IT Security Analyst
Hace 1 día
Argentina, México
AmSpec Group
Jornada completa
Gratis con email o Google
Guarda esta oferta y sigue tu búsqueda
Crea una cuenta gratis para guardar empleos, crear alertas y volver a esta oferta desde tu panel.
Gratis con email o Google
Mexico, Brazil & Argentina
Information Technology
Job Type
: Full Time Department: Information Technology Reports to: Cybersecurity Architect Employment Type: Full-time Job Summary:
Key Responsibilities
:
- Monitor security alerts and incidents in real-time using BitDefender GravityZone, MS Intune policy configuration and Proofpoint platforms.
- Investigate and triage security events generated by BitDefender endpoint protection, XDR, WCF, and ransomware protection modules.
- Perform threat hunting and deep-dive investigations within BitDefender and Proofpoint consoles.
- Create, tune, and optimize detection rules, policies, and alerts in BitDefender, Intune and Proofpoint to reduce false positives and improve detection efficacy.
- Respond to security incidents following established playbooks, including containment, eradication, and recovery activities.
- Generate detailed incident reports and maintain documentation of security events and remediation actions.
- Collaborate with IT and business teams (such as Legal, Finance, Compliance, HR) to implement security best practices and remediate vulnerabilities.
- Contribute to continuous improvement of the Security Operations processes, tools, and playbooks.
- Stay current with emerging threats, new features in BitDefender, Intune and Proofpoint, and industry security trends.
- Report all incidents to the Cybersecurity Architect on a daily basis. Required Skills & Experience:
- Minimum 2 years of experience in Security Operations, SOC, Threat Monitoring, or similar.
- Strong hands-on experience with BitDefender GravityZone (Endpoint Security, XDR, Risk Analytics, Patch Management, and reporting).
- Strong hands-on experience with MS Intune policy configuration/management.
- Experience with SIEM tools, incident response workflows, and ticketing systems.
- Ability to interpret logs, alerts, and dashboards from security tools effectively.
- Excellent analytical, problem-solving, and communication skills. Preferred Qualifications:
- Experience with other tools (e.g., Microsoft Entra, CrowdStrike, or similar).
- Familiarity with MITRE ATT&CK framework, CVE databases and threat intelligence.
- Scripting knowledge (PowerShell, Python) for automation of security tasks.
Job Type
: Full Time Department: Information Technology Reports to: Cybersecurity Architect Employment Type: Full-time Job Summary:
Key Responsibilities
:
- Monitor security alerts and incidents in real-time using BitDefender GravityZone, MS Intune policy configuration and Proofpoint platforms.
- Investigate and triage security events generated by BitDefender endpoint protection, XDR, WCF, and ransomware protection modules.
- Perform threat hunting and deep-dive investigations within BitDefender and Proofpoint consoles.
- Create, tune, and optimize detection rules, policies, and alerts in BitDefender, Intune and Proofpoint to reduce false positives and improve detection efficacy.
- Respond to security incidents following established playbooks, including containment, eradication, and recovery activities.
- Generate detailed incident reports and maintain documentation of security events and remediation actions.
- Collaborate with IT and business teams (such as Legal, Finance, Compliance, HR) to implement security best practices and remediate vulnerabilities.
- Contribute to continuous improvement of the Security Operations processes, tools, and playbooks.
- Stay current with emerging threats, new features in BitDefender, Intune and Proofpoint, and industry security trends.
- Report all incidents to the Cybersecurity Architect on a daily basis. Required Skills & Experience:
- Minimum 2 years of experience in Security Operations, SOC, Threat Monitoring, or similar.
- Strong hands-on experience with BitDefender GravityZone (Endpoint Security, XDR, Risk Analytics, Patch Management, and reporting).
- Strong hands-on experience with MS Intune policy configuration/management.
- Experience with SIEM tools, incident response workflows, and ticketing systems.
- Ability to interpret logs, alerts, and dashboards from security tools effectively.
- Excellent analytical, problem-solving, and communication skills. Preferred Qualifications:
- Experience with other tools (e.g., Microsoft Entra, CrowdStrike, or similar).
- Familiarity with MITRE ATT&CK framework, CVE databases and threat intelligence.
- Scripting knowledge (PowerShell, Python) for automation of security tasks.