03 ago
|
A2MAC1 Decode the future
|
Santiago de Querétaro
03 ago
A2MAC1 Decode the future
Santiago de Querétaro
Manage security capabilities and lead complex L3 incident response and preventive engineering, ensuring the outsourced SOC's detections and escalations translate into structural improvements across identity, endpoint, email, DLP, cloud, DevOps, Product and AI security. The Senior role designs and drives resilient security solutions and reduces exposure surface by turning repeated incidents, vulnerabilities, and audit findings into prioritized roadmaps, automation, and guardrails—balancing security, usability, and compliance.Tasks & ResponsabilitiesEnd-to-end ownership of one or more security capabilities/platforms: design, implement, operate, and evolve them with threats and business needsServe as L3 technical authority for complex/high-impact incidents: lead investigations, perform deep RCA, and define long-term preventive engineering actionsDrive exposure surface reduction by improving vulnerability management processes, prioritization, and engineering remediation patternsEnsure operational excellence for anti-phishing and DLP (advanced tuning, policy design, exception governance, evidence-by-default)Embed security into DevOps and product environments: threat modeling facilitation, application security tooling/guardrails, and automation to shift leftDesign and maintain AI security implementation patterns (data protection, identity controls, safe usage guardrails) aligned with compliance needsStrengthen the SOC partner operating model: refine escalation criteria, enrich context, improve runbooks, and reduce noise via engineeringMentor/coach (as IC leadership) on secure engineering practices, troubleshooting methodology,
and standards adoption across teamsRequirementsProfessional Experience & StudiesExperience: 5-8 years of significant successful experience in IT infrastructure, application security and cybersecurity operations or engineeringStudies: Engineering degree or Master's in IT/Security is a plus; Bachelor's remains acceptable with strong track record (consistent with your baseline)Language: Professional English; strong written skills for standards and audit evidence narrativesCertificationsMust haveAzure Security & Governance, Sentinel/Defender, Purview, Entra IAM, Azure Security ArchitectureNice to haveEthical hacking experienceSkills & AbilitiesMust haveStrong communication, negotiation, leadership behaviors ("can do", "team player"), problem-solving and analytical skillsExpert-level hands-on expertise: Azure/M365/Entra, Defender, Intune, Purview DLP/MIP, Sentinel SIEM/SOAR automation, Azure DevOps CI/CDStrong networking and system foundations (Windows/Linux/AD, firewall/VPN/DNS/DHCP/Wi‑Fi) and ability to drive complex remediationStrong security fundamentals: vulnerability management, OWASP, pentesting concepts, AI security; ability to turn incidents/findings into structural improvementsStrong scripting/automation capability (PowerShell/Python) and ability to operate with agile/KanbanKnowledge of standards and governance: ITIL/ITSM, ISO27001/NIST, regulatory context (GDPR/TISAX)Nice to haveAutomotive/industrial experience; additional professionallanguages (French/German/Chinese)BenefitsBiweekly PaymentIMSSChritsmas BonusVacations by the lawVacations bonus by the lawFood VouchersGas VouchersMedical Insurance only for employeeLife Insurance only for employee#J-18808-Ljbffr
📌 Senior Cybersecurity Engineer (Santiago de Querétaro)
🏢 A2MAC1 Decode the future
📍 Santiago de Querétaro