SOC (Security Operation Center) - Purple Team -tier

hace 3 meses


Ciudad de México Kyndryl Mexico S. de R.L. de C.V. A tiempo completo

**Why Kyndryl**

Kyndryl is a market leader that thinks and acts like a start-up. We design, build, manage, and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl?

We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers, and our communities. We invest heavily in you - not only through learning, training, and career development, but also through the flexible working practices and stellar benefits that help you grow and progress long-term. And we give back - from planting 90,000 trees in our first 3 months as part of our One Tree Planted initiative to the Corporate Social Responsibility and Environment, Social and Governance practices embedded within everything we do, we are committed to powering human progress in an ethical, sustainable way.

**Your Role and Responsibilities**
- Serve as Tier 3 level for complex technical and procedural escalations
- Provide technical lead support to tier 2 and 1 soc analysts
- Responsible for development and execution of incident response plans for escalated response processes
- Proactively identify indicators of compromise and generate and execute
- Incident Response Plan upon detection
- Provide Incident remediation and prevention documentation
- Identification and resolution of complex issues in customer environments.
- Develop resolution and implementation plans
- Work in collaboration with other security and company departments (operations, legal, sales) to help identify / resolve chronic issues and assist with the creation and implementation of corrective / preventative action plans
- Research, analyze and identify potential vulnerabilities and security deficiencies. Initiate escalation procedure to counteract potential threats/vulnerabilities
- Conduct security training, new hire training and network impact reviews. Coordinate repair and maintenance of security system with security integrators
- Liaise directly with third party vendors / suppliers
- Develop, document, and maintain Incident Response process, procedures, workflows, and playbook.
- Tune and maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives and improve SOC detection capabilities
- Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports
- Create metrics and determine Key Performance Indicators to measure maturity of SOC operations.
- Develop security content such as scripts, signatures, and alerts

**Required Technical and Professional Expertise**
- Experience at least three (3) years working with SIEM(QRADAR, SPLUNK, SENTINEL, etc), FW, IPS/IDS
- Threat Intelligence solutions, knowledge of Elastic Stack (Elasticsearch, Kibana)
- Strong analytical skills to define risk, identify potential threats, document and develop action/mitigation plan
- Deep knowledge/experience with Operating Systems (e.g. Windows Server, CentOS Linux).
- Knowledge/experience of networking and firewalls
- Knowledge of Enterprise Anti-Virus, IDS, Full Packet Capture and Host/Network Threat Analysis
- Knowledge of Threat Monitoring Procedures
- Deep knowledge conducting and leading incident response situations
- Experience implementing monitoring tools and capabilities
- Solid hands-on experience with one or several of the following security tools:

- CrowdStrike O365 Security, AWS security and/or Hub Azure defender
- Security center Splunk Advance OSINT knowledge
- Experience with a wide range of security tools and knowledge of relevant cyber frameworks and methodologies
- Work in collaboration with other security and company departments to help identify / resolve chronic issues and assist with the creation and implementation of corrective / preventative action plans
- Research, analyze and identify potential vulnerabilities and security deficiencies. Initiate escalation procedure to counteract potential threats/vulnerabilities
- Conduct security training, new hire training and network impact reviews
- Coordinate repair and maintenance of security system with security integrators
- Liaise directly with third party vendors / suppliers
- Develop, document, and maintain Incident Response process, procedures, workflows, and playbook
- Tune and maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives and improve SOC detection capabilities
- Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports
- Create metrics and determine Key Performance Indicators to measure maturity of SOC operations
- Develop security content such as scripts, signatures, and alerts

**Preferred Technical and Professional Experience**
- Three (3) years experience working within a security operations center
- Three (3) years experience working across multiple security disciplines (DFIR, log analysis, packet analysis, etc.) 1-2 years of le



  • Ciudad de México, Ciudad de México Talent Center A tiempo completo

    Job SummaryTalent Center is seeking a highly skilled Security Operations Center (SOC) Analyst to join our team. As a SOC Analyst, you will play a critical role in monitoring and analyzing security-related data to identify potential threats and vulnerabilities.Key ResponsibilitiesMonitor and analyze security-related data from various sources, including SIEM...


  • Ciudad de México, Ciudad de México Ingram Micro A tiempo completo

    At Ingram Micro, we're committed to creating a diverse and inclusive environment where talented individuals can thrive. As a key member of our team, you'll have the opportunity to work on exciting projects and contribute to our mission of delivering innovative solutions to our customers.About the Role:We're seeking a highly skilled Security Operations Center...


  • Ciudad de México Encora A tiempo completo

    We are looking for an experienced Security Operations Center (SOC) Analyst to join our growing security team. The SOC Analyst will be responsible for ensuring the security of all group brands and teams by proactively monitoring, detecting, and responding to security incidents and vulnerabilities. **Key Responsibilities**: - Monitor and analyze security...


  • Ciudad de México Ingram Micro A tiempo completo

    It's fun to work in a company where people truly BELIEVE in what they're doing! **Job Description**: As a global leader in technology, working in partnership with thousands of experts, you’ll be part of the respected Ingram Micro international team delivering cutting-edge solutions worldwide. Be part of our tomorrow as a Professional, Information...


  • Ciudad de México, Ciudad de México 332 Discovery Networks Mexico S. de R.L. de C.V. A tiempo completo

    About the Role:The Mexico City Security Manager will be responsible for the management of the security operations center in Mexico City, reporting to the LATAM Security Director. This role will oversee the monitoring of access control and CCTV systems, manage the schedule and day-to-day activities of contracted guards, and respond to daily security...


  • Ciudad de México, Ciudad de México Ingram Micro Inc. A tiempo completo

    Job Title: Security Operations ManagerAbout the Role:We are seeking a highly skilled Security Operations Manager to join our team at Ingram Micro Inc. As a Security Operations Manager, you will be responsible for leading our Security Operations Center (SOC) and ensuring the security and integrity of our technology solutions.Key Responsibilities:Lead and...


  • Ciudad de México Ingram Micro A tiempo completo

    It's fun to work in a company where people truly BELIEVE in what they're doing! **Job Description**: Join the business behind the world’s technology brands. You’ll be providing leading-edge IT solutions whilst enjoying the benefits of an ethical, multinational corporation— building us a brighter tomorrow. Be part of our tomorrow as an Information...


  • Ciudad de México, CDMX Warner Bros. Discovery A tiempo completo

    **_Welcome to Warner Bros. Discoverythe stuff dreams are made of._** **Who We Are ** When we say, “the stuff dreams are made of,” we’re not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD’s vast portfolio of iconic content and beloved brands, are the _storytellers_ bringing our...

  • Junior SOC Analyst

    hace 3 meses


    Ciudad de México Nearshore Cyber A tiempo completo

    Junior SOC Analyst **Location**: Mexico (Remote/Work-from-Home) We are seeking a highly motivated and skilled Junior SOC Analyst to join our dynamic cybersecurity team. As a Junior SOC Analyst, you will be responsible for monitoring and analyzing security events, incidents, and alerts, as well as assisting in the response and mitigation of security...


  • Ciudad de México, Ciudad de México Warner Bros. Discovery A tiempo completo

    About Warner Bros. DiscoveryWarner Bros. Discovery is a global leader in the media and entertainment industry, bringing iconic content and beloved brands to audiences around the world.Job SummaryWe are seeking a highly skilled and experienced Security Operations Center Manager to join our team in Mexico City. As a key member of our LATAM Security Operations...


  • Ciudad de México 332 Discovery Networks Mexico S. de R.L. de C.V. A tiempo completo

    Who We Are… When we say, “the stuff dreams are made of,” we’re not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD’s vast portfolio of iconic content and beloved brands, are the bringing our characters to life, the bringing them to your living rooms and the creating what’s...

  • Senior SOC Analyst

    hace 2 meses


    Ciudad de México Nearshore Cyber A tiempo completo

    **Job Summary**: The Senior SOC Analyst will monitor the company's and its clients' computing environments and systems for signs of malicious activity. The role mainly involves investigating alerts, hunting for threats, responding to attacks, and developing cybersecurity intelligence. They will provide technical leadership to junior and mid-level analysts....

  • SOC Analyst

    hace 3 meses


    México Talent Center A tiempo completo

    Technical degree or Computing Modules - 1 to 3 years of experience in a SOC - Proficiency in using Security Information and Event Management (SIEM) solutions - Familiarity with other security tools, including firewalls, intrusion detection systems (IDS), and vulnerability scanners - Security Essentials - Computer Forensic Investigation-Windows in depth -...

  • Director Soc

    hace 3 meses


    Ciudad de México Factor Uno A tiempo completo

    **Requisitos**: - Edad: 30 a 45 años. - Ingeniero o licenciatura en Informática o sistemas (finalizada). - Esquema de trabajo hibrido. Cdmx - Inglés comunicacional avanzado. **Experiência**: - Amplio conocimiento en ciberseguridad - Operación de SOC a nível gerencial de prefencia directivo - Metodologías de seguimiento y respuesta a incidentes. -...


  • Ciudad de México, Ciudad de México Solera A tiempo completo

    About the RoleSolera is seeking a highly skilled Cyber Security Engineer to join our team as a Threat Detection Specialist. As a key member of our Security Operations Center (SOC), you will play a critical role in protecting our information systems from internal and external threats.Key ResponsibilitiesMonitor and analyze cyber security events to identify...


  • Santiago de Querétaro, Querétaro de Arteaga, México Carhartt A tiempo completo

    About the RoleThe Cyber Security Operations Supervisor is a critical position at Carhartt, responsible for ensuring the confidentiality, availability, and integrity of our network and systems within Information Technology Services. This role is primarily responsible for leading the Security Operation Center (SOC) team, ensuring proper handling of security...

  • Security Consultant

    hace 3 días


    Ciudad Apodaca, Nuevo León, México Danfoss Gmbh A tiempo completo

    About the RoleWe are seeking a highly skilled Security Consultant to join our team at Danfoss GmbH. As a key member of our Security Operations Center, you will play a critical role in developing, implementing, and maintaining Information Security Solutions.Key ResponsibilitiesCollaborate with infrastructure and applications teams to respond to cybersecurity...


  • Ciudad de México, Ciudad de México 0360 BSS Mexico A tiempo completo

    About the RoleWe are seeking a highly skilled Cyber Security Engineer to join our team at 0360 BSS Mexico. As a key member of our Security Operations Center (SOC), you will play a critical role in protecting our organization's digital assets from cyber threats.Key ResponsibilitiesCyber Security Incident Response: Respond to and manage cyber security...


  • Ciudad de México Nissan A tiempo completo

    With a focus on Mobility, Operational Excellence, Value to our Customers and the Electrification of vehicles, you can expect to be part of something exciting. From the sleek design of our vehicles to the unique opportunities we offer around the globe, Nissan exemplifies ingenuity in everything we do. Our people are what drive the business...

  • SOC Analyst Tier 1

    hace 3 meses


    Santiago de Querétaro, México Dana Incorporated A tiempo completo

    Job PurposeWill be responsible for the SOC level 1 activities, like cybersecurity incident triage process, notificacion, communications and providing incident response activities such as tracking the incident, communication with stakeholders, remediation and recovery actions and reporting pertaining to security incidents.The Analysts follow standard...