Sr Cyber Security Analyst (SOC)

SBG

San Luis Potosí

Híbrido

MXN 800.000 - 1.200.000

Jornada completa

14 días+
Generador de candidaturas

Una candidatura hecha para este puesto de trabajo — un currículum y una carta de presentación adaptados que responden directamente a la oferta.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Hybrid work model

Descripción de la vacante

SBG is seeking a Senior Cyber Security Engineer to lead analytics, complex investigations, tool engineering, and SOC capability maturity within a fast-paced security operations team.

This role drives automation, detection evolution, and intelligence-driven operations, reporting to the Cyber Security Director and collaborating with cross-functional teams across the organization.

Formación

  • Minimum 5 years of cybersecurity or SOC experience.
  • Excellent documentation and communication skills.
  • Certifications: GSEC, Security+, CISSP (preferred or in progress).
  • Deep understanding of network protocols, IDS/IPS, SIEM, firewalls, proxies, and DLP technologies.
  • Strong incident response knowledge and advanced threat actor behaviors.
  • Ability to prioritize in a dynamic, fast-paced environment.
  • Advanced written and verbal English communication skills.

Responsabilidades

  • Continuously assess emerging threats and evaluate SOC tools, architectures, and workflows for improvement.
  • Recommend and implement standardized, scalable approaches for SOC technologies and processes.
  • Develop and enhance SLAs, KPIs, and operational reporting for security tooling and SOC effectiveness.
  • Maintain and enhance SOC policies, documentation, and procedures.
  • Lead identification, investigation, and remediation of advanced security events and incidents.
  • Ensure audit trails and evidence-handling standards support incident investigation and regulatory requirements.
  • Develop cybersecurity policies and DLP standards aligned with organizational risk posture.
  • Manage and investigate data-loss events to ensure risks are mitigated.
  • Execute and enforce security policy, exception management, and risk controls.
  • Provide Tier 3 technical escalation support for SOC incidents and engineering issues.
  • Collaborate closely with architecture, network, data center, HR, Legal, and third parties during investigations.
  • Lead and contribute to complex cybersecurity and SOC modernization projects.
  • Mentor and develop SOC engineers and analysts to strengthen capabilities.
  • Provide leadership input into planning, deployment, and optimization of new and existing security initiatives.
  • Lead SIEM, SOAR, and XDR engineering, correlation rule development, and detection content optimization.
  • Drive automation design and orchestration to increase SOC efficiency and reduce response times.
  • Lead deep-dive threat hunting, hypothesis-driven investigations, and adversary simulation.
  • Guide cloud-native security monitoring and detection engineering.

Conocimientos

SOC experience
Documentation
Certifications
Network/IDS/DLP
IR frameworks
English skills

Herramientas

SIEM
SOAR
XDR
IDS/IPS
DLP

Descripción del empleo

The Senior Cyber Security Engineer, is a senior technical leader within the Security Operations function, responsible for advanced analytics, complex investigations, tool engineering, and driving Security Operations Center (SOC) capability maturity. This role proactively identifies and responds to sophisticated threats, advances detection capabilities, and guides the SOC toward higher automation, intelligence-driven operations, and continuous improvement aligned with industry best practices and Gartner L4 maturity. Reports to: Cyber Security Director.

JOB DUTIES:
  • Continuously assess emerging threats and evaluate SOC tools, architectures, and workflows for improvement.
  • Recommend and implement standardized, scalable approaches for SOC technologies and processes.
  • Develop and enhance SLAs, KPIs, and operational reporting for security tooling and SOC effectiveness.
  • Maintain and enhance SOC policies, documentation, and procedures.
  • Lead identification, investigation, and remediation of advanced security events and incidents.
  • Ensure audit trails and evidence-handling standards support incident investigation and regulatory requirements.
  • Develop cybersecurity policies and DLP standards aligned with organizational risk posture.
  • Manage and investigate data-loss events to ensure risks are mitigated.
  • Execute and enforce security policy, exception management, and risk controls.
  • Provide Tier 3 technical escalation support for SOC incidents and engineering issues.
  • Collaborate closely with architecture, network, data center, HR, Legal, and third parties during investigations.
  • Lead and contribute to complex cybersecurity and SOC modernization projects.
  • Mentor and develop SOC engineers and analysts to strengthen capabilities.
  • Provide leadership input into planning, deployment, and optimization of new and existing security initiatives.
  • Lead SIEM, SOAR, and XDR engineering, correlation rule development, and detection content optimization.
  • Drive automation design and orchestration to increase SOC efficiency and reduce response times.
  • Lead deep-dive threat hunting, hypothesis-driven investigations, and adversary simulation.
  • Guide cloud-native security monitoring and detection engineering.
YOU MUST HAVE:
  • Minimum 5 years of cybersecurity or SOC experience.
  • Excellent documentation and communication skills.
  • Certifications: GSEC, Security+, CISSP (preferred or in progress).
  • Deep understanding of network protocols, IDS/IPS, SIEM, firewalls, proxies, and DLP technologies.
  • Strong understanding of incident response frameworks and advanced threat actor behaviors.
  • Ability to prioritize in a dynamic, fast-paced environment.
  • Advanced written and verbal English communication skills.
WE VALUE:
  • Experience with modern SOC engineering (SOAR automation, XDR implementation, cloud monitoring).
  • Strong experience developing detection rules, tuning alerts, and engineering log ingestion pipelines.
  • Proven ability to lead investigations involving advanced persistent threats (APTs).
  • Additional certifications (GCIA, GCFE, GDAT, GCTI, etc.).
BEHAVIORAL COMPETENCES:
  • Ability to lead and influence across teams and stakeholders.
  • Strong adaptability, decision-making, and urgency in high-pressure environments.
  • Exceptional communication, collaboration, and mentorship abilities.
  • Ability to absorb and apply new technologies quickly.
WHAT'S IN IT FOR YOU?
  • Benefits that go beyond Mexican labor law, ensuring your well-being and peace of mind.
  • A collaborative and inclusive work environment where your contributions are valued.
  • Opportunities for continuous professional growth and skill development through training, mentoring, and challenging projects.
  • Access to cutting-edge tools, resources, and a supportive team to help you excel.
  • The chance to work with a global, innovative company shaping the future in its industry.

#LI-AM2

#LI-HYBRID

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

A2MAC1 - Decode the future • Santiago de Querétaro

Presencial
MXN 700.000 - 1.100.000
Biweekly pay
IMSS
Christmas bonus
+6
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

A2MAC1 • Santiago de Querétaro

Presencial
MXN 1.200.000 - 1.800.000
Biweekly Payment
IMSS
Christmas Bonus
+5
SOC Analyst – CrowdStrike / Cybersecurity Specialist
SOC Analyst – CrowdStrike / Cybersecurity Specialist

Arcadion • Polanco (Ranchería Mineral Polanco)

Presencial
MXN 300.000 - 400.000
Competitive compensation
Modern, innovation-driven culture
Opportunities for career growth
Senior Associate – Cyber Operations (Incident Response)
Senior Associate – Cyber Operations (Incident Response)

EX Squared LATAM • Ciudad de México

Presencial
MXN 420.000 - 660.000
Meal/grocery vouchers
Savings fund
Vacation premium
+1
SOC Analyst L2
SOC Analyst L2

Capital Empresarial Horizonte • Ciudad de México

Híbrido
Confidential
Horario de oficina
Esquema 100% nómina
Prestaciones de ley
+1
SOC Analyst Consultant (CrowdStrike Experience) - Remote (Mexico) Posted on Aug 06 / 2026
SOC Analyst Consultant (CrowdStrike Experience) - Remote (Mexico) Posted on Aug 06 / 2026

EmergencyMD • México

Híbrido
MXN 600.000 - 900.000
Private medical insurance
Life insurance
Christmas bonus and technology stipend
+3
SOC Analyst Consultant (CrowdStrike Experience) - Remote (Mexico)
SOC Analyst Consultant (CrowdStrike Experience) - Remote (Mexico)

Echelon Risk + Cyber • México

A distancia
PHP 1.487.000 - 1.912.000
Access to private medical insurance
Life insurance via MetLife
30-day Christmas bonus and a monthly技术
+3
Security Analyst
Security Analyst

Gravity IT Resources • Monterrey

Presencial
MXN 600.000 - 800.000
SOC Analyst L2
SOC Analyst L2

adlytics GmbH • Santiago de Querétaro

Híbrido
Confidential
Horario de Oficina
Nomina 100%
Prestaciones de Ley
+2
SOC Cortex XSIAM Analyst
SOC Cortex XSIAM Analyst

Tata Consultancy Services • Jalisco

Presencial
MXN 420.000 - 660.000
Direct contract