Co-creating solutions for a better future
Cyber Security Analyst
Location
Colombia
Posted
5 days ago
Salary
0
Seniority
Senior
Job Description
Cyber Security Analyst
Stefanini LATAM
• **Manejo de Incidentes de Ciberseguridad**: Responder a incidentes de ciberseguridad y mitigar su impacto en los sistemas, usuarios e información de la empresa. • **Cumplimiento y Capacitación**: Participar en el Programa de Capacitación Global en Cumplimiento de PMI para mejorar tu conocimiento y comprensión de las reglas y requisitos aplicables. • **Protección de la Información**: Asegurar la confidencialidad, integridad y disponibilidad de la información de la empresa cumpliendo con las políticas y procedimientos de manejo de datos de PMI. • **Gestión de Servicios**: Colaborar con los Gerentes de Servicios e Integradores de Servicios para fomentar una cultura de confianza y seguridad de la información. • **Gobernanza y Monitoreo**: Apoyar la gobernanza y promover comportamientos ejemplares mediante la práctica constante de medidas de seguridad de la información. • Implementar una gestión efectiva de vulnerabilidades, endurecimiento de puntos finales e incidentes según los manuales de PMI. • Encargarse de la comunicación con proveedores y terceros, así como del seguimiento y remediación de vulnerabilidades y controles. • Tomar las riendas de la seguridad de nuestro entorno liderando los esfuerzos de respuesta a incidentes en un entorno colaborativo y multifuncional. • Innovar y mejorar las capacidades de respuesta de PMI mediante el desarrollo de iniciativas avanzadas de Respuesta a Incidentes. • Profundizar en las causas raíz de los incidentes de seguridad, realizando análisis exhaustivos.
Job Requirements
- 100 % bilingüe
- Título universitario en Tecnología de la Información, Ciencias de la Computación o un campo relacionado.
- Conocimientos y experiencia en AWS
- Experiencia comprobada en manejo y respuesta a incidentes de ciberseguridad.
- Fuerte comprensión de los requisitos de cumplimiento y regulaciones de protección de datos.
- Excelentes habilidades de comunicación y colaboración.
- Capacidad para trabajar de manera efectiva en un entorno dinámico y de ritmo rápido.
- Certificaciones como CISSP, CISM o CISA12.
- Experiencia con ServiceNow ITSM y otras herramientas de gestión de servicios de TI.
- Conocimiento de regulaciones sobre anticorrupción y conflicto de intereses.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cybersecurity Analyst
Remote RecruitmentRemote Recruitment operates as a full-service employment agency providing recruitment/staffing for UK based companies
Role Description We are seeking a motivated and experienced Cybersecurity Analyst to support a UK-based employer in protecting systems, networks, and data from digital threats. This role is ideal for a South African professional who is organised, proactive, and confident working with UK teams remotely. Key Responsibilities - Manage and support the monitoring of security systems, alerts, and incident response processes - Handle vulnerability assessments, penetration testing support, and risk analysis tasks - Communicate effectively with internal teams and external stakeholders across time zones - Maintain accurate records of security incidents, audits, and compliance documentation - Use relevant tools such as SIEM platforms, endpoint protection software, and threat intelligence tools - Support the wider team with security awareness training and policy development - Identify opportunities to strengthen the organisation's security posture and reduce risk exposure Qualifications - 2+ years of experience in cybersecurity analysis, IT security, or a related field - Excellent written and verbal communication skills in English - Strong organisational skills with the ability to manage multiple security tasks simultaneously - Proficient in security tools, SIEM platforms, and network monitoring technologies - Able to work independently and manage your own time effectively - High attention to detail and a proactive approach to problem-solving - Experience working with UK-based clients or employers is advantageous - Must have a reliable laptop, stable internet connection, and a quiet working environment Benefits - Salary: R40,000/month - 100% Remote
Information Security Analyst II
Cincinnati Children'sOur mission: to be the leader in improving child health.
• Participate in the design, development, and implementation of systems to protect CCHMC data. • Identify the appropriate resources needed to complete small projects. • Support the communication between internal and external parties on project related issues and developments. • Participate in developing and managing project plans. • Determine the scope and complexity of small to midsized projects. • Work with cross functional teams. • Understand incident response processes and procedures and assist in mitigating incidents when they occur. • Analyze, design, implement, and maintain moderately complex systems that greatly improves clinical care and patient management. • Support system testing. • Document testing outcomes. • Work to develop technical solutions. • Work to design, write, and prepare complete user and technical documentation. • Analyze existing documentation and provide corrections and enhancement. • Utilize Development lifecycle process, operating procedures and documentation to implement and support system solutions. • Provide technical support and problem resolution assistance for production and process issues. • Troubleshoot and decipher error messages. • Identify required resources to resolve minor to midsized issues. • Utilize appropriate Change Control methods to implement system solutions. • Serve as a resource person for and as a liaison between Cincinnati Children's departments and Information Services. • Support departmental efforts to improve customer satisfaction. • Evaluate and monitor system performance and functionality to avoid potential issues as well as gathering information for future development needs or feasibility studies. • Participate in on-call support rotation and handle incident resolution, problem determination and resolution during that time. • Ensure outstanding end-user support is provided, including ongoing monitoring of Service Level Agreements for incident management and collaboration with other areas to ensure customer-centered incident management and support. • Adhere to and promote continual adoption of change management policies and procedures. • Model outstanding customer service behavior, including timely and effective follow-up with customers. • Develop knowledge and professional skills through cross-training, literature and attendance at department meetings and vendor education. • Develop and maintain positive relationships, both internal and external to CCHMC. • Motivate people and encourage teamwork. • Work well with others and fosters a positive team environment. • Prepare oral and written presentations. • Conduct and participate in instructional seminars. • Develop expertise in several Cincinnati Children's computer-based systems.
SOC Lead
Crane CompanyCrane Company is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, gender, sexual orientation, general identity, national origin, disability or veteran status.
Role Description Crane Co is looking for outstanding information security professionals to join the Crane Co. Global Information Security Team! Do you possess a strong security operations center background and want to lead others while working on interesting problems and helping to advance incident response capabilities? Have you always wanted to make a real impact on effective delivery of security operations at scale? We have an exciting opportunity helping to lead our blue-team operations using proven and emerging solutions in a comprehensive portfolio for our next-generation security operations center. You are passionate about leading incidents, performing threat hunting, and have a clear vision about next-gen SOCs and SOAR? Do you enjoy digging deep to find the threats everything else missed? This role will provide opportunities to advance our global security operations and incident response program by applying cool and interesting security technologies, processes, and techniques to support SOC and IR for a global organization. This position will provide exposure to best-of-breed security solutions in a challenging and rewarding enterprise setting. You’ll lead other responders and analysts as part of our tight-knit security team and be the escalation path within the global SOC for truly interesting attacks. As the ideal candidate, you will have solid proficiency in security incident and event management solutions, using modern IR approaches and tools, and have a proven track record implementing and honing a myriad of detective and preventive controls and processes in an enterprise setting. You must have a desire to lead others while furthering your own development, contributing to continuous improvement initiatives, and have a genuine passion for infosec! Previous security operations center experience, threat hunting prowess, and endless curiosity required. Responsibilities and Duties - Ensure the timely identification, response, investigation, and remediation of all security events and incidents. - Lead daily work of security operations center team members and provide support to teams in other geographies and time zones as required. - Develop standard work and processes, build playbooks, and implement analysis logic supporting automation efforts using various techniques including scripting and coding within platforms, APIs, and related technologies. - Enrich and implement additional detective capabilities to enhance or improve incident identification and response. - Using SOAR techniques, automate and integrate workflows between SIEM, various IR platforms, and other solutions and technologies. - Work closely with the broader global security team, supporting the analysis and tuning of the effectiveness of solutions, configurations, and processes. - Work closely with Information Technology to identify risks and weaknesses as a component of our vulnerability management program. - Provide input to the maintenance and enhancement of related policies, documentation, and procedures. - Contribute to the broader program to ensure best practices are identified and integrated into our approach and methodologies. - Support the security infrastructure administration and operations function as required. - Ensure all security incidents for self and team are fully and accurately investigated with comprehensive and effective remediations clearly defined and communicated to stakeholders. Qualifications - Senior level experience in security operation center function supporting medium to large enterprises performing incident response. - Prior responsibilities performing triage, assignment, and closed-loop investigations for a team of SOC analysts and/or incident responders. - Proven results developing and implementing methods, processes, and procedures for detecting, responding, and resolving computer security incidents. - Deep understanding of present-day cyber-threats, attacker techniques and behaviors, and effective methods to both detect & repel these threats for a global organization with a distributed enterprise IT environment. - Prior experience using automation tools leveraging custom development, scripting, and solution platforms. - Prior experience writing tools to automate tasks and integrate various systems in Python, Powershell, and other scripting languages. - Experience with writing interfaces utilizing JSON, XML, and REST APIs. - Experience performing data normalization, correlations, and visualizations. - Experience with supporting security technologies such as EDR, firewalls, proxies, web and email filters, application allow-listing, sandboxing, SIEM, threat intelligence, vulnerability scanning, syslog, IDS/IPS, DLP, etc. - Broad technology experience with enterprise-level IT technologies including networks, endpoints, virtualization, cloud, operating systems, email, storage, databases, etc. - Familiarity with relevant multi-national financial, privacy, and governmental regulatory requirements. - Highly motivated and self-directed with a passion for solving complex problems. - Excellent verbal and written communication skills. - Must be able to prioritize based on risk, schedule and track to deadlines for self and team members. - Ability to cope well with pressure and make sound decisions in uncertain situations. - Flexibility to work outside regularly scheduled/normal business hours. - Ability to travel both domestically and internationally, with little notice (as required). Requirements - 5 years relevant professional experience in Security Operations and Incident Response Management. - 2 years supervisory experience leading SOC/IR analysts. - Technical professional security certifications in Incident Response, Digital Forensics, or Malware Analysis, such as GCIH, GCFA, GNFA, GCTI or similar. Benefits - Exciting opportunity to grow and make a positive impact on a global program alongside other passionate infosec professionals.
Cyber Threat Intelligence Analyst – SkillBridge Internship
Blackpoint CyberStay ahead of cyberthreats by having the best-in-class, 24/7 Managed Detection and Response with Blackpoint Cyber.
• Learn and apply core concepts of cyber threat intelligence, including the intelligence lifecycle, threat actor TTPs, and MITRE ATT&CK • Assist in identifying, enriching, and contextualizing indicators of compromise (IOCs) using open-source tools and commercial platforms • Shadow SOC analysts to understand alert triage workflows and how CTI can support SOC needs • Support the creation of threat actor profiles, threat notices, and campaign briefs under guidance • Facilitate information sharing and feedback between CTI and SOC teams to align intelligence outputs with operational requirements • Participate in the development of actionable intelligence products for technical and non-technical stakeholders • Contribute to CTI team processes and help identify opportunities for integration and operational improvement



