10 ago
|
Talent Accelerator
|
Ciudad de México
10 ago
Talent Accelerator
Ciudad de México
In this role, you will be a member of our Threat Detection, Threat Response, and Threat Hunting Team, responding rapidly to new and emerging threats. You will continuously enhance detection capabilities on our platforms by encoding your expertise and conducting threat hunting.
**Required Skills**:
- Strong written and verbal communication skills.
- Experience in monitoring alerts, incident response, and technical forensics.
- Proactively seek and detect ongoing advanced persistent attacks on a system.
- Familiarity with internal details of Windows, Mac, and Linux.
- Analyze and reverse attacks (including malware) to understand their tools, methods, and root cause.
- Create use cases to detect new threats through research, collaboration (e.g., penetration testing), threat intelligence (TI), incident response, or intuition.
- Understanding of network and endpoint characteristics, differentiating between abnormal and normal behavior.
- Understanding of tactics, techniques, and procedures (TTP) used by advanced threat actors.
- Understanding of security technologies such as intrusion detection and prevention technologies, endpoint protection, and proxies, with the ability to interpret log data produced by these technologies (including Windows events, PowerShell events, WMI events, AD events).
- Knowledge of relevant frameworks like MITRE ATT&CK.;
- Ability to write REGEX expressions and scripts in Python/PowerShell/bash.
- Ability to set up a lab environment for Malware Analysis and Reverse Engineering.
- Ability to perform simple static and dynamic malware analysis.
- Ability to conduct memory and digital forensic investigations for intrusion attempt classification.
**Desirable Skills**:
- Ability to differentiate between Advanced Persistent Threats, Hacktivists, 'Script Kiddies,' and other adversaries.
- Comfortable using threat hunting tools and big data platforms.
- Ability to use intelligence from various sources (e.g., OSINT tools) to track attackers.
- Ability to develop hypotheses for threat hunting investigations.
- Analysis of various formats (PE, DLL, PDF, DOC, DOCX, PPT, PPTX, XLS, XLSX, JS, ELF, VBA, PowerShell, WMI).
- Detect and evade attempts of Anti-Forensics/Anti-Reverse Engineering performed by malware.
- Discovery of unknown malware on a system.
- Accurately map detected attacks to MITRE ATT&CK; Technique ID and Cyber Kill Chain phase.
- Participate in research projects on detection methods.
- Create hypotheses and investigate using modern tools and techniques.
- Rapid analysis of incidents and gap assessments.
**Requirements**:
- Bachelor's or Master's degree in Computer Science, Information Security, or related fields.
- 5+ years of experience in cybersecurity operations.
- Security certifications such as CISSP, CISM, or CISA are desirable but not mandatory.
- Intermediate English level (B2).
**Job Offer**:
- Competitive salary.
- Professional development.
- Medical insurance.
- Legal benefits.
- Hybrid work.
Tipo de puesto: Jornada completa, Por tiempo indeterminado
Salario: $70,000.00 - $100,000.00 al mes
Horario:
- Lunes a viernes
- Turno de 8 horas
Pregunta(s) de postulación:
- How many years of work experience as a Cybersecurity Analyst do you have?
Lugar de trabajo: Empleo presencial
📌 Sr. Cybersecurity Analyst (Ciudad de México)
🏢 Talent Accelerator
📍 Ciudad de México