02 ago
|
Kohler
|
Ciudad Juárez
02 ago
Kohler
Ciudad Juárez
Opportunity
Kohler Co. is seeking a SOC Analyst / Threat Hunter to strengthen detection, investigation, and response capability across the enterprise.
Location: Hybrid, Juarez Actual León
Work Mode: Hybrid, Juarez, Nuevo León
Key Responsibilities
This role operates within standard business hours with an on-call rotation.
Detection & Incident Response
Monitor, triage, and investigate security alerts across endpoint, identity, network, cloud, and SaaS environments—moving quickly from initial signal to understanding scope and impact.
Lead and support incident investigations by developing clear timelines, identifying affected assets, and driving toward containment.
Execute and oversee containment and response actions (including via automated and agentic workflows) in line with established playbooks, using sound judgment when situations fall outside defined procedures.
Produce clear, concise documentation of investigations and incidents to support post-incident review and continuous improvement.
Threat Hunting
Perform proactive, hypothesis-driven threat hunting based on attacker techniques, observed behavior, and current threat intelligence.
Develop and test hunt hypotheses mapped to MITRE ATT&CK; (or equivalent frameworks), translating them into structured queries and analysis.
Identify weak signals and suspicious patterns that fall below existing detection thresholds.
Feed hunt findings back into detection engineering—improving rule quality and closing visibility gaps over time.
Detection & Signal Improvement
Assist with tuning and improving SIEM and EDR detections.
Reduce false positives while strengthening high-confidence alerts.
Work with architecture and engineering teams to improve telemetry and visibility.
Attacker & TTP Awareness
Actively follow the evolving threat landscape, including emerging attac
📌 Threat Hunter (Ciudad Juárez)
🏢 Kohler
📍 Ciudad Juárez