Senior Security Operations Center

hace 7 días


Guadalajara, Jalisco, México Avertium A tiempo completo
Senior Security Operations Center (SOC) Analyst

Avertium is the managed security and consulting provider that companies turn to when they want more than check-the-box cybersecurity. In today's threat landscape, your not-so-standard processes, workflows, and vulnerabilities require more than just a standard approach to cybersecurity. You need a smarter, stronger approach based on more rigor, more relevance, and more responsiveness. That is why more than 1,200 organizations in every sector from manufacturing to financial services, healthcare to technology and business services to hospitality rely on Avertium for cybersecurity services .

The Sr. Security Operations Center (SOC) Analyst is a trusted technical advisor working with an active Center of Excellence. The Sr. SOC Analyst works closely with the client to provide proactive support assistance to reduce or prevent security issues from occurring on the client network. The Sr. SOC Analyst will administer and maintain security measures focused on application, web and infrastructure security for the client. The Sr. SOC Analyst is responsible for working with key client contacts at multiple levels of the organization to identify and align business and IT Security objectives. As a Sr. SOC Analyst, you will play a pivotal role in overseeing the daily operations of the SOC, guiding a team of Analysts, and ensuring the smooth delivery of cyber security services to our diverse clientele. Your technical expertise, leadership abilities, and strong communication skills will be essential in maintaining the efficiency and effectiveness of our SOC operations.

Senior SOC Analyst Key Responsibilities
  • Conduct multi-step breach and investigative analysis to trace the dynamic activities associated with advanced threats.
  • Perform investigation and escalation for complex or high severity security threats or incidents.
  • Serve as an escalation resource and mentor for other analysts.
  • Work with SIEM Engineering to develop and refine correlation rules.
  • Work on complex tasks assigned by leadership, which may involve coordination of effort among Level 1/2/3 analysts.
  • Coordinate evidence/data gathering and documentation and review Security Incident reports.
  • Assist in defining and driving strategic initiatives.
  • Define tool requirements to improve SOC capabilities.
  • Understanding of the cyber Kill Chain and MITRE ATT&CK and experience applying them to defensive operations.
  • Experience analyzing packet captures to identify malicious activity.
  • Fluency in common network protocols including TCP/IP, DNS, TLS, HTTP.
  • Experience with SIEM technology such as: AlienVault USM Appliance, USM Anywhere, LogRhythm, and/or Wazuh IDS highly preferred.
  • Malware reverse engineering experience a big plus including tools used.
  • Phishing email attack analysis to include extraction of links and/or files to determine what the attacker is trying to gain.
  • Monitor, respond to, and analyze SIEM alerts from monitoring tools.
  • Provide technical guidance / recommendations to clients to enhance their overall security posture within the managed products. Handles daily incidents; monitors, tracks, analyzes and records.
  • Work with vendors, outside consultants, and other third parties to improve information security within the organization.
  • Responds to security related tickets escalated from clients, and works collaboratively within the client to assist in resolving security events.
  • Work with other IT professionals to resolve fast moving vulnerabilities, such as spam, virus, spyware and malware.
  • Monitor security vulnerability information from vendors and third parties.
  • Create Weekly and Monthly Status Reports, including daily technical task reports and contract deliverables.
  • Proactive Threat Hunting using industry tools and existing IDS systems.
  • Advanced Forensics skills to evaluate current malware and phishing threats.
Qualifications
  • Strong written, verbal and non-verbal communication skills, especially conveying complex information in an understandable manner.
  • CISSP, CISA or GIAC certification is a plus.
  • A minimum of 5 years of experience working with Microsoft Active Directory.
  • Experience in managing an organization's PCI, HIPAA, or SSAE16 certification is preferred.
  • Analyze and resolve complex technical and business problems.
Job / Experience Requirements
  • Must have proficient knowledge with three or more of the following technologies: Application / stateful / UTM firewalls; SIEM; DLP; Web content filtering; Web application firewalls (WAF); Vulnerability scanning and penetration testing; IPS/IDS; Security Operations Center operations; Wireless Networking; UNIX, AIX & Solaris, Linux, Windows Server Operating Systems; Endpoint and Malware.
  • Knowledge with NIST, FISMA, DIACAP.
  • Knowledge of Windows server platforms.
  • Knowledge of VMware and VM server platforms.
  • Knowledge of UNIX server platforms.
  • Working knowledge of analyzing IIS, SQL, firewall, IPS/IDS, Windows.
  • Web and mail logged events.
  • Ability to analyze IANA assigned ports (well known, registered, dynamic and private ports).
  • Ability to troubleshoot common network devices, network, vulnerabilities and network attack patterns.
  • Ability to troubleshoot Windows Event IDs.
  • Interact with all levels of management.
  • Make decisions based on many variables.
  • Manage multiple tasks/projects simultaneously.
Education and Certification Requirements:
  • Minimum of Bachelor's Degree in computer science, telecommunications management, electrical engineering, or a related field or have 4 years of experience.
  • Advanced network and systems certifications such as CCNP, CCNA and CISSP, are preferred.
  • Other industry certifications such as ITIL, Microsoft, Juniper and Checkpoint are a plus.
#J-18808-Ljbffr

  • Guadalajara, Jalisco, México Dresden Partners A tiempo completo

    Descripción:En Dresden Partners conectamos el talento con empresas globales de primer nível. Somos un puente de oportunidad laboral especializados en Reclutamiento TI en México, LATAM y USA.Estamos en búsqueda de talento para la posición: Consultor - Security Operations Center (SOC) On SiteRequisitos:- +3 años de experiência en Security Operations...


  • Guadalajara, Jalisco, México Dresden Partners A tiempo completo

    Descripción:En Dresden Partners buscamos tu talento como Security Operations Center.Somos una consultoría especializada en web technology, mobile and software development, servicios near-shore staffing, tech international y local tech sourcing trabajamos para proyectos internacionales para otorgar servicios integrales.Si buscas una empresa global,...


  • Guadalajara, Jalisco, México Avertium, Llc A tiempo completo

    Avertium is the security partner that companies turn to for end-to-end Cybersecurity solutions that attack the chaos of the cybersecurity landscape with context. By fusing together human expertise and a business-first mindset with the right combination of technology and threat intelligence, Avertium delivers a more comprehensive, more programmatic approach...


  • Guadalajara, Jalisco, México Avertium A tiempo completo

    Avertium is the managed security and consulting provider that companies turn to when they want more than check-the-box cybersecurity. In today's threat landscape, your not-so-standard processes, workflows, and vulnerabilities require more than just a standard approach to cybersecurity. You need a smarter, stronger, show-no-weakness approach based on more...


  • Guadalajara, Jalisco, México Cognizant Technology Solutions A tiempo completo

    We're hiringAt Cognizant we have an ideal opportunity for you to be part of one of the largest companies in the digital sector worldwide. A Great Place To Work where we look for people who contribute new ideas, experiencing a dynamic and growing environment. At Cognizant we promote an inclusive culture, where we value different perspectives providing career...

  • Security Analyst

    hace 7 días


    Guadalajara, Jalisco, México dbschenker A tiempo completo

    Your tasks Job Overview At Schenker International de we are looking for a Security Analyst to be part of our IT team, for our office in Guadalajara, Mexico. What will be your challenges? * Performs network security monitoring and incident response for a large organization, coordinates with Tier 1 colleagues and with Tier 2 to record, prioritize and...


  • Guadalajara, Jalisco, México Dresden Partners A tiempo completo

    Descripción:En Dresden Partners buscamos tu talento como Security Operations Center.Somos una consultoría especializada en web technology, mobile and software development, servicios near-shore staffing, tech international y local tech sourcing trabajamos para proyectos internacionales para otorgar servicios integrales.Si buscas una empresa global,...


  • Guadalajara, Jalisco, México Ipro Networks Pte. Ltd. A tiempo completo

    Job Title: Senior Security Tools Engineer Position Type: Full Time / Permanent Location: Remote , but needs to be in Guadalajara, Mexico Salary Range: Open Job ID#:About The Job:We are seeking a Senior Security Tools Support Engineer with extensive experience in automating and streamlining IT operations. The successful candidate will play a key role in...


  • Guadalajara, Jalisco, México Finastra A tiempo completo

    Responsibilities Finastra is currently seeking a Senior Network Security Engineer, to join our amazing network team. Reporting to Senior Director, Network Engineering and Implementation, this position is responsible for network security solutioning for the Finastra enterprise.The ideal candidate should be forward thinking, dedicated and detail-oriented with...


  • Guadalajara, Jalisco, México Echelon Risk + Cyber A tiempo completo

    _About us__: _**At Echelon Risk + Cyber we believe in defending the basic human right to security and privacy. We are looking for an exceptional Senior Offensive Security Consultant to join our team. We believe passion in security is paramount and those who strive to improve their knowledge in this field will grow quickly in our practice. Work will be...


  • Guadalajara, Jalisco, México Finastra USA Corporation A tiempo completo

    Responsibilities:Key Major FunctionFinastra is currently seeking a Senior Network Security Engineer, to join our amazing network team. Reporting to Senior Director, Network Engineering and Implementation, this position is responsible for network security solutioning for the Finastra enterprise.Key Responsibilities Contribute within a team of network security...


  • Guadalajara, Jalisco, México AstraZeneca A tiempo completo

    Senior Data Security Engineer About the AstraZeneca AstraZeneca is a global, innovation-driven biopharmaceutical business that focuses on the discovery, development, and commercialization of prescription medicines for some of the world's most serious diseases. But we're more than one of the world's leading pharmaceutical companies. At AstraZeneca,...


  • Guadalajara, Jalisco, México Finastra A tiempo completo

    ResponsibilitiesFinastra is currently seeking a Senior Network Security Engineer, to join our amazing network team. Reporting to Senior Director, Network Engineering and Implementation, this position is responsible for network security solutioning for the Finastra enterprise.The ideal candidate should be forward thinking, dedicated and detail-oriented with a...

  • Security Engineer

    hace 7 días


    Guadalajara, Jalisco, México OpenTable A tiempo completo

    With millions of diners, tens of thousands of restaurants, and 23+ years of experience, OpenTable, part of Booking Holdings, Inc (NASDAQ:BKNG), is an industry leader with a unique insight into the world of hospitality. We champion restaurants, bars, wineries, and other venues around the world, helping them attract guests, manage capacity, improve operations...

  • Security Specialist

    hace 7 días


    Guadalajara, Jalisco, México VASS MEXICO A tiempo completo

    1. Description of Work/Position: Network Security Engineer Senior IIThis position is to participate as a Senior Firewall Engineer to perform migrations from Cisco Firewalls to Checkpoint Firewalls.Requirements:4. Must Have Skills:• • COMMUNICATION• ACCOUNTABILITY• BACKGROUND EXPERIENCE IN THE FIELD• Firewall/IPS (Check Point + Cisco)• Client &...


  • Guadalajara, Jalisco, México Finastra A tiempo completo

    Job DescriptionFinastra is looking for a Senior Network Security Engineer to join their network team. Reporting to the Senior Director of Network Engineering and Implementation, this role involves handling network security solutions for the Finastra enterprise.The perfect candidate should be forward-thinking, dedicated, and detail-oriented, with a strong...


  • Guadalajara, Jalisco, México Ll Oefentherapie A tiempo completo

    The Senior Security Incident Response Engineer is tasked with supervising our security tools, performing investigations of escalated notable events, and performing our processes. This role will also be responsible for supplying the SOC Security Tools and Detections roadmaps and collaborating with the SOC Management team and external teams on key...


  • Guadalajara, Jalisco, México Finastra A tiempo completo

    Formed in 2017 by the combination of Misys and D+H, we provide the broadest portfolio of financial services software in the world today—spanning retail banking, transaction banking, lending, capital markets and treasury. Our solutions enable customers to deploy mission critical technology on premises or in the cloud. With our scale and geographical reach...


  • Guadalajara, Jalisco, México AstraZeneca A tiempo completo

    About the AstraZenecaAt AstraZeneca, we put patients first and strive to meet their unmet needs worldwide. Working here means being entrepreneurial, thinking big and working together to make the impossible a reality. If you are swift to action, confident to lead, willing to collaborate, and curious about what science can do, then you're our kind of...


  • Guadalajara, Jalisco, México Finastra A tiempo completo

    Company DescriptionFormed in 2017 by the combination of Misys and D+H, we provide the broadest portfolio of financial services software in the world today—spanning retail banking, transaction banking, lending, capital markets and treasury.Our solutions enable customers to deploy mission critical technology on premises or in the cloud. With our scale and...