Tier 2 SOC Analyst
hace 7 días
**Job Applicant Privacy Notice**:
**Tier 2 SOC Analyst (Senior SOC Analyst)**:
- Publication Date: Jan 14, 2025
- Ref. No: 525592
- Location: Mexico, D.F., MX
Eviden, part of the Atos Group, with an annual revenue of circa € 5 billion is a global leader in data-driven, trusted and sustainable digital transformation. As a next generation digital business with worldwide leading positions in digital, cloud, data, advanced computing and security, it brings deep expertise for all industries in more than 47 countries. By uniting unique high-end technologies across the full digital continuum with 47,000 world-class talents, Eviden expands the possibilities of data and technology, now and for generations to come.
Job Description**:Tier 2 SOC Analyst (Senior SOC Analyst) - Splunk SIEM Environment**
**Key Responsibilities**:
Monitor and ensure timely detection and notification of all threats within the customer environment using Splunk SIEM.
Deliver customer-specific requirements, adhering to agreed service level agreements (SLAs).
Understand customer expectations and translate them into actionable service outcomes.
Manage the scope of work, including scheduled and ad-hoc deliverables, and track deviations effectively.
Collaborate with platform administrators to onboard new log sources, maintain the health of the Splunk infrastructure, and ensure seamless integration of devices.
Develop and maintain threat detection scenarios and procedures aligned with industry best practices and customer requirements.
Leverage strong analytical and technical skills to enhance computer network defense operations, including Splunk query creation and advanced threat detection techniques.
Handle incidents by performing detection, analysis, triage, and resolution.
Perform threat hunting using Splunk's capabilities, identifying anomalous patterns, and managing content such as custom dashboards, alerts, and reports.
Maintain working knowledge of: Operating systems (Windows/Linux).
Network technologies (firewalls, proxies, DNS, and NetFlow).
Active Directory and identity-based attacks.
Network protocols (TCP, UDP, ICMP, etc.) and routing principles.
Gap Analysis and Continuous Improvement: Perform gap analysis to ensure all in-scope log sources are monitored effectively.
Identify missing use cases, hunting models, or detection scenarios, ensuring the highest level of threat detection.
Customer Interaction and Coordination: Act as the first point of contact (FPOC) for client issues, responding promptly to queries and taking ownership until resolution.
Facilitate log source onboarding or decommissioning and coordinate with internal teams to meet customer requirements.
Maintain transparency and demonstrate the value of SOC operations during periodic reviews such as MIS and QBR meetings.
Performance Reporting: Ensure timely submission of operational reports and updates on new use cases, proactive threat detection initiatives, and Splunk feature enhancements.
Present SOC achievements and areas of improvement to stakeholders, highlighting the Managed Detection and Response (MDR) value.
Minimum 10 years of total experience, with at least 6 years in a Security Operations Center (SOC) environment. At least 6 years of experience in customer-facing roles. Strong understanding of SIEM concepts, with hands-on experience in Splunk (including data onboarding, dashboard creation, and custom alert configuration). Solid technical and operational knowledge in cybersecurity, including network security, log analysis, and incident response. Excellent verbal and written communication skills. Qualifications: Bachelor’s degree in engineering, preferably in IT or Computer Science (B.E./B.Tech). One professional certification preferred (e.g., CCNA, CEH, Splunk Core Certified User/Power User). Work Schedule: General Shifts.
This role is a great opportunity for professionals with a strong Splunk SIEM background, leadership capabilities, and a commitment to delivering top-notch security operations and threat detection services.
For Internal Steps:
- Bench employees must inform their Lead
- Reach out to recruiter with internal approval
- Expect internal review / interviews
- If selected Recruitment will notify Line Manager and Head of LOB for final approval
- Employee will be notified of selection and arrange a start date
- If selection is Cross color (Atos -Eviden) there will be a change of employer
- Salary changes are not involved in this process
**Let’s grow together.
-
Director Soc
hace 3 semanas
Ciudad de México Factor Uno A tiempo completo**Requisitos**:- Edad: 30 a 45 años.- Ingeniero o licenciatura en Informática o sistemas (finalizada).- Esquema de trabajo hibrido. Cdmx- Inglés comunicacional avanzado.**Experiência**:- Amplio conocimiento en ciberseguridad- Operación de SOC a nível gerencial de prefencia directivo- Metodologías de seguimiento y respuesta a incidentes.- Instalación,...
-
FBS Tier 2
hace 3 días
Ciudad de México, Ciudad de México Capgemini A tiempo completoCapgemini is seeking a Tier 2 (L2) Support Analyst for a top 10 US Insurance Carrier.Our client is one of the United States' largest insurers, providing a wide range of insurance and financial services products with gross written premiums well over US$25 Billion (P&C). They proudly serve more than 10 million U.S. households with more than 19 million...
-
Remote Tier 2 Support Analyst – Life Insurance Platform
hace 3 semanas
Estado de México Capgemini Consulting A tiempo completoA global consulting firm is seeking a Tier 2 Support Analyst located in Mexico, Estado de México. In this role, you will manage escalated issues related to a digital life insurance ecosystem, ensuring seamless service delivery and communication across various teams. Candidates should have 1-3 years of experience, a preferred background in life insurance,...
-
Director de Operaciones
hace 4 semanas
Ciudad de México TECH - KLISH MEXICO A tiempo completo**Director de Operaciones - Tier 2 Metalmecánica.****Requisitos**:- Mínimo 5 años en puestos directivos de operaciones (metalmecánica o automotriz Tier 1/Tier 2).- Conocimiento sólido en IATF 16949, VDA 6.3, CORE TOOLS y procesos de troquelado.- Dominio de ISO 9001, Lean Manufacturing y Six Sigma (Green o Black Belt preferente).- Residencia en CDMX o...
-
SOC Analyst · Remoto 100%
hace 7 horas
Ciudad de México NEVERHACK Mexico A tiempo completoÚNETE A NEVERHACK Y COMPARTE NUESTRA PASIÓN POR LA INNOVACIÓN Somos un grupo francés especializado en ciberseguridad con más de 40 años de experiencia, consolidado como líder global en el sector desde 2021. Con presencia en 10 países y más de 1.200 colaboradores a nivel mundial, nuestro objetivo es crear un mundo digital más seguro mediante...
-
FBS Tier 2
hace 3 semanas
estado de méxico Capgemini Consulting A tiempo completoCapgemini is seeking a Tier 2 (L2) Support Analyst for a top 10 U.S. Insurance Carrier. Our client is one of the United States' largest insurers, providing a wide range of insurance and financial services products with gross written premiums well over US$25 billion (P&C). They proudly serve more than 10 million U.S. households with more than 19 million...
-
SOC Analyst · Remoto 100%
hace 1 día
Ciudad de México NEVERHACK Mexico A tiempo completoÚNETE A NEVERHACK Y COMPARTE NUESTRA PASIÓN POR LA INNOVACIÓN Somos un grupo francés especializado en ciberseguridad con más de 40 años de experiencia, consolidado como líder global en el sector desde 2021. Con presencia en 10 países y más de 1.200 colaboradores a nivel mundial, nuestro objetivo es crear un mundo digital más seguro mediante...
-
SOC Analyst · Remoto 100%
hace 7 horas
Ciudad de México NEVERHACK Mexico A tiempo completoÚNETE A NEVERHACK Y COMPARTE NUESTRA PASIÓN POR LA INNOVACIÓN Somos un grupo francés especializado en ciberseguridad con más de 40 años de experiencia, consolidado como líder global en el sector desde 2021. Con presencia en 10 países y más de 1.200 colaboradores a nivel mundial, nuestro objetivo es crear un mundo digital más seguro mediante...
-
SOC Analyst
hace 1 semana
Ciudad de México Temenos A tiempo completoTHE ROLE As our Security Incident Responder you will be part of a fast-paced Global SOC team and cover broad aspects of Temenos Cyber security monitoring and incident response operations. Working closely with SOC Manager and Cyber Security Engineers, the role is to help coordinate and report on cyber incidents affecting Temenos on-premises and Cloud...
-
SOC Analyst · Remoto 100%
hace 7 horas
Ciudad de México NEVERHACK Mexico A tiempo completoÚNETE A NEVERHACK Y COMPARTE NUESTRA PASIÓN POR LA INNOVACIÓNSomos un grupo francés especializado enciberseguridadcon más de 40 años de experiencia, consolidado como líder global en el sector desde 2021. Con presencia en 10 países y más de 1.200 colaboradores a nivel mundial,nuestro objetivo es crear un mundo digital más seguro mediante soluciones...