Founded in 1967, Capgemini is revered as one of the world's leading consulting, technology, and outsourcing agencies. In 2016 alone, the company reported global
FBS Information Security Analyst (SSPM experience)
Location
Mexico
Posted
39 days ago
Salary
0
Seniority
Mid Level
Job Description
FBS Information Security Analyst (SSPM experience)
Capgemini
FBS – Farmer Business Services is part of Farmers operations with the purpose of building a global approach to identifying, recruiting, hiring, and retaining top talent. By combining international reach with US expertise, we build diverse and high-performing teams that are equipped to thrive in today’s competitive marketplace. We believe that the foundation of every successful business lies in having the right people with the right skills. That is where we come in—helping Farmers build a winning team that delivers consistent and sustainable results. Since we don’t have a local legal entity, we’ve partnered with Capgemini, which acts as the Employer of Record. Capgemini is responsible for managing local payroll and benefits. What to expect on your journey with us: - A solid and innovative company with a strong market presence - A dynamic, diverse, and multicultural work environment - Leaders with deep market knowledge and strategic vision - Continuous learning and development
Job Requirements
- Key member of the Platform Security team and will help drive security for our Software-as-a-Service (SaaS) platforms.
- This role focuses on ensuring SaaS applications are configured securely, users have appropriate access, and that third-party integrations don't introduce vulnerabilities.
- This role will also ensure compliance with relevant policies and regulations.
- Support onboarding of discovered SaaS platforms to SaaS Security Posture Management (SSPM) tool
- Monitor SSPM tool to review and triage alerts for onboarded applications
- Review the security of 3rd party integrations to prevent data breaches and other security risks
- Tune alerting rules to minimize false positives
- Ensure required access controls are in place for users and service accounts
- Assist with reporting to ensure compliance with policies and regulatory requirements
- Collaborate with application owners and IT teams to ensure security best practices are followed
- Review infrastructure as code changes to ensure resources are provisioned using principles of least privilege and meet security best practices
Benefits
- This position comes with a competitive compensation and benefits package.
- A competitive salary and performance-based bonuses.
- Comprehensive benefits package.
- Flexible work arrangements (remote and/or office-based).
- You will also enjoy a dynamic and inclusive work culture within a globally renowned group.
- Private Health Insurance.
- Paid Time Off.
- Training & Development opportunities in partnership with renowned companies.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Make a difference here. UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams. By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. A future cyber security expert! You're passionate about security and ready to dive in, using your growing technical skills to help protect client data and infrastructure from threats. Day-to-day, you’ll focus on monitoring, initial investigation, and following established procedures, while leveraging the expertise of your team to solve problems and learn new things. We are seeking an associate Security Analyst in our rapidly growing and dynamic shared services team. The ideal candidate will effectively manage security incidents by monitoring, investigating, and identifying the root causes, and recommend effective mitigation strategies. This position offers the opportunity to work with cutting-edge security tools. The role is highly analytical and requires a proactive, detail-oriented mindset to protect critical infrastructure and data. What You'll Do: - Monitor and analyze log data, network traffic, and/or alerts generated by a variety of security technologies in real-time. - Respond, triage, and escalate security incidents using a SIEM platform following documented procedures. - Support the execution of vulnerability scans and assist in analyzing results for remediation recommendations. - Draft security incident reports detailing the threat, its characteristics, and required remediation activities for review by a senior analyst. - Research new threats and ensureappropriate detection capabilities are in place. - Review security incidents and other deliverables for adherence to established procedures and provide documentation updates as necessary. - Contribute to the quality and timeliness of the security incident detection and classification service. - Ensure standards and procedures are adhered to within defined SLA’s. - Articulate security issues to customers, both verbally and written - Referring difficult or complex issues to more experienced staff. - Developing an understanding of current vulnerabilities, attacks, and countermeasures. - Identify opportunities for process improvement and suggest them to stakeholders - Manage and track customer issues and requests within a ticketing system. - Work within a 24x7x365 team to further support the timely delivery of monitoring services. - This position may be assigned to a rotating shift schedule. - Support other teams as needed. What You've Done: - US Citizenship is Required - 0-2 years of experience in an operational or technical environment, preferably with customer-facing responsibilities. - Foundational understanding of core networking concepts including TCP/IP and common Internet protocols. - Exposure to or basic understanding of an information/cyber security role, particularly in security monitoring and analysis. - Familiarity with the cyber security threat landscape, including prevalent vulnerabilities and attack methods. - Familiarity with security tools such as SIEM (Security Information and Event Management) platforms. - Demonstrated technical and troubleshooting skills and the ability to adapt to solve new technical issues. - General systems infrastructure knowledge (Windows/Linux OS). - Strong verbal and written communication skills with a focus on clear and concise reporting. Preferred Qualifications: - Bachelor's degree in Computer Science, Information Technology, or a related field. - Relevant entry-level certifications such as CompTIA Security+, CompTIA CySA+, or GIAC GSEC. - Basic experience with scripting languages (e.g., Python, PowerShell) for task automation. - Experience with ticketing/case management systems. - A strong passion for cyber security, continuous learning, and knowledge sharing. What We Offer: - 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed - Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment) - Group Term Life, Short-Term Disability, Long-Term Disability - Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness - Participation in the Discretionary Time Off (DTO) Program - 11 Paid Holidays Annually $60,000 - $72,000 a year UltraViolet Cyber maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect our company's differing products, services, industries and lines of business. Candidates are typically placed into the range based on the preceding factors. We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable. UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. If you want to make an impact, UltraViolet Cyber is the place for you!
SOC Analyst
SAICSAIC is a premier Fortune 500® mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets includes secure high-end solutions in mission IT, enterprise IT, engineering services and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives. We are approximately 24,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.5 billion. For more information, visit saic.com . For ongoing news, please visit our newsroom .
SAIC is seeking a SOC Analyst to join our team providing Security Operations Services. This position is a member of the 24x7-security operations team. Role is remote within the US Primary job responsibilities include: - Provide 24x7 monitor and analysis of SIEM events to identify potential security risks and vulnerabilities - Triage events and investigate to identify security incidents - Log security incidents in the IT ticketing system - Manage security incidents throughout their lifecycle to closure - Coordinate with other, remote technical teams to investigate, document, and resolve issues - Make recommendations for ongoing tuning and updates to the SIEM system - Receive input from threat intelligence sources and analyze events to identify threats and risks - Provide support for routine reporting - Support ad-hoc data and investigation requests - Conduct security and vulnerability scans as directed using established processes SAIC® is a premier Fortune 500® mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, civilian and intelligence markets includes secure high-end solutions in mission IT, enterprise IT, engineering services and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives. We are approximately 24,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.5 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.
Cyber Security Analyst
A+E NetworksA+E Networks is a leading global media company known for iconic brands such as A&E, The HISTORY Channel, Lifetime, and FYI. Founded in 1984 with two cable networks, A+E Networks ha
Cyber Security Analyst remote type Flexible (Hybrid/Remote/In-Office) locations New York time type Full time job requisition id R0010549 Work Locations: With the exception of some select roles that have in-office requirements, A+E Global Media operates on a flexible model that allows for remote, hybrid or full time in office work (in certain locales). Office locations include New York City, Los Angeles, Chicago, and Stamford, CT. Our list of eligible states in which employees may work remotely includes: California, Connecticut, Florida, Georgia, Illinois, Indiana, Maryland, Massachusetts, Michigan, Minnesota, Nevada, New Hampshire, New Jersey, New York, North Carolina, Oregon, South Carolina, South Dakota, Texas, West Virginia, Wisconsin, and Wyoming. Division Story A+E’s Technology team is deep-rooted in the heart of our business. We have great people and great technologies, and together we take on the toughest challenges. As innovators, we choose to iterate, pivot, and adapt quickly. We’ve reinvented the way A+E leverages technology to produce and sell world-class content. We’ve modernized our core solutions and embraced a cloud first approach. Perched on the virtues of our “Technology Code”, we make technology better, create solutions together, and most of all, we have fun with it. Our team members are motivated individuals who help each other do remarkable things every day. Together we deliver best-in-class solutions that transform the way A+E works. If this sounds like something you want to be a part of, we want to hear from you! Job Description THE ROLE: Cyber Security Analyst Cybersecurity is part of the Global Technology and Media Operations (GTMO) organization and is responsible for protecting A+E’s systems, data, and content across the company. The team works across corporate, consumer, and media supply chains. This role sits within the Incident Management team and focuses on investigating and responding to security events across endpoint, identity, email, cloud, and network environments. The team uses a combination of internal capabilities and external partners to monitor and respond to threats. The Cybersecurity Analyst partners with engineering and operational teams across the organization to investigate issues, contain threats, and improve how we detect and respond to security events. MORE ABOUT WHAT YOU’LL DO: - Respond to and investigate security alerts, events, and incidents in a timely manner - Triage alerts and determine severity, scope, and potential impact - Analyze activity across tools such as CrowdStrike, Microsoft Defender for O365, Zscaler, and Abnormal - Support containment, remediation, and recovery actions during incidents - Document findings, actions, and decisions in the ITSM platform and track incidents through closure - Work with internal teams (Cloud, DevOps, Infrastructure, Client Services, AppSec) to investigate issues and execute containment and remediation actions - Correlate data across multiple systems to validate threats and reduce false positives - Identify gaps and contribute to improvements in detection, alerting, and response processes BASIC REQUIREMENTS: - Bachelor’s degree in Computer Science, Information Technology, or equivalent experience is preferred - 4+ years of experience in cybersecurity or information security, including at least 2 years in incident response or security investigations - Hands-on experience analyzing and responding to security events, including log analysis, research, and coordinating across multiple tools and teams - Experience with endpoint detection and response tools (e.g., CrowdStrike) and SIEM platforms - Experience investigating alerts across endpoint, identity, email, or network environments - Familiarity with tools such as Microsoft Defender for O365, Zscaler, or similar platforms - Experience working in cloud environments (AWS, Azure, or similar) - Strong analytical, problem-solving, and communication skills, with the ability to manage multiple tasks THE IDEAL CANDIDATE WILL HAVE: - Experience with AI phishing tools such as Abnormal Security or similar email security platforms - Experience with identity and access management (e.g., Okta, Entra ID) - Experience with vulnerability management tools (e.g., Qualys) - Experience working with data pipeline or log management tools (e.g., Cribl) - Experience with cloud security and incident response, especially in AWS - Cybersecurity certifications (e.g., Security+, CySA+, GCIA, GCIH, or similar), especially in incident response, threat intelligence, or threat hunting - Cloud certifications are a plus Compensation Annual Pay Range: $100,870 - $116,000 Annual Incentive Target: 7.50% The annual/hourly pay range displayed serves as a good faith estimate of the minimum and maximum base pay range for this role. Compensation for the role will be based on a number of different factors such as a candidate’s qualifications, skills, competencies, location, and experience. A+E offers a competitive total compensation package, which includes healthcare coverage, 401k matching, and a range of other benefits. Learn more at www.aegm.com/careers. A+E Global Media proudly provides equal employment opportunity for all employees and job applicants, and makes employment decisions consistent with this principle. The company’s employment actions and decisions – including recruitment, hiring, training, promotion, demotion, compensation, transfer, layoff, and termination – are made without regard to an employee’s race, color, religion, creed, age, national origin, ancestry, sex (which includes pregnancy, childbirth, breastfeeding, and related medical conditions), gender, sexual orientation, gender identity, gender expression, marital status, alienage or citizenship status, physical and/or mental disability, medical condition, family and medical leave status, genetic information, military or veteran status, or any other characteristic protected by applicable law. A+E Global Media is a joint venture of the Hearst Corporation and The Walt Disney Company. We are proud to be an Affirmative Action/Equal Opportunity Employer/Disabled/Veterans.
Cybersecurity Analyst
L.L.BeanFor more than a century, L.L.Bean has specialized in high-quality apparel, accessories, outdoor equipment, home goods, and outdoorsman advice. Founded as a one-
At L.L.Bean, we believe the outdoors brings out the best in all of us. We are committed to fostering a culture of belonging and creating safe, inclusive spaces where everyone feels welcome—both here and Outside. We value individual differences and are dedicated to maintaining an inclusive work environment where everyone can bring the best of their experience and talents and truly thrive. Position Purpose Contributes to the Information Security and Compliance team's Response and Run activities. Responsible for the execution, support, and stewardship of cybersecurity incident response, alert and vulnerability monitoring, and program initiative execution. Works closely with the GRC Risk Team to report and monitor cybersecurity risk. We offer: - Extraordinary employee experience - Flexible schedule - Work from home up to 5 days a week - Fitness subsidy - Education subsidy - 3 paid days to enjoy outdoor activities - 5 Personal/sick days - L.L.Bean employee discount - Asociación solidarista - Life and medical insurance - Company doctor About the role: - Monitor, operate, and maintain information security and compliance program infrastructure according to department strategy and business requirements. - Collaborate with business leaders, architects, engineers, and application development teams to implement scalable, sustainable, and measurable IT solutions. - Collaborate with technical leads, architects, and analysts on evaluating new tools and solutions for security components, compliance, and functionality. - Support the Risk team through security-related risk consultation and threat analysis. - Provide technical leadership for cybersecurity tools. - Collaborate with internal clients in support of technology requirements. - Participate in 24x7 on-call rotation for alerts and Incident Response for all technical, security related events. - Participate in capacity planning and hardware/software budget planning. - Participate and act as an IT leader during Incident Response Plan (IRP) review, testing, and execution. - Assist other analysts and engineers to utilize security tools and execute processes and procedures effectively. - Act as an information security and compliance consultant to enterprise projects as a subject matter expert. - Drive and employ standards within the context of job responsibilities. - Understand and apply change management procedures/principles. - Provide management with status reports and participate in program reporting. - Produce documentation for service portfolio. - Operationalize initiatives from engineering and ensure timely delivery, measured execution, process documentation, and continual improvement. - Other duties as assigned. About you: Education: 4-Year Bachelor's Degree in Computer Science, Cybersecurity, or a related field; or equivalent hands-on SOC / Incident Response experience. Experience: 3-5+ years in Cybersecurity English Level: C1 (Advanced) Skills and Qualifications - Ability to operate effectively in a fast‑paced, high‑pressure Security Operations environment, including handling multiple concurrent security incidents. - Prior experience in a SOC and/or Incident Response role, including triage, investigation, containment, eradication, and recovery activities. - Strong working knowledge of enterprise security technologies such as SIEM, SOAR, EDR/XDR, IDS/IPS, email security, and vulnerability management tools. - Demonstrated experience analyzing and responding to security alerts across endpoints, networks, cloud, and applications. - Strong analytical and problem-determination skills for investigating complex security incidents in large enterprise environments. - Experience performing incident documentation, root cause analysis, and post-incident reporting including lessons learned and improvement recommendations. - Ability to participate in a 24x7 on-call rotation and respond to high-severity security incidents outside normal business hours when required. - Proven ability to write clear, concise, and accurate technical and executive-level incident reports, timelines, and metrics. - Excellent written and verbal communication skills, with the ability to clearly explain technical findings to both technical teams and non-technical stakeholders. - Strong team skills including collaborative problem solving, coordination during live incidents, and effective communication under pressure. - Hands-on experience with: - Networking fundamentals (TCP/IP, DNS, HTTP/S, VPNs) - Windows and *NIX operating systems - Virtualized and cloud environments - Application and Internet-facing security threats - Scripting and automation experience is a plus, including Python, PowerShell, Bash, or similar languages, especially for investigation, enrichment, or response workflows. - Security certifications are a plus, such as GCIH, GCED, GCIA, CISSP, CISA, CISM, or equivalent IR-focused credentials. If you care about the outdoors, joining L.L.Bean is a great way to feel good about what you do. Our benefits package makes a good thing even better, with programs and perks designed to support your health and financial goals. Plus, maintaining a healthy work-life balance and re-charging outside are all part of the plan. If your experience looks a little different from what we've identified and you think you'd be great at this role, we'd love to learn more about you! At L.L.Bean, we believe the outdoors brings out the best in all of us. We strive to reflect this every day in our commitments to employees and partners and in our efforts to promote belonging.



