodations for disabilitiesMid-level Full TimeMexico City, CDMX, Mexico3d ago
-
Sr DevSecOps Engineer - IAM Engineer MXN 721K-1001KAWS | Access Management | ArgoCD | CI/CD | CrossplaneEmployee resource groups | Remote work | Social events | Work-life balanceSenior-level Full TimeGuadalajara, Mexico R4d ago
-
Product Security Engineer MXN 360K-480K800-53 | ASPM | Access Management | Azure DevOps | CI/CDEmployee assistance program | Health insurance | Life insurance | Paid Holidays | Paid time offMid-level Full TimeMexico City R6d ago
-
Cybersecurity Business Group Lead MXN 360K-456KAccess Management | Account development | Client Relationship Management | Client relationship | CyberArkAccess to innovative tools | Career development | Continuous training | Direct contact with experts | Global projectsSenior-level Full TimeMexico City, Torre Arcos7d ago
-
Cybersecurity | Guardicore | Security Operations Centre | Security operations | TicketingMid-level Full TimeMexico City, MX8d ago
-
Detection Systems | Event management | Firewalls | ICS Security | IDSDisability coverage | Elective benefits | Life insurance | Private medical care | Tailored financial programsSenior-level Full TimeMX-DF-MEXICO CITY-AVENIDA ANTONIO DOVALI JAIME 70, …8d ago
-
Senior SRE/DevOps MXN 780K-1200KAmazon Web Services | Ansible | Azure | CI/CD | DynatraceRemote workSenior-level Full TimeMexico9d ago
-
Access Control | CIS | Capture analysis | Cisco | Cloud NetworkingSenior-level Full TimeMexico - Mariano Escobedo 5739d ago
-
Systems Engineer MXN 692K-800KAuthentication | Control Systems | Cybersecurity Framework | DCS | EncryptionIndustry event participation | Training support | Travel up to 50 percentSenior-level Full TimeMexico City, CDMX, Mexico9d ago
-
Adversarial Machine Learning | Anomaly Detection | Deep learning | DevSecOps | Graph AnalysisInclusive workplace | Remote-friendlyMid-level Full TimeCDMX, MEX, Mexico9d ago
-
Senior-level Full TimeMonterrey, NLE, MX13d ago
-
Access Control | Access Control Lists | Backup and Recovery | Control Systems | Incident Response24 7 Operations Shift Work | Weekend and Holiday Shift CoverageMid-level Full TimeGuadalajara, Mexico13d ago
-
Local Information Security Advisory MXN 132K-132KDetection Systems | Incident Response | Intrusion Detection | Intrusion detection systems | Network SecurityEntry-level Full TimeGuadalajara - La Tijera, Jalisco, Mexico14d ago
-
Senior Security Infrastructure Engineer USD 60K-114KAWS | Application Security | CI/CD | Cause analysis | Container SecuritySenior-level Full TimeMexico, Remote R14d ago
-
Active Directory | Azure Backup | Azure Files | Azure Monitor | Azure Site RecoveryMid-level Full TimeGuadalajara, Mexico16d ago
-
Senior Cyber Security Engineer MXN 554K-620KAWS | Automation and response | Azure | Cloud platform | Cyber Kill ChainCareer development | Global opportunities | Hybrid work | Pay transparencySenior-level Full TimeGuadalupe, Mexico18d ago
-
Senior Cyber Security Engineer MXN 554K-620KAWS | Azure | Cloud platform | Detection engineering | EDRCareer development | Global opportunities | Pay transparencySenior-level Full TimeGuadalupe, Mexico18d ago
-
AWS | CIS Controls | Cloud Security | Cryptography | Cybersecurity FrameworkAdditional vacation days | Career growth | Continuous learning access | Health benefitsSenior-level Full TimeMexico City, Mexico City, Mexico23d ago