Cyber Incident Response Analyst

Fever

Argentina

Presencial

ARS 1.200.000 - 2.400.000

Jornada completa

14 días+

Recibe más respuestas de empleadores

Envía un currículum específico para el puesto de trabajo en cuestión de minutos.

Ventajas ofrecidas por este puesto de trabajo

Relación de dependencia contract
40% discount on Fever events
OSDE 410 medical insurance
Home office friendly Argentina
English lessons
Gympass
Bonus potential

Descripción de la vacante

Fever, the world’s leading tech platform for culture and live entertainment, seeks an Incident Response Analyst to protect our cloud and endpoint environments. You will triage alerts, investigate incidents, and build automation to speed detection and response across our global platform.

You’ll join the Cyber Incident Response team, owning the alert lifecycle from detection to containment, while improving detection rules and SOAR playbooks.

Formación

  • Hands-on in a SOC or IR role with alert triage, investigation, and incident handling.
  • Experience with EDR platforms for detection analysis and live response.
  • Experience with SIEM log analysis and writing queries.
  • Experience building or maintaining SOAR playbooks and automation.

Responsabilidades

  • Triage, investigate, and resolve security alerts from EDR, SIEM, CNAPP, and identity/SaaS sources.
  • Perform scoping, containment, evidence collection, remediation, and documentation.
  • Build and optimize SOAR playbooks and automation workflows.
  • Threat hunting across endpoint telemetry, cloud logs, and identity logs.
  • Contribute to detection engineering by tuning rules and reducing false positives.
  • Produce clear incident reports and maintain investigation docs.
  • Collaborate with engineering and IT during investigations and remediation.

Conocimientos

Incident response
EDR analysis
SIEM queries
SOAR playbooks
MITRE ATT&CK
Cloud security
Live forensics
English fluency

Educación

Bachelor's or Master's in CS or InfoSec

Herramientas

CrowdStrike Falcon
SentinelOne
Cortex XDR
Microsoft Defender for Endpoint
SOAR platforms
Cloud providers security (AWS/GCP)

Descripción del empleo

Hey there!

We’re Fever, the world’s leading tech platform for culture and live entertainment.

Our mission? To democratize access to culture and entertainment. With our proprietary cutting-edge technology and data-driven approach, we’re revolutionizing the way people engage with live entertainment.

Every month, our platform inspires over 300 million people in +55 countries (and counting) to discover unforgettable experiences while also empowering event creators with our data and technology, helping them scale, innovate, and enhance their events to reach new audiences.

Our results? We’ve teamed up with major industry leaders like Netflix, F.C. Barcelona, and Primavera Sound, presented international award-winning experiences, and are backed by several leading global investors! Impressive, right?

To achieve our mission, we are looking for bar-raisers with a hands-on mindset who are eager to help shape the future of entertainment!

Ready to be part of the experience?

Now, let’s discuss this role and what you will do to help achieve Fever’s mission.

About the role

As an Incident Response Analyst, you will help protect Fever's technology environment by triaging and investigating security alerts, responding to incidents across our cloud and endpoint estate, and building automation that makes our detection and response capability faster and more consistent.

Working within the Cyber Incident Response team, you will own the alert lifecycle from initial detection through investigation, containment, and documentation, while contributing to the continuous improvement of our detection rules and SOAR playbooks. The ideal candidate combines strong hands-on investigation skills with an automation-first mindset, enabling them to reduce manual toil, improve response times, and raise the overall maturity of our security operations.

What would you do at Fever?
In your first month at Fever
  • You will be fully integrated into the team. You will participate in planning and follow-up meetings with other areas.
  • You will have met the departments of Fever.
  • You will get familiar with Fever's technological structure and ecosystem (applications, cloud infrastructure, architecture, etc.)
  • You will gain an understanding of our detection and response processes, security tooling (EDR, SIEM, SOAR, CNAPP), and overall threat landscape.
  • You will shadow ongoing alert triage and incident investigations to learn our workflows, severity criteria, and documentation standards.
After 3 months in Fever
  • You will independently triage and investigate security alerts across endpoint, identity, SaaS, and cloud sources.
  • You will participate in incident response activities, performing containment and remediation actions under established procedures.
  • You will document investigations following our internal reporting and ticketing standards.
  • You will identify false-positive patterns and propose tuning improvements to detection rules.
  • You will contribute to the development and refinement of SOAR playbooks for common alert types.
On your 6th month in Fever
  • You will take end-to-end ownership of incident investigations, including escalation decisions.
  • You will design and implement new SOAR automation workflows to reduce manual triage effort.
  • You will contribute to detection engineering, proposing and building new correlation rules based on observed threats and gaps.
  • You will participate in post-incident reviews and drive improvements to our response processes and playbooks.
Key Responsibilities
  • Triage, investigate, and resolve security alerts from EDR, SIEM, cloud security (CNAPP), and identity/SaaS sources, ensuring accurate severity classification and timely response.
  • Hands-on incident response activities: scoping, containment, evidence collection (including remote forensics/live response), remediation, and documentation.
  • Build, maintain, and optimize SOAR playbooks and automation workflows to streamline alert handling and response actions.
  • Perform investigation and threat hunting across endpoint telemetry, cloud logs, and identity provider audit logs.
  • Contribute to detection engineering: tune existing rules, reduce false positives, and develop new detections based on emerging threats and incident learnings.
  • Produce clear, structured incident reports and maintain investigation documentation to internal standards.
  • Collaborate with engineering and IT teams during investigations and remediation, communicating findings and required actions effectively.
  • Support the continuous improvement of response procedures, playbooks, and severity/SLA criteria.
About You
Must have
  • Hands-on experience in a SOC or incident response role performing alert triage, investigation, and incident handling. Knowledge of the incident response lifecycle.
  • Experience with EDR platforms (e.g., CrowdStrike Falcon, SentinelOne, Cortex XDR, Microsoft Defender) for detection analysis, process tree investigation, and live response.
  • Experience working with a SIEM for log analysis and investigation, including writing and adapting queries.
  • Practical experience building or maintaining SOAR playbooks and security automation workflows.
  • Solid understanding of common attack techniques (MITRE ATT&CK), malware delivery chains, phishing, and account takeover scenarios.
  • Familiarity with cloud environments and SaaS/identity log sources.
  • Strong analytic and problem-solving skills, with rigor in documenting findings.
  • 3+ years of experience in security operations, incident response, or similar hands-on cybersecurity roles.
  • Fluent in English (written and spoken).
  • Good communication skills.
It would be a plus if you have
  • Bachelor's or Master's Degree in Computer Science, Information Security, or another similar relevant degree (or equivalent experience in a technical security role).
  • Experience with Cloud service providers (e.g., AWS, GCP, etc) and their security components.
  • Scripting skills (Python, Bash, or similar) for automation and log parsing.
  • Experience with digital forensics.
  • Familiarity with threat intelligence platforms and IOC management.
  • Certifications such as BTL1/BTL2, GCIH, HTB CDSA, CySA+, CrowdStrike certifications (CCFA/CCFR), cloud security certifications (e.g., AWS Security Specialty, Google Professional Cloud Security Engineer) or equivalent hands‑on blue team certifications.
Benefits & Perks
  • "Relación de dependencia" contract.
  • Opportunity to have a real impact in a high-growth global category leader
  • 40% discount on all Fever events and experiences
  • OSDE 410 as medical insurance
  • Home office friendly anywhere in Argentina
  • Responsibility from day one, and professional and personal growth
  • Great work environment with a young, international team of talented people to work with!
  • English Lessons
  • Gympass
  • Attractive compensation package consisting of base salary and the potential to earn a significant bonus for top performance.

Thank you for considering joining Fever. We cannot wait to learn more about you!

If you want to learn more about us: Fever's Blog | Tech.Eu |TechCrunch

Fever is committed to creating an inclusive and diverse workspace where everyone's background and ideas count. Our main goal is to find the best possible talent regardless of place of birth, racial or ethnic origin, gender, gender identity, religion, opinion, sexual orientation, disability, pregnancy, marital status, age or caring responsibilities. We encourage everyone to apply!

If you require any kind of accommodation during the selection process please contact our Talent team so we can help you by providing a welcoming and seamless journey.

If you want to know more about how Fever processes your personal data, click here Fever - Candidate Privacy Notice

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Junior Partner Associate
Junior Partner Associate

Fever • Municipio de Esquel

Híbrido
ARS 900.000 - 1.200.000
Discount on Fever events
Candlelight voucher
20 days paid leave
+5
Growth Strategy Senior Analyst
Growth Strategy Senior Analyst

Fever • Buenos Aires

Híbrido
ARS 1.000.000 - 1.700.000
Stock options
40% event discounts and Candlelight
20 days paid annual leave
+5
Growth Strategy Associate
Growth Strategy Associate

Fever • Municipio de Esquel

Híbrido
ARS 104.363.000 - 149.092.000
Stock options
40% discount on Fever events
20 days annual leave
+4
Growth Strategy Manager
Growth Strategy Manager

Fever • Municipio de Esquel

Híbrido
ARS 1.800.000 - 2.800.000
Stock options
Event discounts
Leave 20 days
+5
Partner Manager
Partner Manager

Fever • Buenos Aires

Híbrido
ARS 900.000 - 1.300.000
40% discount on Fever events
20 days paid annual leave
Private health & dental insurance
+4
Growth Strategy Senior Analyst
Growth Strategy Senior Analyst

Fever • Municipio de Esquel

Híbrido
ARS 1.200.000 - 1.800.000
Stock options
Discount on Fever events
Senior Email Marketing Specialist
Senior Email Marketing Specialist

Fever • Municipio de Esquel

Híbrido
ARS 95.203.000 - 129.823.000
Health insurance
Discounts on Fever events
Flexible schedule
+1
Junior Project Manager
Junior Project Manager

Fever • Municipio de Esquel

Presencial
ARS 900.000 - 1.300.000
40% Fever discounts
Private health insurance
Life insurance
+1
Senior Talent Acquisition Specialist
Senior Talent Acquisition Specialist

Dormont Manufacturing Co • Buenos Aires

Presencial
ARS 89.314.000 - 111.644.000
40% discount on all Fever events and experiences
Health and Life insurance
Wellhub membership
+1
Growth Strategy Manager- Portuguese Speaker
Growth Strategy Manager- Portuguese Speaker

Fever • Municipio de Esquel

Híbrido
ARS 1.800.000 - 2.400.000
Stock options
20 days annual leave
Private health & dental insurance