2 часа назад
Senior Incident Response Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Incident Response Analyst (Cybersecurity): Managing security incidents across cloud, identity, endpoint, and network environments with an accent on AWS security, investigation, containment, and detection engineering. Focus on improving SOC playbooks, automating response workflows, reducing alert noise, and applying AI-driven security capabilities.
Location: Remote (Guatemala)
Company
Secure remote workforce products and services are developed with a focus on protecting business assets, customer data, and employee information.
What you will do
- Identify, assess, investigate, contain, eradicate, and recover from security incidents across cloud, identity, endpoint, and network environments.
- Lead post-incident reviews and perform root-cause analysis.
- Act as the primary escalation point for complex alerts, guiding Information Security Analysts and mentoring analysts.
- Improve SOC tools, workflows, procedures, detections, and alerting while reducing noise and increasing automation.
- Partner with SOC, Offensive Security, Engineering, IT, Cloud, and business teams to identify gaps, validate controls, and remediate security weaknesses.
- Apply AI, advanced analytics, threat intelligence, and industry best practices to improve detection and response.
Requirements
- 3+ years of hands-on experience in a SOC, incident response, or similar cybersecurity role.
- Strong experience securing cloud-first environments, particularly AWS, with familiarity across other cloud platforms.
- Experience with EDR/ITDR, CSPM, SIEM and logging, email protection, network and access security, case management, and SOAR platforms.
- Knowledge of incident response across endpoint, cloud, identity, SaaS, and network attack scenarios, including threat intelligence and structured threat hunting.
- Experience developing or improving playbooks, runbooks, automated response workflows, and AI/ML-driven security capabilities.
- English proficiency at B2+ level, with the ability to document incidents and communicate findings to technical and non-technical stakeholders.
Nice to have
- GCFR, AWS Security Specialty, or AZ-500 certification.
Culture & Benefits
- Comprehensive health benefits.
- Paid holidays, volunteer days, quarterly self-care days, and company-designated no-meeting days.
- Tuition reimbursement and instructor-led and on-demand learning programs.
- Wellness program, confidential Employee Assistance Program, wellness app, and one-on-one coaching.
- Employee Resource Groups, charitable programs, and an inclusive work environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
6 дней назад
Senior Cybersecurity Incident Analyst (Cybersecurity)
2 часа назад
Staff Security Analyst (Cybersecurity)
123 200 - 154 000$
2 дня назад
Senior Security Operations Analyst (Detection & Response)
117 800 - 166 950$
18 часов назад
Principal Cybersecurity Engineer (US Federal)
184 800 - 277 200$
6 часов назад
SOC Analyst (Cybersecurity)
4 часа назад