AI-Enabled SOC Analyst I — Rapid Threat Response

AstraZeneca

Región Centro

Híbrido

MXN 520.000 - 900.000

Jornada completa

hace 34 horas
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Consigue una respuesta de este empleador — un currículum y una carta de presentación adaptados exactamente a lo que busca para contratar.

Supera los filtros ATS

Descripción de la vacante

AstraZeneca in Mexico's Jalisco region seeks a seasoned SOC professional to validate AI-driven alerts, orchestrate rapid response, and ensure human judgment remains central while leveraging Sentinel, Defender and Copilot in investigations.

Join a high-ownership tech team and collaborate with global teams to refine detection logic, playbooks and automation, advancing security maturity while maintaining strong privacy and zero-trust controls.

Formación

  • 4-7 years cybersecurity experience in regulated environments.
  • Strong expertise in SIEM technologies (Microsoft Sentinel, Splunk, QRadar).
  • Hands-on experience with Microsoft Defender XDR, CrowdStrike, Sentinel One, or similar EDR tools.
  • Knowledge of Azure, AWS, and GCP security monitoring.
  • Experience in incident response and digital forensics.
  • Understanding of attack techniques, malware behaviour, and threat actor tactics.

Responsabilidades

  • AI-Enabled Triage and Investigation: Validate AI-generated analysis, distinguish true positives from false positives and investigate alerts using Microsoft Sentinel, Microsoft Defender and SIEM platforms to drive timely, high-quality decisions.
  • Incident Response Execution: Follow predefined runbooks/playbooks to handle standard alerts such as phishing, malware and login anomalies; elevate complex cases and initiate response actions aligned to zero-trust and privacy requirements.
  • Security Copilot Governance: Manage human approval points for high-impact actions; critically evaluate Copilot-generated summaries, KQL queries and recommendations; craft structured prompts and reusable investigation instructions to improve accuracy and repeatability.
  • Evidence and Forensics Support: Perform basic to intermediate malware analysis; analyze packet captures and network traffic; reconstruct timelines, scope incidents, identify affected entities and collect evidence to support root-cause analysis.
  • SIEM Monitoring and Continuous Improvement: Monitor SIEM tools (e.g., Microsoft Sentinel, Splunk), ensure alerts are tracked and closed, maintain detailed activity logs and incident tickets, and contribute to refining detection logic and automation workflows.
  • Shift Operations and Handover Excellence: Operate within a 24x7 SOC model, maintain meticulous shift handover notes and ensure seamless transitions so no alerts or incidents are missed.
  • Stakeholder Communication: Communicate clearly with technical and business stakeholders, providing concise updates, actionable recommendations and post-incident insights that reduce risk and strengthen trust.

Conocimientos

SIEM expertise
Microsoft Sentinel
Zero-trust
Incident response
Digital forensics
Cloud security
Python/Powershell

Herramientas

Microsoft Defender XDR
CrowdStrike
SentinelOne
Splunk
QRadar
Azure security monitoring

Descripción del empleo

AstraZeneca in Mexico's Jalisco region seeks a seasoned SOC professional to validate AI-driven alerts, orchestrate rapid response, and ensure human judgment remains central while leveraging Sentinel, Defender and Copilot in investigations.

Join a high-ownership tech team and collaborate with global teams to refine detection logic, playbooks and automation, advancing security maturity while maintaining strong privacy and zero-trust controls.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

AI-Driven SOC Analyst I: Triage & Incident Response
AI-Driven SOC Analyst I: Triage & Incident Response

AstraZeneca GmbH • Región Centro

Híbrido
MXN 700.000 - 1.100.000
SOC Analyst L1
SOC Analyst L1

AstraZeneca GmbH • Región Centro

Híbrido
MXN 700.000 - 1.100.000
AI-Enabled SOC Analyst - Threat Detection & IR
AI-Enabled SOC Analyst - Threat Detection & IR

BeyondTrust • Ciudad de México

Híbrido
AUD 90.000 - 130.000
SOC Analyst L1
SOC Analyst L1

AstraZeneca • Región Centro

Híbrido
MXN 520.000 - 900.000
Senior Detection and AI Agentic Security Engineer
Senior Detection and AI Agentic Security Engineer

Solidigm • Región Centro

Presencial
MXN 1.397.380 - 2.096.070
Senior SOC Analyst: Threat Detection & Response
Senior SOC Analyst: Threat Detection & Response

Arcadion • Polanco (Ranchería Mineral Polanco)

Presencial
MXN 300.000 - 400.000
Competitive compensation
Modern, innovation-driven culture
Opportunities for career growth
Cortex XSIAM SOC Analyst — Threat Detection & Incident Response
Cortex XSIAM SOC Analyst — Threat Detection & Incident Response

Tata Consultancy Services • Santiago de Querétaro, Región Centro, Monterrey

Presencial
MXN 420.000 - 660.000
Direct contract
Senior Threat Detection & Incident Response Specialist
Senior Threat Detection & Incident Response Specialist

Biopharma Careers • Ciudad de México

Híbrido
MXN 900.000 - 1.300.000
SOC Analyst: Protect, Detect & Respond in Security Ops
SOC Analyst: Protect, Detect & Respond in Security Ops

Concord • Ciudad de México

Presencial
MXN 350.000 - 520.000
Grocery Vouchers
Internet Bonus
Medical Insurance
+3
SOC Analyst – CrowdStrike / Cybersecurity Specialist
SOC Analyst – CrowdStrike / Cybersecurity Specialist

Arcadion • Polanco (Ranchería Mineral Polanco)

Presencial
MXN 300.000 - 400.000
Competitive compensation
Modern, innovation-driven culture
Opportunities for career growth