Security Incident Associate

hace 2 semanas


México Kueski A tiempo completo

**About Kueski**

Founded in 2012 with the mission to improve the financial lives of people in Mexico, Kueski has grown to be one of the largest buy now, pay later (BNPL) and online consumer lending companies in Latin America. Kueski provides financial services to consumers and connects the Mexican economy through its innovative product ecosystem. This ecosystem consists of Kueski Pay, the company's BNPL product available online and in-store, and Kueski Personal Loans, a direct to consumer loan product.

The company is frequently recognized for its strong, diverse and inclusive company culture. In 2022, Kueski has been named one of the most ethical companies in Mexico by AMITAI, and one of the best companies for both young professionals and female talent in Mexico by EFY. The company has also been named to CB Insights’ Fintech 250 list.

**Purpose**

The Security Incident Associate is part of the Information Security team and is responsible for ensuring that all security incidents are handled appropriately and in a timely fashion, in accordance with the existing process and guidelines. The Security Incident Associate is also responsible for ensuring the correct performance and relationship with the SOC/SIEM provider, to ensure they are operating optimally, but also improving their searches as well as building the adequate threat intelligence and threat hunting.

**Key Responsabilities**:

- Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation
- Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation
- Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs)
- Collect intrusion artifacts (e.g., source code, malware, Trojans) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise
- Ensure that cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
- Use cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity
- Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings)
- Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave
- Provides cybersecurity recommendations based on significant threats and vulnerabilities
- Work with stakeholders to resolve computer security incidents and vulnerability compliance
- Identify threat tactics, and methodologies
- Provide timely notice of imminent or hostile intentions or activities which may impact organization objectives, resources, or capabilities.

**Position Requierements**:

- +2 years of relevant experience in incident handling, preferably as part of a SOC (Security Operations Center)
- Experience handling sensitive information
- Experience with SIEM and correlation of events
- Advanced English level
- Preferably knowledge of YARA rules and YAML
- Knowledge of incident response and handling methodologies
- Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions
- Knowledge of cyber defense and vulnerability assessment tools and their capabilities
- Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins)
- Knowledge of network traffic analysis methods
- Knowledge of Insider Threat investigations, reporting, investigative tools, and laws/regulations
- Knowledge of adversarial tactics, techniques, and procedures

**You’ll love working at Kueski because**:

- We have a mission-driven culture focused on customer value, teamwork, humility, and integrity.
- Everyone is expected to have role clarity, career growth, and a personal development plan. Feedback and recognition is embedded in our company processes, systems, and practices.
- We ensure competitive salary, medical insurance, and wellbeing through ample and flexible time off as well as mental healthcare benefits. Everyone is an owner and eligible for competitive stock options with a company poised for success.
- We´re committed to building an inclusive and diverse team and we know this leads to incredible work.

Kueski: Where talent excellence improves Mexican lives

LifeAtKueski #KueskiTalent



  • Ciudad de México Ingram Micro A tiempo completo

    It's fun to work in a company where people truly BELIEVE in what they're doing!**Job Description**:Join the business behind the world’s technology brands. You’ll be providing leading-edge IT solutions whilst enjoying the benefits of an ethical, multinational corporation— building us a brighter tomorrow.Be part of our tomorrow as an Information...


  • México Kellanova A tiempo completo

    If you’re ready to bring the best, come join the IT team as a IT Security Associate for Mexico. You’ll be responsible for participating in the execution of projects set by architecture team. You´ll be responsible for participating in assuring proper testing, implementation, maintenance, and optimization of the security technology and operations, in...

  • Sr Security Specialist

    hace 7 días


    Ciudad de México Logicalis A tiempo completo

    Experiência en el diseño e implementación de políticas de seguridad. Conocimiento profundo de criptografía, análisis de vulnerabilidades y gestión de incidentes de seguridad. Competencia en la configuración de firewalls (Fortinet, Cisco, PaloAlto, etc), sistemas de detección de intrusiones y sistemas de prevención de pérdida de datos. Experiência...


  • Ciudad de México, Ciudad de México Blue Yonder A tiempo completo

    Location: Remote - Monterrey, Mexico preferred (but also will consider Mexico City area)Role: Sr. Cybersecurity Incident Response Analyst (Threat Hunting)Blue Yonder Job Profile: Sr. Security Engineer, Security Architect  Overview:Blue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting)...

  • Guardia de Seguridad

    hace 3 días


    Ciudad de México Security A tiempo completo

    **Guardia de Seguridad****Descripción del empleo**En Security estamos en búsqueda de un **Guardia de Seguridad** responsable y comprometido, cuya principal función será proteger las instalaciones, al personal y a los bienes de la empresa.**Responsabilidades**:- Vigilar accesos y recorridos en las instalaciones.- Prevenir incidentes y reportar cualquier...


  • Ciudad de México albo A tiempo completo

    albo albo is a leading fintech company offering financial products to individuals and SMB’s with the mission to bring financial freedom to everyone everywhere. We are looking for an Incident Response Engineer who has experience in the implementation, maintenance and compliance of various security standards and/or frameworks, as well as experience in the...


  • Ciudad de México Nestle A tiempo completo

    Position Summary: Under the supervision and guidance of Product Group Manager, the Sr Specialist Cyber Security is responsible for establishing and maintaining security products, platforms and solutions designed to mitigate IS/IT risks across Nestlé Group to ensure that information assets are adequately protected. S/He is responsible for the...


  • Ciudad de México, Ciudad de México Capital One A tiempo completo

    WeWork Reforma Latino , Mexico, Ciudad de Mexico, Ciudad de MexicoPrincipal Associate, Workplace SecurityAt Capital One, we dare to dream, disrupt and deliver a better way. Our goal is simple—bring ingenuity, simplicity and humanity to an industry ripe for change. Our Global Workplace Services (GWS) team is a dynamic organization where development matters...


  • Ciudad de México, CDMX Lyft A tiempo completo

    At Lyft, our mission is to improve people's lives with the world's best transportation. To do this, we start with our own community by creating an open, inclusive, and diverse organization. Security Incident Response quickly responds to and investigates security alerts and threats affecting Lyft services and infrastructure. You will lead a team that is...


  • Ciudad de México Temenos A tiempo completo

    A global cybersecurity firm is seeking a Security Incident Responder to join their team in Mexico City. This role requires 5+ years of experience in Security Incident Response, strong analytical skills, and knowledge of networking and operating systems. You will work closely with the SOC Manager and Cyber Security Engineers to handle cyber incidents, provide...