Sr. Information Security Analyst

Tenneco

Puebla de Zaragoza

On-site

MXN 600,000 - 1,000,000

Full time

22 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Tenneco in Mexico seeks a security operations professional to own detection triage and incident handling for the AMER region during regional business hours. You will be the analyst closest to plants and offices, distinguishing real intrusions from maintenance windows and coordinating with the managed detection partner.

You will lead containment and remediation with regional IT teams, ensure timely GDPR and NIS2 notification, and build regional context to reduce false positives.

Qualifications

  • 5+ years in security operations, incident response, or security analysis.

Responsibilities

  • Own security alert triage, investigation, and escalation for the AMER region during regional coverage hours.

Skills

Security operations
Incident response
SIEM investigation
Endpoint detection
Windows
Linux
GDPR/NIS2
Written English

Education

Bachelor’s degree in Computer Science, Information Security, Information Systems, Engineering, or related field

Tools

SIEM
EDR
Email security
Identity telemetry

Job description

At Tenneco, we don’t follow industry standards; we set them, and we don’t settle for being best-in-class because we hustle to be better than best-in-class. Whether it’s our Core Values–radical candor, simplify, organizational velocity, tenacious execution and win–or our Get Stuff Done (GSD) mindset, we’re determined to become the most trusted partner and best manufacturer and distributor to the transportation industry. How do we make it happen? Through the Tenneco Way. Fueled by our Core Values, a winning mindset and a relentless commitment to excellence, the Tenneco Way is how we win. It’s what keeps Team Tenneco bold, driven, and unapologetically focused on pushing past limits and redefining success. Here, you’ll work alongside a team of relentless problem-solvers who are committed to making a tangible impact. If you’re ready to break boundaries, deliver results, and enjoy the ride along the way, you’ll thrive here. Want to learn more about who we are? Check out our website to discover the Tenneco Way.

About the Role

In this role you are Tenneco’s security operations presence in AMER. You own detection triage and incident handling during the region’s business day, you are the analyst closest to the plants and offices in your footprint, and you can tell the difference between a genuine intrusion and a maintenance window nobody announced. You handle escalations from the managed detection partner, you drive incidents to containment locally, and you carry the regional regulatory and operational context that no global tool captures.

Responsibilities
  • Own security alert triage, investigation, and escalation for the AMER region during regional coverage hours, and provide clean handover into the next region.
  • Investigate escalations from the managed detection and response provider, validate findings independently against source telemetry, and reject weak analysis rather than passing it along.
  • Lead containment and remediation for regional security incidents with regional IT, plant IT, and the global cyber operations lead, accounting for production impact before acting.
  • Produce the incident facts required to meet NIS2 twenty-four hour early warning and seventy-two hour notification timelines for in-scope EU entities, and GDPR seventy two hour breach notification, and escalátion decision without delay.
  • Build and maintain regional context including critical systems, plant schedules, local applications, and known benign behavior that would otherwise generate false positives.
  • Support forensic evidence collection and preservation for regional incidents in coordination with Legal, Privacy, and where required local works councils.
  • Identify detection gaps and tuning opportunities from regional investigations and submit them to detection engineering with supporting evidence.
  • Contribute to incident documentation and post-incident review so that findings lead to a control change rather than a note in a file.
  • Act as a regional security point of contact for IT and business stakeholders, including targeted awareness support during campaigns aimed at the region.
  • Measured on: regional mean time to triage and contain; escalation accuracy against managed service partner findings; incident documentation completeness; regulatory notification inputs delivered within clock; and false positive reduction from submitted tuning. Reported weekly to the Cyber Operations Lead.
Qualifications
  • Bachelor’s degree in Computer Science, Information Security, Information Systems, Engineering, or a related field; or an Associate degree plus two additional years of relevant experience; or six years of directly relevant experience in place of a degree.
Required Skills
  • 5+ years of security operations, incident response, or security analysis experience.
  • Hands‑on capability with SIEM investigation, endpoint detection and response, email security, and identity telemetry.
  • Working knowledge of Windows, Linux, cloud, and network fundamentals sufficient to reconstruct an event from logs.
  • General Business - Tenneco Confiden al Understanding of GDPR and NIS2 obligations as they apply to security investigation and incident notification in EU member states.
  • Strong written English and the ability to document an investigation so a non technical reader can follow it.
Preferred Skills
  • Experience in a manufacturing environment, including plant IT and OT‑adjacent investigation.
  • Familiarity with works council consultation requirements affecting employee monitoring in Germany and France.
  • GCIH, GCIA, GCFA, or Security+, or demonstrable equivalent experience.
Equal Opportunity Statement

Tenneco is an equal opportunity employer as to all protected groups, including protected veterans and individuals with disabilities. Tenneco may make reasonable accommodations to enable individuals with disabilities to perform the essential functions of this role

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior AMER Regional Security Operations Lead
Senior AMER Regional Security Operations Lead

Tenneco • Puebla de Zaragoza

On-site
MXN 600,000 - 1,000,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

KION Group • Guadalupe

Hybrid
MXN 900,000 - 1,300,000
Career Development
Competitive Compensation and Benefits
Pay Transparency
+1
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

A2MAC1 • Santiago de Querétaro

On-site
MXN 1,200,000 - 1,800,000
Biweekly Payment
IMSS
Christmas Bonus
+5
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

A2MAC1 - Decode the future • Santiago de Querétaro

On-site
MXN 700,000 - 1,100,000
Biweekly pay
IMSS
Christmas bonus
+6
L3 SOC Analyst
L3 SOC Analyst

Zeiss Group • Ciudad de México

On-site
MXN 700,000 - 900,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

KION Business Services Polska • Guadalupe

On-site
MXN 800,000 - 1,200,000
Career development
Competitive compensation
Pay transparency
+1
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Still Sverige Ab • Guadalupe

On-site
MXN 1,630,000 - 2,535,000
Career Development
Competitive Compensation and Benefits
Pay Transparency
+1
Security Analyst
Security Analyst

Lyft • Ciudad de México

On-site
MXN 350,000 - 600,000
Network Security Operations Center Analyst - Nights
Network Security Operations Center Analyst - Nights

Intuitive • Mexicali

On-site
MXN 335,000 - 670,000
Cybersecurity Internal Assessor
Cybersecurity Internal Assessor

Hitachi Energy Ltd. • Naucalpan de Juárez

On-site
MXN 550,000 - 750,000
Work-life balance
Global growth opportunities
Industry-leading benefits
+1