Security Analyst

Thales

Ciudad de México

Presencial

MXN 600.000 - 900.000

Jornada completa

Hace 8 días

Recibe más respuestas de empleadores

Envía un currículum específico para el puesto de trabajo en cuestión de minutos.

Descripción de la vacante

Thales is seeking a Security Analyst to safeguard our cloud and on-premise environments. You will join a team of security professionals to detect, prevent, investigate, and respond to threats, with hands-on work across cloud-native environments and security tooling.

You will support security operations, incident response, and threat hunting, collaborating with global teams to strengthen our security posture while adhering to best practices and standards.

Formación

  • 5+ years with major cloud providers (AWS/Azure/GCP)
  • 5+ years with endpoint security and detection technologies (Cortex XDR, CrowdStrike, Defender)
  • 5+ years with SIEM solutions, log correlation and dashboards
  • 5+ years in security alert monitoring and incident investigation
  • 3+ years implementing DevSecOps in CI/CD, IaC, container security
  • Strong understanding of cloud-native security tools and IAM, logging & monitoring
  • Experience scripting (Python/PowerShell/Bash) for security ops
  • Knowledge of threat hunting techniques and MITRE ATT&CK usage
  • Ability to analyze logs and network traffic for anomalies
  • Collaborative in global cross-functional teams
  • Strong time management and independence
  • Up-to-date with vulnerabilities and remediation strategies
  • Excellent written and verbal communication across tech/non-tech
  • Security certifications are preferred

Responsabilidades

  • Monitor, investigate, and triage security events to support threat modeling
  • Proactively monitor cloud, network, and endpoints for threats
  • Perform cloud security posture assessments across AWS/Azure/GCP
  • Develop and maintain security alerts, rules, and dashboards in SIEM
  • Develop automation and response workflows to improve ops
  • Configure and optimize SIEM, CSPM, CNAPP, EDR/XDR, DLP and related tools
  • Conduct threat hunts and publish threat intelligence
  • Handle InfoSec ticket queue, investigations and resolutions
  • Review vulnerability scan results and remediation efforts
  • Collaborate with business units for secure configurations
  • Define, develop, and implement security standards and best practices
  • Conduct quarterly security gap analyses and risk assessments
  • Perform third-party security assessments for vendors

Conocimientos

Security operations
Threat detection
Incident response
DevSecOps
Automation
CI/CD
Python
PowerShell
Bash
MITRE ATT&CK
Cloud-native security
Logging & monitoring
Cross-functional collaboration

Educación

CISSP
CCSP
Security+
GSEC
GCIH
GCIA
AWS Security Specialty
Azure Security Engineer Associate

Herramientas

Cortex XDR
CrowdStrike
Microsoft Defender
SIEM
CSPM
CNAPP
EDR/XDR
DLP

Descripción del empleo

Thales people architect identity management and data protection solutions at the heart of digital security. Business and governments rely on us to bring trust to the billions of digital interactions they have with people. Our technologies and services help banks exchange funds, people cross borders, energy become smarter and much more. More than 30,000 organizations already rely on us to verify the identities of people and things, grant access to digital services, analyze vast quantities of information and encrypt data to make the connected world more secure.

Security Analyst
The Opportunity

As a Security Analyst, you will collaborate with a team of experienced security professionals to safeguard our corporate and production environments, leveraging advanced security tools and techniques to play a critical role in detecting, preventing, investigating, and responding to security threats and incidents.

As a first line of defense, you are expected to bring deep expertise across security operations, cloud security, DevSecOps, threat detection, and incident response, with strong hands-on experience in securing modern cloud-native environments. In addition, you will partner with cross-functional teams to provide security guidance, support, and training to strengthen our organization’s overall security posture.

This position requires participation in a shift rotation to support 24/7 security monitoring and incident response operations.

Responsibilities
  • Monitor, investigate, and triage security events to support and enhance threat modeling efforts
  • Proactively monitor cloud, network, endpoint to identify suspicious activity and emerging threats
  • Perform cloud security posture assessments, configuration reviews, policy enforcement, and continuous compliance monitoring across AWS, Azure, and GCP environments
  • Develop and maintain security alerts, log correlation rules, and dashboards using SIEM solution
  • Develop and implement security automation, detection engineering, and response workflows to improve operational efficiency and reduce manual effort
  • Configure, administer, and optimize security platforms including SIEM, CSPM, CNAPP, EDR/XDR, DLP, vulnerability management, and cloud security monitoring solutions
  • Conduct ongoing threat hunts and publish regular threat intelligence reports
  • Manage the InfoSec ticket queue, conduct investigations, and document resolutions
  • Review and evaluate vulnerability scan results and remediation efforts
  • Document, analyze, and escal...
  • Collaborate with other business units to assess system configurations and ensure secure integration
  • Partner with internal stakeholders to define, develop, and implement security standards and best practices
  • Conduct quarterly security gap analyses and risk assessments
  • Conduct third-party security assessments for new and renewing vendors
Qualifications
  • 5+ years of hands-on experience with major cloud service providers (e.g., AWS, Azure, GCP)
  • 5+ years of hands-on experience with endpoint security and detection technologies such as Cortex XDR, CrowdStrike, Microsoft Defender, or equivalent platforms.
  • 5+ years of experience working with SIEM solutions, including log correlation, alert development, and dashboard creation
  • 5+ years of experience in security alert monitoring and incident investigation
  • 3+ years of hands-on experience implementing DevSecOps practices, including security integration within CI/CD pipelines, Infrastructure-as-Code (IaC), container security, and automated security testing
  • Strong understanding of cloud-native security tools and configurations, including identity and access management, logging/monitoring, and workload protection
  • Experience developing automation using scripting languages such as Python, PowerShell, Bash, or similar to improve security operations and incident response workflows
  • Practical experience with threat hunting techniques and methodologies
  • Familiarity with the MITRE ATT&CK framework and its application to detection engineering and incident analysis
  • Strong ability to interpret and analyze security logs, network traffic, and system behaviors to detect attack patterns and anomalies
  • In-depth knowledge of network, endpoint, and cloud security technologies and principles
  • Demonstrated experience collaborating across global teams and working in cross-functional environments
  • Strong organizational and time management skills with the ability to work independently
  • Up-to-date knowledge of recent vulnerabilities, attack vectors, and remediation strategies
  • Excellent written and verbal communication skills to support collaboration with technical and non-technical stakeholders
  • Experience administering and fine-tuning security infrastructure is a strong plus
  • Security professional certifications such as CISSP, CCSP, Security+, GSEC, GCIH, GCIA, AWS Security Specialty, Azure Security Engineer Associate, or equivalent certifications are preferred

At Thales we provide CAREERS and not only jobs. With Thales employing 80,000 employees in 68 countries our mobility policy enables thousands of employees each year to develop their careers at home and abroad, in their existing areas of expertise or by branching out into new fields. Together we believe that embracing flexibility is a smarter way of working.

Great journeys start here,

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Cloud Security & Threat Detection Analyst
Cloud Security & Threat Detection Analyst

Thales Group • Ciudad de México

Híbrido
MXN 600.000 - 1.000.000
Cloud Security & Threat Detection Analyst
Cloud Security & Threat Detection Analyst

Thales • Ciudad de México

Presencial
MXN 600.000 - 900.000
Cloud Security & Incident Response Analyst
Cloud Security & Incident Response Analyst

Thales • Ciudad de México

Presencial
MXN 900.000 - 1.300.000
Cloud-Native Security Operations Analyst
Cloud-Native Security Operations Analyst

Thales • México

Presencial
MXN 600.000 - 900.000
Security Analyst - 24/7 Cloud Security & Threat Detection
Security Analyst - 24/7 Cloud Security & Threat Detection

Thales • Ciudad de México

Presencial
MXN 700.000 - 900.000
Senior Security Developer
Senior Security Developer

Dematic • Guadalupe

Híbrido
MXN 1.203.000 - 1.719.000
Career Development
Competitive Compensation and Benefits
Pay Transparency
+1
Security Analyst
Security Analyst

Gravity IT Resources • Monterrey

Presencial
MXN 600.000 - 800.000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

A2MAC1 - Decode the future • Santiago de Querétaro

Presencial
MXN 700.000 - 1.100.000
Biweekly pay
IMSS
Christmas bonus
+6
Security Project Manager
Security Project Manager

Asenium Consulting • México

A distancia
MXN 915.000 - 1.283.000
SOC Analyst- Remote
SOC Analyst- Remote

BeyondTrust • Ciudad de México

Híbrido
AUD 90.000 - 130.000