CLOSED Information Security Operations Engineer
hace 1 semana
The Information Security Operations Engineer is responsible for designing security solutions that protect the business while also allowing the business to execute and innovate. The individual works closely with many diverse and dynamic teams, including, but not limited to, information security, IT infrastructure, application development, audit, and end users.
Throughout the role's key responsibilities, the Information Security Operations Engineer must always consider opportunities to identify potential risks as soon as possible, reduce remediation costs, and avoid unnecessary rework.
Essential Job Duties· Actively monitor and respond to security incidents and alerts using EDR and similar tools, ensuring timely mitigation and resolution.
· Assist with incident response and system stability issues as they occur. This may include involvement outside of regular work hours, and responsiveness is expected.
· Perform detailed forensic analysis on network traffic and logs to detect and trace signs of malicious activities and compromised systems across Windows and Linux environments, especially in cloud platforms.
· Develop and maintain Incident Response and Digital Forensics runbooks, ensuring they are up-to-date and comprehensive.
· Collaborate with IT and engineering teams to refine technology usage and security practices with technologies like SIEM, SOAR, IDS, HIPS, and Active Directory.
· Oversee implementation of defensive practices and countermeasures across infrastructure and applications.
· Continuously improve the incident response program by integrating best practices and lessons learned from past incidents.
· Influence the planning and execution of incident response and postmortem exercises, with a focus on creating measurable benchmarks to show progress (or deficiencies requiring additional attention).
· Serve as a technical point of escalation within the SOC for complex security issues and coordinate multi-team response efforts efficiently across different time zones.
· Foster strong partnerships with various internal teams to enhance the organization's prevention, detection, and response strategies.
· Mentor internal staff and lead by example in both technical and procedural capacities.
· Consistently learn and share advanced skills and practices that promote team excellence. Drive security efficiencies, enabling security team members to work on more advanced tasks.
· Build relationships with key stakeholders to incorporate security principles into engineering design and deployments.
· Conduct and develop tabletop exercises to simulate security incidents and improve team readiness and response capabilities.
· Keep abreast of the latest cybersecurity threats and trends, adjusting defensive measures accordingly.
· Constantly research capabilities of current and new disruptive solutions on the market and make recommendations to security leadership.
· Incorporate security requirements early and throughout project and development lifecycles.
· Implement solutions observing compliance with applicable laws, regulations, and frameworks, such as NIST, ISO 27001, GDPR, etc.
· Participate regularly in change project and change management meetings.
· Perform other duties as assigned.
Skills and Experience· years' experience in information security, specifically in security operations and incident handling.
· Strong understanding of the incident response lifecycle and best practices in digital forensics.
· Excellent analytical and problem-solving skills, with the ability to handle high-pressure situations.
· Proficient with EDR/XDR tools such as Microsoft Defender, SentinelOne, CrowdStrike, etc.
· Experience in cloud computing technologies, including software-, infrastructure-, and platform-as-a-service, as well as public, private, and hybrid environments – particularly Microsoft E5 products and their security and compliance capabilities.
· Practical experience with Jupyter Notebook, PowerShell, and/or Python for scripting and automation.
· Strong communication and collaboration skills, capable of working effectively across multiple teams and locations.
· Extensive knowledge of traditional security controls and technologies, such as security information and event management systems, intrusion detection and prevention systems, identity and access management systems, endpoint detection and response, data loss prevention, and firewalls.
· Experience working in a multicultural environment with colleagues in different countries.
· Analytical and problem-solving mindset.
· Highly organized and efficient self-starter requiring minimal supervision.
· Proven trustworthiness and history of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating well, including the ability to translate technical content into terms understandable by the business.
Education Requirements· Higher education with a degree in information security, computer science, or related field – or similar industry experience.
Certification Requirements· GCIH, GSEC, Security+, CySA+, Microsoft Identity and Access Administrator, Microsoft Security Operations Analyst, Microsoft Azure Security Engineer, or comparable certification preferred.
Compensation· GCIH, GSEC, Security+, CySA+, Microsoft Identity and Access Administrator, Microsoft Security Operations Analyst, Microsoft Azure Security Engineer, or comparable certification preferred.
Compensation· $80,000 Mexican pesos per month plus full benefits
-
Information Security Operations Engineer
hace 1 semana
Monterrey, México Nearshorecyber A tiempo completoThe Information Security Operations Engineer focuses on handling security incidents, forensic investigations, and enhancing our security posture using new and existing technology. This is an advanced role to help support, secure, manage, and deploy solutions that support business objectives. The role is highly technical, and candidates must possess a solid...
-
Information Security Operations Engineer
hace 3 días
Monterrey, México Nearshorecyber A tiempo completoThe Information Security Operations Engineer focuses on handling security incidents, forensic investigations, and enhancing our security posture using new and existing technology. This is an advanced role to help support, secure, manage, and deploy solutions that support business objectives. The role is highly technical, and candidates must possess a solid...
-
Information Security Engineer
hace 2 semanas
Monterrey, México Nearshore Cyber A tiempo completo**Location: Monterrey or Matamoros, Mexico**:** Applications from persons not living in Mexico will NOT be accepted.**The role also requires an understanding of business goals/strategy and operational requirements in a fast-paced environment.Throughout the roles key responsibilities, the Information Security Engineer must always consider opportunities to...
-
Tech- Cloud Security Engineer
hace 1 día
Monterrey, N.L., México Mary Kay de México A tiempo completoThe Cloud Security Engineer designs, deploys, and operates a secure cloud infrastructure that aligns with business goals. This advanced role supports innovation by enabling secure, scalable, and resilient cloud applications. The engineer applies deep technical expertise in cloud architecture, security operations, and automation to protect systems and data...
-
Information Security Consultant
hace 1 semana
Monterrey, México Endava A tiempo completo**Company Description**Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital...
-
Global Information Security Risk and Compliance
hace 5 días
Monterrey, México Nemak A tiempo completoObjective As part of the Information Security organization, develop a strategic program to ensure compliance of regulatory requirements to support the organization's resilience. Through a process of Risk Management and the systematic evaluation of potential threats, the organization will be able to meet the law, regulations and contractual requirements and...
-
Principal Security Engineer
hace 2 semanas
Monterrey, México Turnitin, LLC A tiempo completoCompany Description**100% REMOTE**:- MUST BE in UK, Canada, Mexico****MUST BE AVAILABLE TO WORK 2PM-10PM BST/GMT**Turnitin is your partner in education with integrity. Turnitin’s originality checking and authorship investigation services ensure academic integrity, promote critical thinking, and help students improve their authentic writing. Turnitin...
-
Information Security Analyst
hace 2 semanas
Monterrey, México Nearshore Cyber A tiempo completo**Location: Monterrey or Matamoros, Mexico**:** Applications from persons not living in Mexico will NOT be accepted.**The Information Security Analyst is responsible for activities relating to monitoring and responding to security events. The analyst receives, researches, triages, and documents all security events and alerts as they are received, supporting...
-
Cloud Security Engineer
hace 2 días
Monterrey, México Mary Kay de México A tiempo completoPosition Summary The Cloud Security Engineer designs, deploys, and operates a secure cloud infrastructure that aligns with business goals. This advanced role supports innovation by enabling secure, scalable, and resilient cloud applications. The engineer applies deep technical expertise in cloud architecture, security operations, and automation to protect...
-
Cloud Security Engineer
hace 2 días
Monterrey, México Mary Kay de México A tiempo completoThe Cloud Security Engineer designs, deploys, and operates a secure cloud infrastructure that aligns with business goals. This advanced role supports innovation by enabling secure, scalable, and resilient cloud applications. The engineer applies deep technical expertise in cloud architecture, security operations, and automation to protect systems and data...