Recibe más respuestas de empleadores
Envía un currículum específico para el puesto de trabajo en cuestión de minutos.
Kohler Co. is seeking a SOC Analyst / Threat Hunter to strengthen detection, investigation, and response capabilities across the enterprise.
This hybrid role is based in the Juarez area, Mexico, and involves working with SIEM, EDR, and cloud security signals. You will perform proactive threat hunting, develop hypotheses aligned with MITRE ATT&CK, and refine detections to reduce false positives while increasing coverage.
Kohler Co. is seeking a SOC Analyst / Threat Hunter to strengthen detection, investigation, and response capability across the enterprise.
Location: Hybrid, Juarez Nuevo León
Work Mode: Hybrid, Juarez, Nuevo León
This role operates within standard business hours with an on-call rotation.
Monitor, triage, and investigate security alerts across endpoint, identity, network, cloud, and SaaS environments—moving quickly from initial signal to understanding scope and impact.
Lead and support incident investigations by developing clear timelines, identifying affected assets, and driving toward containment.
Execute and oversee containment and response actions (including via automated and agentic workflows) in line with established playbooks, using sound judgment when situations fall outside defined procedures.
Produce clear, concise documentation of investigations and incidents to support post-incident review and continuous improvement.
Perform proactive, hypothesis-driven threat hunting based on attacker techniques, observed behavior, and current threat intelligence.
Develop and test hunt hypotheses mapped to MITRE ATT&CK (or equivalent frameworks), translating them into structured queries and analysis.
Identify weak signals and suspicious patterns that fall below existing detection thresholds.
Feed hunt findings back into detection engineering—improving rule quality and closing visibility gaps over time.
Assist with tuning and improving SIEM and EDR detections.
Reduce false positives while strengthening high-confidence alerts.
Work with architecture and engineering teams to improve telemetry and visibility.
Actively follow the evolving threat landscape, including emerging attacker tooling, techniques, and campaigns, and bring relevant intelligence into day-to-day detection and hunting activity.
Map detections and hunts to real-world attack behavior.
Proactively identify and prioritize detection gaps based on current threat actor behavior.
Contribute to the development and refinement of SOC procedures and playbooks.
Contribute to automation and orchestration efforts to improve response speed and consistency.
Provide operational feedback to improve security architecture and tooling decisions.
2+ years of experience in a SOC or threat-focused security role, with demonstrable exposure to proactive threat hunting and a clear drive to develop further in that discipline.
Hands-on experience with:
Bachelor’s degree in Information Security, Computer Science, or equivalent experience.
Security certifications (GIAC/SANS, GCIA, GNFA, OSCP, or similar) are beneficial but not required.
We empower each associate to #BecomeMoreAtKohler with a competitive total rewards package to support your health and wellbeing, access to career growth and development opportunities, a diverse and inclusive workplace, and a strong culture of innovation. With more than 30,000 bold leaders across the globe, we’re driving meaningful change in our mission to help people live gracious, healthy, and sustainable lives.
It is Kohler’s policy to recruit, hire, and promote qualified applicants without regard to race, creed, religion, age, sex, sexual orientation, gender identity or expression, marital status, national origin, disability or status as a protected veteran. If, as an individual with a disability, you need reasonable accommodation during the recruitment process, please contact kohlerjobs@kohler.com . Kohler Co. is an equal opportunity/affirmative action employer.