Deutsche Telekom logo
Deutsche Telekom

Headquartered in Bellevue, Washington, T-Mobile is an international cell phone carrier that is part of Deutsche Telekom, one of the largest telecommunications companies in the worl

SOC Incident Handler

Location

Mexico

Posted

2 days ago

Salary

0

Seniority

Mid Level

No structured requirement data.

Job Description

SOC Incident Handler

Deutsche Telekom

Role Description - Experiencia en atender y gestionar incidentes de seguridad como Soporte 3er Nivel dentro del equipo de respuesta de Incidentes. - Analizar y responder alertas de seguridad provenientes de plataformas SIEM/SOAR. - Realizar búsqueda proactiva de amenazas (Threat Hunting). - Experiencia avanzada en gestión de incidentes y eventos de seguridad. - Identificar, analizar y correlacionar IOCs (Indicators of Compromise). - Análisis, búsqueda, recomendaciones y gestión de remediaciones. - Ejecutar actividades de contención, erradicación y remediación de incidentes. - Inglés avanzado indispensable, se realiza entrevista en inglés. - Gusto por el aprendizaje continuo y en compartir el conocimiento. Qualifications - Carrera: Ingeniería en Sistemas Computacionales, Tecnologías de la Información, Ciberseguridad o afines. - Nivel de Expertise: Senior. - Certificaciones (deseables): Incident Handler /Response (+ Cloud), Certified Incident Handler. Company Description T-Systems se enorgullece de ser un empleador que ofrece igualdad de oportunidades y acción afirmativa. No discriminamos por motivos de raza, religión, color, origen nacional, sexo (incluido el embarazo, el parto o condiciones médicas relacionadas), orientación sexual, género, identidad de género, expresión de género, condición de transgénero, estereotipos sexuales, edad, condición de persona con discapacidad, u otras características legalmente protegidas aplicables. También es importante mencionar que T-Systems cuenta con un sistema de gestión antisoborno y es compromiso de todos los colaboradores conocerlo y cumplirlo. Creemos que el cambio trae nuevas oportunidades para el desarrollo y la innovación. Las personas que están preparadas para rendir al máximo en tales condiciones, sobresaldrán y crearán algo nuevo. Precisamente por esta razón, brindamos a nuestros empleados oportunidades únicas para un mayor desarrollo, ya sea en carreras técnicas o gerenciales.

Related Categories

Related Job Pages

More Security Operations Jobs

Monitor vulnerabilities and security alerts, support patch management processes, assist with cybersecurity initiatives, and collaborate with teams to enhance system security and compliance within enterprise information systems.

District Of Columbia + 4 moreAll locations: District Of Columbia | Kentucky | North Carolina | Pennsylvania | California
TaskUs logo

Security Operations Center Associate

TaskUs

Digital Customer Experience. Trust & Safety. AI Services.

Full TimeRemoteTeam 10,001+Since 2008H1B Sponsor

• Responsible for detection and investigation of all security events on the TaskUs global network, endpoints and cloud environments • Ensure that all security attacks are timely detected, escalated and mitigated • Monitor, investigate and document any security alerts, alarms and incidents • Follow processes for incident identification, investigations and escalations • Gather relevant details of an incident; classify and prioritize • Review alerts escalated by end user or IT teams • Provide limited incident response for low complexity security incidents • Help maintain the SOC team performance metrics (SLAs and KPIs) • Contribute to the effectiveness of SOC processes

Colombia
NuHarbor Security logo

Senior Security Operations Analyst

NuHarbor Security

Cybersecurity services you want from a team of experts you can trust.

Full TimeRemoteTeam 51-200H1B No Sponsor

• Live by the NuHarbor corporate values: Help Clients Win, Always Improve, Protect the House. • Own investigations end-to-end from initial alert through root cause analysis and client-ready written narrative. • Correlate across SIEM, EDR, and identity telemetry to identify missed alerts. • Support the Security Analyst team with alert triage and escalation within SLA requirements. • Communicate proactively with the Security Operations Manager on active threats and escalations. • Produce ticket documentation without editorial cleanup. • Remain current on emerging threats, CVEs, and attacker techniques. • Train, mentor, and support junior analysts. • Review escalations prior to client delivery, ensuring documentation quality.

Vermont
$110K - $135K / year
Nscale logo

Staff Security Engineer, Detection Platform

Nscale

Nscale is the Hyperscaler engineered for AI.

Full TimeRemoteTeam 201-500Since 2024H1B No Sponsor

Role Description We’re hiring a Staff Security Engineer, Detection Platform to design and scale Nscale’s detection and response capabilities. In this high-impact engineering role, you will build the systems and logic that power how we detect and respond to threats across infrastructure, endpoints, cloud, and enterprise environments. The role sits at the intersection of security engineering, security operations, and incident response, with close collaboration across teams to improve alert usability, investigation workflows, and overall operational effectiveness. You’ll play a strategic role in strengthening Nscale’s security posture by building scalable, reliable detection systems, improving signal quality, and automating response. This work is central to helping the organization detect threats faster, reduce manual effort, and continuously improve coverage and fidelity as our environment evolves. This role will be part of the global CISO organization. What you'll be doing - Detection Engineering - Design detection logic and alerting across infrastructure, cloud, endpoint, and SaaS environments. - Develop and maintain high-fidelity detection rules based on threat intelligence and known attack patterns. - Tune detection systems continuously to improve coverage and reduce false positives. - Build tooling and infrastructure to support threat hunting and proactive detection. - Platform & Pipeline Development - Build and scale SIEM pipelines for log ingestion, normalization, enrichment, and correlation. - Work with log data at scale to improve the reliability and usability of detection systems. - Support scalable security systems that operate across modern infrastructure environments. - Automation & AI-Driven Response - Implement response automation using SOAR platforms or custom workflows to reduce manual effort. - Integrate AI and machine learning techniques to improve signal quality, anomaly detection, and alert triage. - Optimize automated workflows to help reduce response time and improve operational efficiency. - Cross-Functional Security Operations - Partner with Security Operations to improve alert prioritization, usability, and investigation workflows. - Collaborate with Incident Response to support investigations and drive detection improvements. - Influence detection strategy and system direction at a Staff level across teams. - Measurement & Continuous Improvement - Establish detection metrics such as coverage, fidelity, and time to detect. - Track platform performance to identify gaps and guide ongoing improvements. - Use operational insights to strengthen detection quality and response effectiveness over time. KPIs - Detection coverage - Detection fidelity - Time to detect - Reduction in false positives Qualifications - 8+ years of experience in security engineering, detection engineering, or security operations. - Strong experience building SIEM pipelines and detection systems using tools such as Splunk, Elastic, or Chronicle. - Hands-on experience writing detection rules and working with log data at scale. - Experience with SOAR platforms or security automation frameworks. - Familiarity with cloud environments such as AWS, GCP, or Azure and modern infrastructure. - Strong understanding of MITRE ATT&CK, attack techniques, and adversary behavior. - Experience integrating or leveraging AI/ML techniques for detection or triage. - Ability to operate at a Staff level, with ownership of systems, technical direction-setting, and cross-functional influence. - Experience in high-scale or infrastructure-heavy environments is a plus. - Background in threat hunting, incident response, custom detection platforms, security tooling, streaming data pipelines, or AI/ML workloads is a plus. Benefits - Highly competitive US compensation package (base + bonus + equity), with performance reviews every 12 months. - Join one of the fastest-growing AI infrastructure companies — your chance to directly shape how global AI capacity is planned and deployed. - Expect a dynamic progression plan tailored to your ambitions. Grow by leading critical cross-functional initiatives and shaping capital strategy — always with our full support. - Human-First Flexibility: We treat you as humans first. Our flexible workplace trusts Nscalers to deliver, giving you the autonomy to shape your day around life's moments.

Netherlands
$175K - $225K / year