Senior Cyber Incident Response & Threat Hunter

Jobtailor

Mexico

On-site

MXN 420,000 - 660,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Jobtailor is seeking a dedicated Cybersecurity Operations professional in Mexico City to lead monitoring, incident response, and threat hunting efforts. You will investigate incidents, perform forensic analysis, and implement robust playbooks and automation to strengthen security controls.

The role requires hands‑on experience in security monitoring, vulnerability remediation, and cross‑team collaboration, with 24x7 shift readiness and strong English communication.

Qualifications

  • Minimum 3 years of hands‑on experience in Cybersecurity Operations, SOC, Incident Response, or similar operational security roles.
  • Direct experience participating in security incident investigation and response.
  • Hands‑on exposure to threat hunting and security monitoring activities.
  • Experience supporting or performing forensic analysis during security investigations.
  • Experience identifying vulnerabilities, insecure configurations, and security risks and supporting their remediation.
  • Experience implementing or working with Incident Response processes and playbooks.
  • Understanding of security event analysis, alert triage, escalation, containment, remediation, and post‑incident activities.
  • Experience configuring, monitoring, or using security technologies within SOC or Incident Response environments.
  • Familiarity with endpoint, network, email, threat intelligence, and cloud security concepts.
  • Strong analytical and troubleshooting skills and the ability to investigate complex security events.
  • Ability to clearly communicate technical findings, risks, and recommended actions to different audiences.
  • Strong written and verbal English communication skills.
  • Advanced English.

Responsibilities

  • Participate directly in cybersecurity monitoring, incident investigation, containment, remediation, and response activities.
  • Investigate security incidents and alerts to determine scope, severity, impact, and appropriate mitigation actions.
  • Conduct threat hunting activities to identify suspicious behaviors and potential threats.
  • Support forensic analysis and incident investigations to identify root cause and understand attacker activity.
  • Identify vulnerabilities and insecure configurations and coordinate appropriate remediation actions.
  • Develop, implement, maintain, and improve incident response processes and playbooks.
  • Configure and monitor security tools, including alerts, correlation rules, dashboards, and reporting mechanisms.
  • Apply threat intelligence to security monitoring, vulnerability detection, and incident investigations.
  • Determine risk severity and appropriate mitigation approaches for security events.
  • Incorporate lessons learned into improved preventive and detective security controls.
  • Support automation and orchestration initiatives that improve monitoring and response efficiency.
  • Collaborate with internal technology, infrastructure, security, and business teams during investigations and remediation.
  • Document incident findings, technical evidence, remediation actions, and recommendations.
  • Stay current with emerging threats, attacker techniques, security technologies, and cybersecurity operations practices.
  • Work with international teams on sophisticated cybersecurity operations and Incident Response initiatives.

Skills

Cybersecurity Operations
Incident Response
Threat Hunting
Forensic Analysis
Vulnerability Identification
Security Monitoring
Automation and Orchestration
Scripting (Python, Shell)
Security Tool Configuration
Threat Intelligence Application
Post-Incident Activities

Tools

CrowdStrike
Microsoft Defender for Endpoint
Zscaler
Proofpoint
Recorded Future
Microsoft Azure
Palo Alto Cortex XSOAR
ServiceNow

Job description

Jobtailor is seeking a dedicated Cybersecurity Operations professional in Mexico City to lead monitoring, incident response, and threat hunting efforts. You will investigate incidents, perform forensic analysis, and implement robust playbooks and automation to strengthen security controls.

The role requires hands‑on experience in security monitoring, vulnerability remediation, and cross‑team collaboration, with 24x7 shift readiness and strong English communication.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Technician - Threat Hunting & Incident Response
Security Technician - Threat Hunting & Incident Response

Jobtailor • Pasig

On-site
PHP 600,000 - 900,000
Senior Associate – Cyber Operations, Incident Response
Senior Associate – Cyber Operations, Incident Response

Jobtailor • Mexico

On-site
MXN 420,000 - 660,000
Remote IT Cyber Security Analyst – Threat Response
Remote IT Cyber Security Analyst – Threat Response

Imperative Logistics Group • Mexico

Hybrid
PHP 4,009,000 - 5,553,000
Medical, Dental, Vision insurance
401k + matching contribution
HSA + matching contribution
+3
Remote Incident Response Specialist & Threat Hunter
Remote Incident Response Specialist & Threat Hunter

CyberOne • Manila

On-site
PHP 600,000 - 900,000
Remote Incident Response & Threat Hunting Specialist
Remote Incident Response & Threat Hunting Specialist

CyberOne • Metro Manila

On-site
PHP 500,000 - 900,000
Threat Hunter & Incident Response Specialist — Hybrid
Threat Hunter & Incident Response Specialist — Hybrid

First Focus • Hinoba-an

Hybrid
PHP 600,000 - 1,000,000
Hybrid working arrangements
HMO day 1 including one dependent
Dental cover
+8
Senior SOC Analyst & Threat Hunter (CrowdStrike) Remote
Senior SOC Analyst & Threat Hunter (CrowdStrike) Remote

EmergencyMD • Mexico

Hybrid
PHP 1,487,000 - 1,912,000
Access to private medical insurance
Life insurance via MetLife
30-day Christmas bonus and a monthly技术
+3
Threat Hunter & Incident Response Specialist
Threat Hunter & Incident Response Specialist

First Focus Information Technology, Inc. • Metro Manila

Hybrid
PHP 600,000 - 900,000
Hybrid work arrangements
HMO from Day 1
Paid study days
Senior SOC Analyst - Hybrid, Threat Hunting & Growth
Senior SOC Analyst - Hybrid, Threat Hunting & Growth

ContiTech • Philippines

Hybrid
PHP 800,000 - 1,200,000
Hybrid work setup
HMO on hire
Learning opportunities
+2
SOC Analyst: Threat Hunting & Incident Response
SOC Analyst: Threat Hunting & Incident Response

Continental • Manila

On-site
PHP 600,000 - 900,000