Cybersecurity Engineer | Usm Anywhere

Avertium

Región Centro

Presencial

MXN 900.000 - 1.300.000

Jornada completa

Hace 4 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Consigue una respuesta de este empleador — un currículum y una carta de presentación adaptados exactamente a lo que busca para contratar.

Supera los filtros ATS

Descripción de la vacante

Avertium busca un Ingeniero de Ciberseguridad senior con experiencia hands-on en USM Anywhere y tecnologías SIEM/XDR para diseñar, implementar, optimizar y apoyar soluciones de monitoreo en entornos de clientes. El candidato ideal comprende cómo SIEM y XDR trabajan juntos para visibilidad centralizada, detección de amenazas, investigación y respuesta a incidentes, y será recurso técnico para escalaciones.

Se valorará experiencia con Sentinel, Splunk, FortiSIEM, LogRhythm u otras plataformas.

Formación

  • Más de 5 años en IT, con al menos 2 en seguridad informática o roles relacionados.
  • 2+ años implementando, administrando o solucionando SIEM/XDR.
  • Experiencia práctica con USM Anywhere o plataforma equivalente de SIEM/XDR.
  • Conocimiento de SIEM: recopilación de logs, normalización, correlación y análisis de eventos.
  • Experiencia desarrollando o ajustando detecciones y respuestas a incidentes.
  • Conocimientos de AWS/Azure y fundamentos de redes.

Responsabilidades

  • Diseñar, implementar, configurar y optimizar entornos SIEM/XDR USM Anywhere.
  • Configurar monitoreo, recopilación de logs e integraciones.
  • Desarrollar reglas de detección, dashboards y alertas.
  • Apoyar detección de amenazas, investigación y respuesta a incidentes.
  • Utilizar telemetría de endpoints, redes y nube para mejorar visibilidad.
  • Solucionar problemas complejos y actuar como punto de escalamiento técnico.
  • Desarrollar automatización y scripting para eficiencia operativa.
  • Apoyar la arquitectura y despliegue de nuevos entornos SIEM/XDR.

Conocimientos

Experiencia IT
SIEM/XDR
USM Anywhere
Detección y respuesta
Automatización
PowerShell
Python
Bash
SQL
Nube AWS/Azure
Redes TCP/IP
Comunicación
MITRE ATT&CK
Certificaciones de ciberseguridad

Educación

Grado en Informática/ Ciberseguridad o afín

Herramientas

USM Anywhere
Microsoft Sentinel
Splunk
FortiSIEM
LogRhythm
SOAR

Descripción del empleo

Descripción del trabajo

CyberSecurity Engineer | USM Anywhere

Avertium is a cyber fusion and MXDR leader, delivering comprehensive security and compliance services to mid-market and enterprise customers. Our unique Assess, Design, Protect methodology addresses and improves security strategy, reduces attack surface risk, strengthens compliance, and provides continuous threat protection. Avertium maximizes customer security investments and enables customers to focus on growth, innovation, and business outcomes, while assuring that their security infrastructure is resilient and adaptive to evolving threats. That's why customers trust Avertium to deliver better security, improved compliance, and greater ROI.

Avertium is seeking a Senior Cybersecurity Engineer with strong hands‑on experience with USM Anywhere and modern SIEM/XDR technologies. This role will focus on designing, implementing, optimizing, and supporting security monitoring and response solutions across customer environments.

The ideal candidate understands how SIEM and XDR technologies work together to provide centralized visibility, threat detection, investigation, incident response, and security automation. You will serve as a senior technical resource for complex security issues, help improve the effectiveness of our security monitoring capabilities, and support the continued evolution and scalability of our security operations.

While USM Anywhere is the primary platform for this role, candidates with strong experience in other major SIEM/XDR platforms such as Microsoft Sentinel, Splunk, FortiSIEM, LogRhythm, or comparable technologies will also be considered.

Responsibilities:
  • Design, implement, configure, and optimize USM Anywhere SIEM/XDR environments.

  • Configure and manage security monitoring, log collection, data sources, integrations, agents, and supporting infrastructure.

  • Develop, tune, and maintain detections, correlation rules, alerts, dashboards, and other security monitoring capabilities.

  • Support threat detection, investigation, and incident response using SIEM and XDR technologies.

  • Leverage endpoint, network, cloud, application, and other security telemetry to improve threat visibility and detection.

  • Troubleshoot complex SIEM, XDR, security, infrastructure, and networking issues and serve as a technical escalation point for other engineers.

  • Support integrations between USM Anywhere and endpoint, cloud, network, identity, and other security technologies.

  • Develop automation and scripting to improve operational efficiency and enhance security response capabilities.

  • Identify opportunities to improve detection quality, system performance, reliability, scalability, and operational processes.

  • Support the architecture and deployment of new SIEM/XDR environments and customer solutions.

  • Create and maintain technical documentation, architecture diagrams, procedures, and operational standards.

  • Collaborate with Security Operations, Engineering, Service Delivery, and other technical teams to resolve complex customer and operational issues.

  • Participate in change management and CAB processes.

  • Stay current with emerging SIEM, XDR, threat detection, automation, and security operations technologies.

Required Qualifications:
  • 5+ years of overall IT experience, including at least 2 years in cybersecurity engineering, security operations, or a related security role.

  • 2+ years of hands‑on experience implementing, administering, troubleshooting, or engineering SIEM and/or XDR solutions.

  • Strong hands‑on experience with USM Anywhere or a comparable enterprise SIEM/XDR platform.

  • Strong understanding of SIEM concepts, including log collection, normalization, correlation, alerting, detection, dashboards, and security event analysis.

  • Experience developing, tuning, or troubleshooting security detections and understanding the underlying data supporting those detections.

  • Strong technical troubleshooting and advanced problem‑solving skills.

  • Experience with security automation or scripting using PowerShell, Python, Bash, SQL, or similar technologies.

  • Foundational understanding of cloud security and infrastructure in AWS and/or Azure.

  • Working knowledge of networking concepts, including TCP/IP, DNS, VPNs, and IPsec.

  • Strong written and verbal communication skills.

  • #LI-CS1
Preferred Qualifications:
  • Advanced experience with USM Anywhere and/or related LevelBlue security technologies.

  • Experience with Open XDR and security orchestration, automation, and response (SOAR) capabilities.

  • Experience with Microsoft Sentinel, SentinelOne, Splunk, FortiSIEM, LogRhythm, or other major SIEM/XDR platforms.

  • Experience working in an MSSP, managed security services, or professional services environment.

  • Experience supporting multiple customer environments or multitenant security platforms.

  • Strong Windows and Linux administration experience.

  • Experience with SQL, Elasticsearch, or other security data platforms.

  • Familiarity with MITRE ATT&CK and the NIST Cybersecurity Framework.

  • Relevant cybersecurity or vendor certifications.

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field, or equivalent professional experience.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior SIEM/XDR Engineer | USM Anywhere Expert
Senior SIEM/XDR Engineer | USM Anywhere Expert

Avertium • Región Centro

Presencial
MXN 900.000 - 1.300.000
CyberSecurity Analyst
CyberSecurity Analyst

Avertium, LLC • Región Centro

Presencial
MXN 420.000 - 720.000
CyberSecurity Analyst
CyberSecurity Analyst

Avertium • Región Centro

Presencial
MXN 420.000 - 720.000
Competitive salaries
Full benefits
Unlimited paid time off
+1
CyberSecurity Engineer | LogRhythm
CyberSecurity Engineer | LogRhythm

Avertium, LLC • Región Centro

Presencial
MXN 800.000 - 1.000.000
CyberSecurity Engineer | LogRhythm
CyberSecurity Engineer | LogRhythm

Avertium • Región Centro

Presencial
MXN 500.000 - 800.000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

A2MAC1 - Decode the future • Santiago de Querétaro

Presencial
MXN 700.000 - 1.100.000
Biweekly pay
IMSS
Christmas bonus
+6
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

A2MAC1 • Santiago de Querétaro

Presencial
MXN 1.200.000 - 1.800.000
Biweekly Payment
IMSS
Christmas Bonus
+5
Cybersecurity Engineer (Palo Alto XSIAM / XDR)
Cybersecurity Engineer (Palo Alto XSIAM / XDR)

MissionHires • Ciudad de México

Presencial
MXN 1.032.000 - 1.377.000
Senior Security Developer
Senior Security Developer

Dematic • Guadalupe

Híbrido
MXN 1.203.000 - 1.719.000
Career Development
Competitive Compensation and Benefits
Pay Transparency
+1
Remote Senior Cyber Incident Response Specialist
Remote Senior Cyber Incident Response Specialist

Ingeniosi • México

Presencial
MXN 600.000 - 900.000