Назад
Company hidden
2 часа назад

Senior Incident Response Analyst (Cybersecurity)

Формат работы
remote (только Guatemala)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Guatemala
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Incident Response Analyst (Cybersecurity): Managing security incidents across cloud, identity, endpoint, and network environments with an accent on AWS security, investigation, containment, and detection engineering. Focus on improving SOC playbooks, automating response workflows, reducing alert noise, and applying AI-driven security capabilities.

Location: Remote (Guatemala)

Company

Secure remote workforce products and services are developed with a focus on protecting business assets, customer data, and employee information.

What you will do

  • Identify, assess, investigate, contain, eradicate, and recover from security incidents across cloud, identity, endpoint, and network environments.
  • Lead post-incident reviews and perform root-cause analysis.
  • Act as the primary escalation point for complex alerts, guiding Information Security Analysts and mentoring analysts.
  • Improve SOC tools, workflows, procedures, detections, and alerting while reducing noise and increasing automation.
  • Partner with SOC, Offensive Security, Engineering, IT, Cloud, and business teams to identify gaps, validate controls, and remediate security weaknesses.
  • Apply AI, advanced analytics, threat intelligence, and industry best practices to improve detection and response.

Requirements

  • 3+ years of hands-on experience in a SOC, incident response, or similar cybersecurity role.
  • Strong experience securing cloud-first environments, particularly AWS, with familiarity across other cloud platforms.
  • Experience with EDR/ITDR, CSPM, SIEM and logging, email protection, network and access security, case management, and SOAR platforms.
  • Knowledge of incident response across endpoint, cloud, identity, SaaS, and network attack scenarios, including threat intelligence and structured threat hunting.
  • Experience developing or improving playbooks, runbooks, automated response workflows, and AI/ML-driven security capabilities.
  • English proficiency at B2+ level, with the ability to document incidents and communicate findings to technical and non-technical stakeholders.

Nice to have

  • GCFR, AWS Security Specialty, or AZ-500 certification.

Culture & Benefits

  • Comprehensive health benefits.
  • Paid holidays, volunteer days, quarterly self-care days, and company-designated no-meeting days.
  • Tuition reimbursement and instructor-led and on-demand learning programs.
  • Wellness program, confidential Employee Assistance Program, wellness app, and one-on-one coaching.
  • Employee Resource Groups, charitable programs, and an inclusive work environment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →