Advanced Threat Response Analyst

hace 4 semanas


Monterrey, Nuevo León, México Blue Yonder A tiempo completo
Title: Senior Incident Response Analyst (SOC)
Location: Monterrey, N.L.

Blue Yonder is in search of a dedicated Senior Incident Response Analyst (SOC) who will play a pivotal role in threat identification, surveillance, and incident management. We are looking for qualified individuals to enhance our Security Operations Center (SOC) Tier-2 & 3, operating around the clock as Senior Incident Response Security Analysts. The selected candidate will oversee daily SOC functions and security incident handling, collaborating closely with global internal security teams.

Key Responsibilities

Identify and mitigate cybersecurity threats to ensure the secure operation of the organization. Collaborate with the existing global SOC team and keep the Chief Information Security Officer (CISO) updated on security operations. Serve as a liaison among the SOC team, internal stakeholders, and external entities such as vendors, clients, or regulatory agencies. Formulate incident management strategies and protocols, examining networks for indications of breaches. Organize and conduct tabletop exercises to refine and develop plans, policies, and procedures. Execute proactive threat hunts to uncover threats and evaluate the effectiveness of security measures. Collaborate with internal red teams to identify offensive operations and implement findings. Actively monitor for suspicious and anomalous activities based on data alerts or outputs from various tools. Manage security incidents from start to finish as Incident Responders (Assessment, Triage, Communication, Remediation, Documentation). Create new SIEM use cases to detect unusual activities. Develop Incident Response Playbooks for emerging threats and attack vectors. Engage in malware analysis, phishing email investigations, and all other reported alerts. Document lessons learned and enhance processes accordingly. Ensure thorough documentation of investigations; assess the validity and urgency of activities and escalate to senior SOC analysts or leads as necessary. Conduct Level 3 triage of incoming issues, initially assessing the priority of events and determining the risk and impact of incidents. Provide ongoing communication and escalation throughout incidents in accordance with SOC protocols. Identify and manage a variety of threat intelligence sources to offer a comprehensive view of the threat landscape, filtering out irrelevant information to focus on actionable intelligence. Lead the creation of actionable use cases to detect, triage, investigate, and remediate based on current threat actor trends, assisting teams with the technical implementation of log source parsing and validating alerting queries to minimize false positives. Ensure all security events and incidents (both internal and external) are recorded in ServiceNow and consistently updated and resolved within established SLAs.

Qualifications

A minimum of 3-6 years of demonstrated experience in security incident response and SOC operations. Practical expertise in threat detection, monitoring, and incident response implementation. Proficiency in querying and writing detection rules in security tools (e.g., SIEM (Qradar/Splunk), SOAR, WAF, AV, Firewalls, Internet-facing services). Strong technical foundation in network/OS principles and common Internet protocols, particularly DNS, HTTP, and HTTPS. Experience in conducting technical analyses of security events, including malware analysis, phishing, and digital forensics. Excellent written and verbal communication skills. Background in investigating security and complex operational issues on both Windows and Linux platforms. Knowledge of email security threats and controls, including email header analysis, web attacks, and network traffic analysis using tools like Wireshark. Experience in reviewing system and application logs (e.g., web or mail server logs). Familiarity with core concepts of security incident response, including typical response phases, vulnerabilities vs. threats vs. actors, and Indicators of Compromise (IoCs). Relevant certifications such as GCIH, GCIA, GSEC, CEH, Security+, SSCP. Results-oriented with a keen attention to detail. Willingness to work outside of standard shifts when necessary.

At Blue Yonder, we prioritize the well-being of our employees and their families, reflected in our comprehensive benefits package, which includes:

Competitive Salary Christmas Bonus (30 days) Savings Fund 15 Vacation Days in the first two years and a 60% Vacation bonus Major and Minor Medical Service insurance for you and your family Life Insurance Totalpass Annual bonus And additional benefits to be discussed

Our Values

To understand the essence of a company, one must examine its values. Our values unite us and drive our success, as well as that of our customers. If our values resonate with you, discover more about them: Core Values.

Our Diversity, Inclusion, Value & Equality (DIVE) strategy fosters an inclusive environment we can all take pride in. Explore Blue Yonder's inaugural Diversity Report, which outlines our commitment to change, and watch our video celebrating the unique differences among our associates worldwide.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.



  • Monterrey, Nuevo León, México Jda Software A tiempo completo

    Senior Incident Response AnalystWe are seeking a highly skilled Senior Incident Response Analyst to join our Security Operations Team. As a key member of our team, you will be responsible for detecting and responding to cybersecurity threats, ensuring the security and integrity of our organization.Key Responsibilities:Threat Detection and Response: Identify...


  • Monterrey, Nuevo León, México Blue Yonder A tiempo completo

    Job Title: Senior Incident Response Security AnalystWe are seeking a highly skilled Senior Incident Response Security Analyst to join our Security Operations Center (SOC) team. As a key member of our team, you will be responsible for detecting and responding to cybersecurity threats, monitoring security events, and collaborating with internal stakeholders to...


  • Monterrey, Nuevo León, México Blue Yonder A tiempo completo

    Job SummaryWe are seeking a highly skilled Cybersecurity Threat Detection Specialist to join our Security Operations Team (SOC) at Blue Yonder. As a key member of our incident response team, you will be responsible for detecting and responding to cybersecurity threats, ensuring the security and integrity of our organization.Key ResponsibilitiesThreat...


  • Monterrey, Nuevo León, México Blue Yonder A tiempo completo

    Job Summary Blue Yonder is seeking a highly skilled Cybersecurity Threat Detection Specialist to join our Security Operations Team. As a key member of our team, you will be responsible for detecting and responding to cyber security threats to ensure the organization operates securely. You will partner with our internal SOC team across the world and keep the...


  • Monterrey, Nuevo León, México Blue Yonder A tiempo completo

    Title: Senior Incident Response Analyst (SOC) Location: Monterrey, N.L. Blue Yonder is in search of a dedicated Senior Incident Response Analyst (SOC) who will play a pivotal role in threat identification, surveillance, and incident management. We are looking for qualified individuals to join our Security Operations Center (SOC) Tier-2 & 3, operating...


  • Monterrey, Nuevo León, México Google A tiempo completo

    **Job Summary**:Mandiant, part of Google Cloud, is a leader in dynamic cyber defense, threat intelligence, and incident response services. As a Senior Incident Response Consultant, you will play a critical role in our team by understanding evolving attacker behavior and motivations, managing client-facing projects, and helping train/mentor other security...


  • Monterrey, Nuevo León, México Celekta Consulting A tiempo completo

    Cybersecurity Threat HuntingOur team at Celekta Consulting is seeking a highly skilled Senior Cybersecurity Threat Hunter to join our Cybersecurity Operations Center. As a key member of our team, you will be responsible for providing critical technical expertise in managing and analyzing cybersecurity threats. Your expertise will be instrumental in...

  • Business Systems Analyst

    hace 2 semanas


    Monterrey, Nuevo León, México Advanced Technology Services A tiempo completo

    At Advanced Technology Services, we're seeking a skilled Business Systems Analyst to join our team. As a key member of our operations team, you will play a critical role in analyzing and interpreting data from various safety reporting systems.Key responsibilities will include: Developing and maintaining data visualizations using Power BI and Excel Creating...

  • Security Consultant

    hace 3 días


    Monterrey, Nuevo León, México Danfoss A tiempo completo

    Danfoss is seeking a highly skilled IT Security Consultant to join their team in Monterrey, MX. As a key member of the Security Operations Center, you will be responsible for developing, implementing, and maintaining Information Security Solutions, monitoring and responding to security incidents and vulnerabilities.**Key Responsibilities:**Conduct...

  • Data Analyst

    hace 2 semanas


    Monterrey, Nuevo León, México Movimiento Congruencia A tiempo completo

    Job SummaryAt Movimiento Congruencia, we are seeking a highly skilled Data Analyst to join our team. As a Data Analyst, you will play a key role in driving business growth and profitability by optimizing resources and pricing through advanced analytics solutions.Key Responsibilities- Lead the development of data analytics products, including data...


  • Monterrey, Nuevo León, México Nearshore Cyber A tiempo completo

    Job Title: Information Security AnalystLocation: Monterrey or Matamoros, MexicoJob Summary:We are seeking an experienced Information Security Analyst to join our team at Nearshore Cyber. The successful candidate will be responsible for monitoring and responding to security events, evaluating and testing security solutions, and working closely with other team...


  • Monterrey, Nuevo León, México Google A tiempo completo

    About the Role:We are seeking a highly skilled Senior Cybersecurity Consultant to join our team at Mandiant, a recognized leader in dynamic cyber defense, threat intelligence, and incident response services. As part of Google Cloud, we help organizations be confident in their readiness to defend against and respond to cyber threats.Key...

  • HR Business Partner

    hace 2 semanas


    Monterrey, Nuevo León, México Advanced Technology Services A tiempo completo

    About the RoleWe are seeking a highly skilled Data Analyst to join our team at Advanced Technology Services. As a Data Analyst, you will play a critical role in analyzing and interpreting data from various safety reporting systems, identifying trends and areas for improvement.Key Responsibilities:Analyze and control data from safety reporting systemsProduce...

  • Data Analyst

    hace 2 semanas


    Monterrey, Nuevo León, México Movimiento Congruencia A tiempo completo

    Job Title: Data AnalystAt Movimiento Congruencia, we are seeking a highly skilled Data Analyst to join our team. As a Data Analyst, you will play a crucial role in driving business growth and profitability by optimizing resources and pricing.Key Responsibilities:Lead the creation of advanced analytics solutions to drive business decisions.Develop and own the...

  • Cybersecurity Specialist

    hace 2 semanas


    Monterrey, Nuevo León, México Nearshore Cyber A tiempo completo

    **Job Summary**Nearshore Cyber is seeking a highly skilled Cybersecurity Specialist to join our team. As a Cybersecurity Specialist, you will be responsible for monitoring and responding to security events, evaluating and testing security solutions, and working closely with other team members to remediate risk.**Key Responsibilities**Monitor and process...


  • Monterrey, Nuevo León, México Dana Incorporated A tiempo completo

    Dana Incorporated is a global leader in the supply of highly engineered driveline, sealing, and thermal-management technologies that improve the efficiency and performance of vehicles with both conventional and alternative-energy powertrains.**Job Purpose:**As a Business Analyst for Driveline and Sealing Solutions, you will establish required service levels...


  • Monterrey, Nuevo León, México Danfoss A tiempo completo

    Job SummaryWe are seeking a highly skilled Senior Consultant to join our team at Danfoss. As a key member of our security operations center, you will play a critical role in driving our security incident response and vulnerability management efforts.ResponsibilitiesCollaborate with infrastructure and applications teams to respond to cyber security incidents,...

  • Senior Financial Analyst

    hace 2 semanas


    Monterrey, Nuevo León, México 923 FLSmidth Inc. A tiempo completo

    Senior Financial AnalystAt 923 FLSmidth Inc., we are seeking a highly skilled Senior Financial Analyst to join our team. As a key member of our global product line management team, you will be responsible for providing critical financial and analytical support to drive business growth and profitability.Your ResponsibilitiesDevelop and maintain financial...

  • Senior Financial Analyst

    hace 3 semanas


    Monterrey, Nuevo León, México 923 FLSmidth Inc. A tiempo completo

    Senior Financial AnalystAt 923 FLSmidth Inc., we are seeking a highly skilled Senior Financial Analyst to join our global team. As a key member of our product line management team, you will be responsible for providing critical financial and analytical support to drive business growth and profitability.Your ResponsibilitiesDevelop and maintain financial...


  • Monterrey, Nuevo León, México Danfoss A tiempo completo

    Job SummaryWe are seeking a highly skilled Senior Cybersecurity Consultant to join our team at Danfoss. As a key member of our security operations center, you will be responsible for leading the response to cyber security incidents, conducting vulnerability assessments, and developing security detection use cases.Key ResponsibilitiesCollaborate with...