Назад
Company hidden
2 месяца назад

SOC Tier 3 Analyst & Engineer (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Chile
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SOC Tier 3 Analyst & Engineer (Cybersecurity): Analyzing and responding to escalated security events, threat intelligence, and operational technology threats with an accent on SIEM operations, incident response, and OT security. Focus on threat hunting, IOC ingestion, forensic analysis, and developing detection content, scripts, SOPs, and runbooks for resilient cyber operations.

Location: Santiago, Chile; in-person collaboration is prioritized

Company

hirify.global delivers mission-critical IT services across security, cloud, analytics, engineering, applications, IT outsourcing, and modern workplace solutions.

What you will do

  • Analyze escalated cybersecurity events from Tier 1 and Tier 2 analysts, distinguish benign activity, and escalate confirmed incidents.
  • Correlate logs, alerts, and event data across enterprise network devices and applications to recommend effective remediation.
  • Conduct proactive threat hunting across network, system, and log data, including external threat intelligence and indicators of compromise.
  • Support incident resolution across enterprise technology teams and provide expert technical assistance to staff.
  • Develop detection content, searches, scripts, technical advisories, SOPs, and SOC runbooks.
  • Improve alerting and incident-handling effectiveness through trend analysis, reporting, and technical recommendations.

Requirements

  • 3–5 years of operational experience as a cybersecurity analyst or engineer handling security incidents and response in critical environments.
  • Proficiency in English and Spanish is required for communication with global stakeholders, vendors, and executive leadership.
  • Hands-on experience with SIEM, IDS/IPS, firewalls, NAC, DLP, DAM, content filtering, vulnerability scanning, and endpoint protection.
  • Strong knowledge of TCP/IP networking, packet capture and NetFlow analysis, operating-system forensic techniques, and command-line scripting with Python, PowerShell, or Bash.
  • Strong knowledge of OT environments, including SCADA, ICS, industrial network security, asset visibility, threat detection, and Nozomi Networks.
  • Experience with tools such as Active Directory, Cisco IOS, Microsoft Server, CrowdStrike, Splunk ES, SNORT, Yara, IronPort, and Firepower.

Nice to have

  • SANS GCIA, GCED, GPEN, GCIH, or similar certification.
  • Experience with CIRT/CSIRT, CERT, or CSIRC organizations.
  • Degree in Computer Science, Information Security, or a related discipline.

Culture & Benefits

  • In-person collaboration with flexibility for wellbeing, productivity, individual work styles, and life circumstances.
  • Global and local teamwork focused on client success.
  • Learning, diversity, inclusion, ethics, and corporate citizenship are emphasized.
  • Full-time employment with a collaborative cybersecurity environment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →