Sr. Cybersecurity Incident Response Analyst
hace 2 semanas
Location : Monterrey, Mexico Role : Sr. Cybersecurity Incident Response Analyst (Threat Hunting) Blue Yonder Job Profile : Sr Security Engineer, Security Architect Overview Blue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting) to join its Security Operations (SOC) team. The successful candidate will be responsible for assisting with the organization's Tier 2 incident response efforts in the event of a security breach or cyber‐attack. This role requires strong technical skills, attention to detail, and the ability to work under pressure. The Sr Incident Response Analyst will work closely with the Security team to develop and maintain incident response plans, conduct investigations, and provide technical guidance and support during incident response activities. Blue Yonder is seeking a candidate with a deep passion for cybersecurity, eager to stay ahead of emerging threats and continuously enhance our security posture. The ideal candidate is driven, proactive, and committed to protecting the enterprise through effective threat detection, response, and mitigation strategies. Scope / Responsibilities This role is responsible for assisting with the detection, investigation, containment, and remediation of security incidents to protect an organization's systems, data, customers and reputation. They lead high‑priority incident response efforts, coordinating with cross‑functional teams such as IT, legal, and compliance to mitigate threats effectively. Technical Environment Security Information and Event Management (SIEM) Endpoint Detection and Response (EDR) / Extended Detection and Response (XDR) Network Security Monitoring & Intrusion Detection / Prevention Systems (IDS / IPS) Threat Intelligence Platforms (TIP) Security Orchestration, Automation, and Response (SOAR) Digital Forensics and Incident Response (DFIR) Tools Malware Analysis & Reverse Engineering Tools Vulnerability Management & Assessment Web Application Security Testing Tools Cloud Security Monitoring & Protection Email Security & Phishing Protection Deception & Honeypot Technologies Data Loss Prevention (DLP) Privileged Access Management (PAM) & Identity Security Firewall & Next‑Generation Firewall (NGFW) Solutions What you’ll do Monitor and Analyze Security Alerts – Review alerts generated by security systems, appliances, and logs to determine the appropriate course of action to protect the enterprise and reduce overall risk. Incident Triage and Response – Quickly assess, prioritize, and respond to security incidents, ensuring timely containment, eradication and recovery to minimize business impact. Root Cause Analysis (RCA) – Investigate security incidents to determine root causes, attack vectors and vulnerabilities, providing recommendations to reduce the attack surface and prevent recurrence. Threat Hunting and Proactive Defense – Conduct proactive threat‑hunting activities based on intelligence, anomalies, and adversary tactics to identify and mitigate threats before they escalated. Collaboration with Cross‑Functional Teams – Work closely with IT, engineering, legal, compliance and other teams to coordinate incident response efforts and ensure an effective security posture. Incident Documentation & Reporting – Maintain detailed documentation of security incidents, response actions and lessons learned, ensuring continuous improvement in security processes. Develop and Improve Incident Response Playbooks – Enhance and maintain incident response procedures, ensuring alignment with industry best practices and emerging threats. Security Awareness and Training – Provide guidance, training and mentorship to SOC analysts and IT staff on security threats, incident handling and response best practices. Threat Intelligence Integration – Leverage threat intelligence sources to stay informed on evolving cyber threats and proactively adjust security strategies to defend against them. Strong familiarity with cloud security technologies and frameworks across major cloud providers (AWS, Azure, Google Cloud) is essential. The candidate should have experience with cloud‑native security monitoring, incident response in cloud environments and threat detection techniques to protect workloads, data and identities in hybrid and multi‑cloud architectures. What we are looking for Bachelor's degree in Computer Science, Information Security or related equivalent experience. 5+ years of experience in information security, cybersecurity or related field. Strong technical skills and attention to detail. Excellent verbal and written communication skills. Ability to work independently and as part of a team. Ability to work under pressure and in a fast‑paced environment. Strong problem‑solving skills and a proactive approach to work. Knowledge of security frameworks such as NIST and ISO 27001. Familiarity with security regulations and standards (e.g. PCI DSS, HIPAA, etc.). Experience with incident response methodologies and tools (e.g. SANS IR, Threat Intelligence, etc.). #LI-MH1 #LI-Remote Our Values If you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success – and the success of our customers. Does your heart beat like ours? Find out here: Core Values All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. #J-18808-Ljbffr
-
Cybersecurity Incident Response Specialist
hace 3 semanas
Mexico City HSBC A tiempo completoA major global banking institution is seeking a Cybersecurity Incident Handler in Mexico City to manage and respond to cybersecurity incidents. This role involves coordinating multi-business unit responses, maintaining relationships with cybersecurity leads, and managing incidents on a 24x7 basis. Ideal candidates should have advanced degrees in Information...
-
Global Cybersecurity Incident Response Lead
hace 2 semanas
Mexico City HSBC A tiempo completoA leading global financial organization in Mexico City seeks a skilled Cybersecurity Incident Handler to coordinate responses to cybersecurity incidents. The ideal candidate will manage incident reviews, work closely with various business units, and support the development of security processes. Candidates should possess industry-recognized certifications, a...
-
Senior Incident Response Lead
hace 3 días
Mexico City BlackLine A tiempo completoA leading SaaS company in Ciudad de México is seeking a Senior Incident Management Analyst to ensure product reliability and improve incident response. Candidates should have over 5 years of experience in IT Operations or Cybersecurity and a Bachelor's degree in a related field. The role involves leading incident response efforts and collaborating with...
-
Cybersecurity Incident Response Specialist
hace 3 semanas
Mexico City HSBC A tiempo completoA leading global bank is seeking a Cybersecurity Incident Handler in Mexico City. The role crucially involves coordinating actions during security incidents, providing timely updates to stakeholders, and conducting post-incident reviews. Candidates should have an advanced degree in Information Security, relevant certifications, and strong decision-making...
-
Incident Response Analyst
hace 2 días
MX-OTHER MEXICO Baker Hughes A tiempo completoResponsibilities, authorities and accountabilitiesIn this role, you will: Assist in the execution of threat hunting operations by developing hypotheses, analyzing telemetry, and identifying anomalies across endpoints, networks, cloud, and OT environments.Leverage data from SIEM, EDR, and other security platforms to uncover evidence of malicious or...
-
Cybersecurity Event Triage Analyst – LATAM
hace 3 semanas
Mexico City Baker Hughes A tiempo completoA leading energy services company in Mexico City is seeking an experienced cybersecurity analyst. In this role, you will monitor potential security threats, prepare reports, and support incident response efforts. Applicants must possess a relevant bachelor's degree and demonstrate strong analytical and communication skills. The position requires English...
-
Cybersecurity Incident Handler
hace 2 semanas
Mexico City HSBC A tiempo completoIf you're looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you'll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to...
-
Cybersecurity Incident Handler
hace 2 semanas
Mexico City HSBC A tiempo completoIf you're looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you'll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to...
-
Cybersecurity Incident Handler
hace 3 semanas
Mexico City HSBC A tiempo completoJoin to apply for the Cybersecurity Incident Handler role at HSBC. If you’re looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be...
-
Cybersecurity Incident Handler
hace 3 semanas
Mexico City HSBC A tiempo completoIf you’re looking for a career where you can make a real impression, join Global Service Center (GSC) HSBC and discover how valued you’ll be. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies...