Non-Engineering
Originally posted 25 September 2026 by the employer.
About the role
This role involves strengthening detection capabilities, investigating threats, and supporting secure operations across the enterprise within a global security operations team.
What you'll do
- Monitor and respond to security alerts across cloud and on-prem environments.
- Investigate and triage security incidents, escalating as needed.
- Assist in tuning and optimizing detection rules across SIEM, EDR, and DLP platforms.
- Conduct proactive threat hunting based on behavioral anomalies, threat intelligence, and environmental context.
- Support the deployment and configuration of security tools, including DLP, endpoint protection, and cloud security controls.
- Contribute to documentation and playbook development for incident response and and detection logic.
What you'll need
- 2+ years of experience in security operations, SOC, or incident response.
- Hands-on experience with cloud platforms (Azure or AWS).
- Familiarity with SIEM tools (e.g., Sentinel, Splunk, Rapid7), EDR platforms, CSPM, and DLP technologies.
- Strong understanding of security fundamentals, attacker TTPs, and detection engineering.
- Experience with threat hunting methodologies and behavioral analytics.
- Fluent in English and Spanish.
Nice to have
- Experience with scripting or automation (e.g., Python, PowerShell) is a plus.