5 дней назад
Cyber Defense Analyst (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cyber Defense Analyst (AI): Monitoring and configuring SIEM, EDR/XDR, identity, network, endpoint, and cloud security controls to detect, investigate, and respond to threats with an accent on cross-environment event correlation, alert triage, and security visibility. Focus on tuning detection rules, analyzing authentication and endpoint behavior, validating cloud security baselines, and supporting incident containment and post-incident improvement.
Location: Hybrid for candidates based in San Salvador, El Salvador; fully remote for candidates based in other countries
Company
designs, builds, and scales AI-powered solutions across software, cloud, data, and artificial intelligence.
What you will do
- Monitor, configure, and support SIEM, EDR/XDR, identity protection, endpoint, network, and cloud security tools.
- Correlate events across endpoints, networks, identity systems, and cloud environments to identify suspicious activity.
- Analyze, triage, escalate, and document security alerts and incidents according to SOC procedures.
- Fine-tune detection rules, validate endpoint compliance, and improve monitoring accuracy and response efficiency.
- Support incident containment, post-incident analysis, SOC playbooks, and process improvement initiatives.
Requirements
- Bachelor’s degree in Computer Science, Software Engineering, Computer Engineering, or a related field, or equivalent professional experience.
- At least 2 years of hands-on cybersecurity, security operations, or SOC experience.
- Experience with SIEM platforms such as Microsoft Sentinel, Stellar Cyber, or Google SecOps, and EDR/XDR tools such as SentinelOne, Microsoft Defender, or Cortex XDR.
- Knowledge of network security, Fortinet, Palo Alto, IAM, Microsoft Entra ID, endpoint protection, and Azure or GCP environments.
- Familiarity with incident response, threat detection, and the MITRE ATT&CK framework.
- Advanced English proficiency, strong analytical and communication skills, and the ability to work independently under pressure.
Nice to have
- CompTIA Security+, Certified SOC Analyst, or EC-Council Certified Incident Handler certification.
- Experience with ManageEngine and Microsoft Security products.
Culture & Benefits
- Work in an AI-native organization focused on scalable products and business impact.
- Collaborate across design, development, cloud, data, and artificial intelligence.
- Culture built around excellence, teamwork, respect, transparency, and efficient communication.
- Opportunities to learn quickly, take ownership, and contribute to modern ways of working.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →