Senior Specialist, Cybersecurity Incident Handler

hace 3 semanas


Ciudad de México KTSA - KPMG Technology Services Americas A tiempo completo

About KTSA We are KTSA – KPMG Technology Services Americas. A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country. We deliver high-value technology, consulting, and corporate support services to KPMG US and its clients. At KTSA, our Employer Value Proposition is clear: Explore. Explore isn't just a word — it's how we grow, lead, and thrive. It's the mindset that drives our culture and shapes every opportunity: Experience a collaborative, inclusive, and multicultural workplace where you belong. Excel by creating impact and leaving your mark on global projects. Expand your potential with real career paths, learning programs, and mentorship. Express your individuality — come as you are, and thrive as your authentic self. And because we know that thriving at work also means thriving in life, we back this mindset with KTSAMÁS, our total rewards program, designed to support your well-being, goals, and personal milestones. RESPONSIBILITIES AND QUALIFICATIONS: Key Responsibilities: Utilize your expertise in IT security, security operations, and incident response to build, operate, and enhance our extended security orchestration and automation (XSOAR) tool, ensuring swift and effective handling of incidents and ongoing protection of organizational assets. Handle and coordinate tasks such as incident management, threat hunting, forensic analysis, and remediation efforts to mitigate threats. Conduct regular assessments to identify vulnerabilities and insecure configurations and review security change requests to ensure robust protective measures. Configure and monitor security tools, including alerts, correlation rules, and reporting mechanisms. Implement automation and orchestration to improve the efficiency and effectiveness of security monitoring and response processes, aiming for a unified "single pane of glass" solution. Leverage intelligence to apply threat monitoring and vulnerability detection to evaluate and respond effectively to events and developing risk severity level and mitigation approaches. Qualifications: Bachelor's degree with 2-5 years of experience in cybersecurity operations with experience implementing processes and playbooks in cybersecurity monitoring and incident response activities using XSOAR products. Experience with scripting or automation with python, and ServiceNow is a plus. Ability to participate in development of resource plans and project estimation. Preferred Qualifications: Relevant certifications include CISSP, CCSP, CCSK, GSEC, GCIH, GCFE, GCFA, SC-200, CEH, and AZ-900 Working hours: Sunday - Wednesday or Wednesday to Saturday 7:00am to 5:00pm or 1pm to 11:00pm Expand your possibilities with KTSA through KTSAMÁS, where you can access: Extended maternity, paternity, and adoption leaves Above-market vacation benefits Learning opportunities, training, and certification programs Extended marriage leave and daycare support Wellness and Employee Assistance Programs (EAP) Comprehensive medical plan, life insurance, car insurance, and funeral assistance Visit to learn more. At KTSA, we celebrate and support everyone's individuality. We do not discriminate against any race, religion, color, national origin, gender, sexual orientation, gender identity or expression, age, marital status, or disability. We are supportive of helping you to achieve a balance between your home and work demands. We are happy to discuss specific requirements and our range of flexible working arrangements could be of interest. Please ask to find out more. We strongly state that we DO NOT require a certificate of non-pregnancy or HIV in order to participate in any of our processes. Explore KTSA, we dare to be different Home - KTSA KTSA - KPMG Technology Services of Americas



  • Ciudad de México HSBC A tiempo completo

    A major global banking institution is seeking a Cybersecurity Incident Handler in Mexico City to manage and respond to cybersecurity incidents. This role involves coordinating multi-business unit responses, maintaining relationships with cybersecurity leads, and managing incidents on a 24x7 basis. Ideal candidates should have advanced degrees in Information...


  • Ciudad de México HSBC A tiempo completo

    If you’re looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies...


  • méxico UST A tiempo completo

    Role Senior Cybersecurity Consultant / Specialist II – Information Security at UST About UST Born digital, UST transforms lives through the power of technology, embedding innovation and agility into everything they do and creating transformative, human‑centered solutions for a better world. Responsibilities Lead consulting engagements across...

  • Senior Security Analyst

    hace 3 semanas


    Ciudad de México Nearshore Cyber A tiempo completo

    Senior Security Analyst**Location**: Mexico (Remote/Work-from-Home)We are seeking an experienced and skilled Senior Security Analyst to join our cybersecurity team. As a Senior Security Analyst, you will be responsible for managing and overseeing security operations, conducting advanced threat analysis, and leading incident response efforts. This role...

  • Staff Incident Responder

    hace 4 semanas


    Ciudad de México Baker Hughes A tiempo completo

    **Are you looking for new opportunities, looking for a change and new challenges?****Do you enjoy being part of a successful team?****Join our team!****Partner with the best****Responsibilities**:- Actively monitor and analyze cybersecurity events from various sources. Use analytical skills to identify, assess, and understand potential security incidents and...


  • Ciudad de México, Ciudad de México Dell Technologies A tiempo completo

    The Dell Security & Resiliency organization manages the security risk across all aspects of Dell's business. You will have an excellent opportunity to influence the security culture at Dell and further develop your career.Join us as aCybersecurity Incident Response Analyst, L3on ourCybersecurity Incident Responseteam inMexicoto do the best work of your...


  • Ciudad de México Nestle A tiempo completo

    Position Summary: Under the supervision and guidance of Product Group Manager, the Sr Specialist Cyber Security is responsible for establishing and maintaining security products, platforms and solutions designed to mitigate IS/IT risks across Nestlé Group to ensure that information assets are adequately protected. S/He is responsible for the...


  • Ciudad de México Nestle A tiempo completo

    Position Summary:Under the supervision and guidance of Product Group Manager, the Sr Specialist Cyber Security is responsible for establishing and maintaining security products, platforms and solutions designed to mitigate IS/IT risks across Nestlé Group to ensure that information assets are adequately protected. S/He is responsible for the identification,...

  • Cybersecurity Specialist

    hace 2 semanas


    Ciudad de México, Ciudad de México Softtek A tiempo completo

    Cybersecurity Specialist - MasterSecurity Auditor - ISO 27001Apoyo en Auditorías internas y externas de ciberseguridad.Seguimiento en planes de acción y remediación.Revisión periódica de la postura de seguridad corporativa.Análisis de reportes de vulnerabilidades.Revisión y actualización de políticas y procedimientos de seguridad.Implementación y...


  • México Continental A tiempo completo

    To provide support and consultancy in topics related to cybersecurity.- To maintain the local devices and networks protected from any cyberattack or risk both inside and outside the plant.- The Local IT Cybersecurity Specialist has the task to support the location, to establish and drive Tire Cybersecurity according to all relevant policies and guidelines.-...