Senior Incident Response Analyst

hace 5 días


Monterrey, México Blue Yonder A tiempo completo

Title: Senior Incident Response Analyst (SOC)Location: Monterrey, N.L.Responsibilities- Detect and respond to cyber security threats to ensure your organization operates securely.- Partner with the existing internal SOC team across the world and keep the CISO informed about security operations.- Act as a liaison between the SOC team, other internal stakeholders, and external parties such as vendors, clients or regulatory bodies.- Develop incident management plans and procedures, surveying the networks for signs of a breach.- Coordinating and executing tabletop exercises to practice, develop plans, policies and procedures.- Perform proactive threat hunts to identify threats and assess the state of security controls.- Work with in-house red teams in order to detect offensive operations, and capture and action findings.- Proactively look for suspicious anomalous activity based on data alerts or data outputs from various toolsets.-- Develop new SIEM use-cases to detect un-usual activities.- Develop Incident Response Playbooks for emerging Threats/attack types.-- Document the lessons learned and improve the process.- Responsible for completing the documentation of the investigation; determine the validity and priority of the activity and escalate to senior SOC analysts or leads.- Carry out Level 3 triage of incoming issues (initial assessing the priority of the event, initial determination of incident to determine risk and damage or appropriate routing of security or privacy data request)- Provide communication and escalation throughout the incident per the SOC guidelines.- Identify and manage a wide range of threat intelligence sources to provide a holistic view of the threat landscape and filter out noise to focus and execute upon actionable intelligence.- Leading the development of actionable use cases to detect, triage, investigate and remediate based on latest threat actor trends, support teams with the technical implementation of parsing log sources creating, validating and testing alerting queries to reduce false positives.- Ensure that all security events and incidents (internal / external) are logged into ServiceNow and regularly updated and closed within the set SLAsQualifications- At lest 3-6 years of proven experience in Security incident response and SOC Operations- Practical experience with threat detection, monitoring and incident response and implementation- Ability to query and write detection rules, in Security tools, (i.e., SIEM (Qradar / Splunk), SOAR, WAF, AV, Firewalls, Internet-facing services).- Strong technical understanding of network/OS fundamentals and common Internet protocols, specifically DNS, HTTP, HTTPS- Experience conducting technical analysis of security events including Malware analysis, Phishing, and digital forensics.- Strong written and oral communication skills.- Experience in investigating security issues and / or complex operational issues on Windows and Linux- Familiarity with core concepts of security incident response, e.g., the typical phases of response, vulnerabilities vs threats vs actors, Indicators of Compromise (IoCs), etc.- Certifications such as GCIH, GCIA, GSEC, CEH, Security+, SSCP.- Results focused and attention to detail.- Available to work outside of their shift when needed.At Blue Yonder, we care about the wellbeing of our employees and those most important to them. This is reflected in our robust benefits package and options that includes- Competitive Salary- Christmas Bonus (30 days)- Savings Fund- 15 Vacation Days on first two year and 60% Vacation bonus- Major and Minor Medical Service insurance for you and your family- Life Insurance- Totalpass- Annual bonus- And more to be sharedLI-JA1Our ValuesIf you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success - and the success of our customers. Does your heart beat like ours? Find out here:Core ValuesAll qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.



  • Monterrey, México Blue Yonder A tiempo completo

    Title: Senior Incident Response Analyst (SOC)Location: Monterrey, N.L.Responsibilities- Detect and respond to cyber security threats to ensure your organization operates securely.- Partner with the existing internal SOC team across the world and keep the CISO informed about security operations.- Act as a liaison between the SOC team, other internal...


  • Monterrey, México Blue Yonder A tiempo completo

    Location: Monterrey, MexicoRole: Sr. Cybersecurity Incident Response Analyst (Threat Hunting)Blue Yonder Job Profile: Sr. Security Engineer, Security ArchitectOverviewBlue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting) to join its Security Operations (SOC) team. The successful...


  • Monterrey, México Blue Yonder A tiempo completo

    Location: Monterrey, MexicoRole: Sr. Cybersecurity Incident Response Analyst (Threat Hunting)Blue Yonder Job Profile: Sr. Security Engineer, Security ArchitectOverviewBlue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting) to join its Security Operations (SOC) team. The successful...


  • Monterrey, México Blue Yonder A tiempo completo

    Location: Monterrey, Mexico Role: Sr. Cybersecurity Incident Response Analyst (Threat Hunting) Blue Yonder Job Profile: Sr. Security Engineer, Security Architect Overview Blue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting) to join its Security Operations (SOC) team. The successful...


  • Monterrey, México Blue Yonder A tiempo completo

    Overview Blue Yonder, a leading supply chain software company, is seeking a Sr Security & Incident Response to join its Security Operations team. The successful candidate will be responsible for assisting with the organization's incident response efforts in the event of a security breach or cyber-attack. This role requires strong technical skills, attention...


  • Monterrey, México Blue Yonder A tiempo completo

    Overview Blue Yonder, a leading supply chain software company, is seeking a Sr Security & Incident Response to join its Security Operations team. The successful candidate will be responsible for assisting with the organization's incident response efforts in the event of a security breach or cyber-attack. This role requires strong technical skills, attention...


  • Monterrey, México Blue Yonder A tiempo completo

    Overview Blue Yonder, a leading supply chain software company, is seeking a Sr Security & Incident Response to join its Security Operations team. The successful candidate will be responsible for assisting with the organization's incident response efforts in the event of a security breach or cyber-attack. This role requires strong technical skills, attention...


  • Monterrey, México Blue Yonder A tiempo completo

    A leading supply chain software company in Monterrey is seeking a Sr. Cybersecurity Incident Response Analyst to enhance their Security Operations team. The role involves incident response, threat hunting, and collaboration with IT and legal teams to mitigate security risks. Candidates should have strong technical skills and a background in information...


  • Monterrey, México Blue Yonder A tiempo completo

    A leading supply chain software company in Monterrey is seeking a Sr. Cybersecurity Incident Response Analyst to enhance their Security Operations team. The role involves incident response, threat hunting, and collaboration with IT and legal teams to mitigate security risks. Candidates should have strong technical skills and a background in information...


  • Monterrey, Nuevo León, México Blue Yonder A tiempo completo

    Location: Monterrey, Mexico or Mexico City, MX preferred - Fully RemoteBlue Yonder Job Profile: Sr. Security EngineerOverview:Blue Yonder, a leading supply chain software company, is seeking a Sr Security & Incident Response to join its Security Operations team. The successful candidate will be responsible for assisting with the organization's incident...