Threat Detection & Response Senior Specialist
Tasks
- Analyze logs for scope and impact
- Automate incident response workflows
- Collect evidence from endpoints
- Coordinate containment and response
- Design and implement playbooks
- Develop and enhance SIEM content
- Develop incident reports
- Escalate higher severity incidents
- Investigate security incidents
- Mentor junior staff
- Monitor security controls in real time
- Perform host-based analysis
- Perform malware analysis
- Perform network packet analysis
- Perform quality assurance for investigations
- Support incident response scoping
- Triage security alerts
- Tune security sensors
Perks/Benefits
Skills/Tech-stack
Bash | EDR | Email Security | Forensics | Identity Monitoring | Incident Response | Log Analysis | Malware analysis | Network Packet Analysis | Network packet | Packet Analysis | Powershell | Python | SIEM | SOAR | Scripting | Threat Intelligence | Threat hunting | XDR
Education
Bachelor of Engineering | Bachelor of Science | Master of Science
Related jobs
-
OT Cybersecurity Engineer & Incident Responder MXN 720K-960KAsset investigation | Firewall | ICS | IDS | Incident ResponseDisability coverage | Elective voluntary benefits | Life insurance | Private medical care | Wellbeing programsSenior-level Full TimeMX-DF-MEXICO CITY-AVENIDA ANTONIO DOVALI JAIME 70, …3d ago
-
Application Security Engineer (Tech Lead) ID71666 MXN 720K-960KApplication Security | Application Security Posture Management | CI/CD | Cloud Security | Code reviewFlexible schedule | Mentorship | Professional growth | Remote work optionsSenior-level Full TimeGuadalajara, Mexico5d ago
-
Application Security Engineer (Tech Lead) ID71666 MXN 720K-960KApplication Security | Application Security Posture Management | CI/CD | Cloud Security | Code ScanningEducation budget | Fitness budget | Flexible schedule | Mentorship | Office optionsSenior-level Full TimeZapopan, Mexico5d ago
-
Application Security Engineer (Tech Lead) ID71666 MXN 720K-960KApplication Security | CI/CD | Cloud Security | Code Scanning | Code reviewFlexible schedule | Mentorship | Professional growth | Remote work options | TechtalksSenior-level Full TimeCiudad de México, Mexico5d ago
-
Application Security Engineer (Tech Lead) ID71666 MXN 720K-960KApplication Security | Application Security Posture Management | CI/CD | Cloud Security | Code reviewFlexible schedule | Mentorship | Office work options | Professional growth | Remote work optionsSenior-level Full TimePuebla (Heroica Puebla), Mexico5d ago
-
Application Security Engineer (Tech Lead) ID71666 MXN 720K-960KCI/CD | Cloud Security | DevSecOps | Java | PythonFlextime | Mentorship | Office work options | Personalized growth roadmaps | Professional growthSenior-level Full TimeQuerétaro, Mexico5d ago
-
Application Security Engineer (Tech Lead) ID71666 MXN 720K-960KApplication Security | Application Security Posture Management | CI/CD | Cloud Security | Code ScanningFlexible schedule | Mentorship | Office options | Professional growth | Remote work optionsSenior-level Full TimeLeón de los Aldama, Mexico5d ago
-
Especialista Ingenieria Accesos MXN 420K-420KABAC | AWS IAM | Access Management | Active Directory | Azure Active DirectorySenior-level Full TimeCIUDAD DE MEXICO, Ciudad de México, …6d ago
-
Oracle Security Analyst MXN 720K-960KApache | Application Firewall | Hardening | ISO 27001 | JVMRemote workSenior-level Full TimeRemote Mexico R6d ago
-
Risk Analytics and Modelling Analyst MXN 300K-300KBigQuery | Data Analysis | Data Visualization | Hadoop | LLMMid-level Full TimeCuauhtemoc, Distrito Federal, Mexico7d ago
-
AWS | Active Directory | Attack surface | Attack surface management | Azure Active DirectoryEmployee networks | Paid adoption leave | Paid parental leave | Paid travel time | Professional developmentSenior-level Full TimeMEX Remote, Mexico R8d ago
-
SOC Analyst MXN 230K-240KEDR | Email Security | Incident Response | Malware analysis | PhishingDental insurance | Grocery vouchers | Internet bonus | Law benefits | Life insuranceMid-level Full TimeMexico City, Mexico City, Mexico13d ago
-
Senior Information Security Specialist MXN 789K-986KAlert triage | Case management | Cloud Security | Data Loss Prevention | Data lossAccess to Headspace app | Employee incentive programs | Flexible vacation | Flexible work arrangements | Hybrid work modelSenior-level Full TimeMexico, Mexico City R13d ago
-
Mid-level Full TimeRemote (Mexico) R14d ago
-
Especialista de ops de seg de id y accesos MXN 168K-192KAccess Control | Access Management | Active Directory | Azure Active Directory | CyberArk SentrySenior-level Full TimeCuliacán, Sinaloa, Mexico14d ago
-
Security Analyst (Contract) USD 76K-96KAWS | Application Security | Bash | CASB | CI/CDContract position | Supportive collaborative teamMid-level ContractMexico - Remote R16d ago
-
Senior Security Platform Engineer MXN 1000K-1300KAI Security | AWS | Azure | Bash | Cloud platformFlexible vacation | Headspace access | Hybrid work | Mental health days | Retirement savingsSenior-level Full TimeMexico, Mexico City R21d ago
-
AI | API Integration | DLP | Incident Response | LLMPaid time off | Remote work | Work with autonomySenior-level Full TimeMexico City R22d ago
-
Security Operations Analyst MXN 1040K-1462KAccess Management | Bash | CCPA | Cloud Security | CloudFormationEmployee assistance program | Healthcare insurance | Life insurance | Paid Company Holidays | Pension or retirement matchingSenior-level Full TimeMexico City22d ago
-
AWS | CSPM | Cloud Security | Cloud Security Posture | Cloud Security Posture ManagementOn-call rotation | Remote workMid-level Full TimeMexico City, Mexico - Remote R27d ago
-
Subdirector de Ciberseguridad y Cumplimiento Tecnológico MXN 456K-456KAWS | Application Firewall | Azure | Business Continuity | CISAExecutive-level Full TimeMérida, Mexico27d ago
-
Senior Analyst, Risk Management & Analytics (R14040) MXN 540K-600KAlternative data | Credit Scoring | Data Analysis | Experimentation | Microsoft ExcelEqual opportunity employer | Remote workSenior-level Full TimeRemote - MX R28d ago
-
Security Operations Engineer I (Bot Defense) MXN 300K-300KApplication Security | Brute Force | CSRF | Cookie manipulation | Cross-Site ScriptingNone Full TimeGuadalajara, Mexico1mo ago
-
Senior Security Engineer MXN 721K-800KAWS | Bug Bounty | CloudTrail | Endpoint Management | GoExtended parental leave | Medical, dental & vision coverage | Unlimited PTOSenior-level Full TimeCDMX1mo ago
-
Manager, Security Engineering & Operations USD 123K-175KAWS | Automated detection | Automated remediation | Automated response | CNAPPSenior-level Full TimeGuadalajara, Mexico R1mo ago