Talent.com
▷ [Inicio Inmediato] Manager, Cyber Threat Intelligence...

▷ [Inicio Inmediato] Manager, Cyber Threat Intelligence...

KTSA - KPMG Technology Services AmericasMexico, MX
Hace más de 30 días
Descripción del trabajo

About KTSA

We are KTSA – KPMG Technology Services Americas.

A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country. We deliver high-value technology, consulting, and corporate support services to KPMG US and its clients.

At KTSA, our Employer Value Proposition is clear : Explore.

Explore isn't just a word — it's how we grow, lead, and thrive. It's the mindset that drives our culture and shapes every opportunity :

  • Experience a collaborative, inclusive, and multicultural workplace where you belong.
  • Excel by creating impact and leaving your mark on global projects.
  • Expand your potential with real career paths, learning programs, and mentorship.
  • Express your individuality — come as you are, and thrive as your authentic self.

And because we know that thriving at work also means thriving in life, we back this mindset with KTSAMÁS, our total rewards program, designed to support your well-being, goals, and personal milestones.

RESPONSIBILITIES AND QUALIFICATIONS :

Key Responsibilities :

  • Strong background in tactical / operational cyber threat intel with knowledge of incident response / threat hunting. Demonstrated ability to automate tasks / workflows is highly favorable. Knowledge of Microsoft KQL also highly desirable but other SIEM knowledge acceptable.
  • One of the primary responsibilities are IOC sweeps / blocks / investigations of hits. Assist with automating this task. End goal is for IR to receive high fidelity true positive hits and for the person in this role to assess trends of IOC hits and feed intel to the threat hunt workstream to prioritize hunts on those threat actors. While working towards IOC sweep automation, escalates to hunters when hits determined to be true positive and remediation actions are required or if advanced analysis is required.
  • Daily CISO report (CTI Input) – This report is sent out daily to our CISO and other Sr. Leadership / workstreams regarding daily CTI news and its relevance to KPMG. The person in this role will be responsible for this daily.
  • Assist U.S. CTI workstream SME with alerts / investigations from CTI tools. Prefer experience with CTI tools such as ZeroFox (Brand abuse / leaked credentials investigations), Flashpoint (Deep dark web investigations), Domain Tools (domain / web investigations) and experience with a Threat Intelligence Platform (TIP) such as Threat Q.
  • Assist with the assessment of Top 10 threat actors / malware for the firm to prioritize on assessments / hunts.
  • Research and develop risk mitigating approaches and drive response and remediation.
  • Document processes and procedures in the form of playbooks and reference guides.
  • Stay abreast of the latest information security controls, practices, techniques and capabilities in the marketplace.
  • Lead internal skills development activities for information security personnel on the topic of cyber threat intelligence, by providing mentoring and by conducting knowledge sharing sessions.
  • Provide input to business cases and presentations to senior IT leadership of proposed security products and studies. Produce operating metrics and key performance indicators.
  • Knowledge of all phases of incident response life cycle : analysis, containment, eradication, remediation, recovery.
  • Evaluate external threat intelligence sources related to zero-day attacks, exploit kits and malware to determine organizational risk.
  • Qualifications :

  • Knowledge / experience in automating tasks (creating logic apps, powershell / python scripts to automate workflows / tasks). This is highly desirable skillset.
  • Experience in security monitoring, security operations, and incident response activities; preferably within a professional services firm or similar environment.
  • Strong knowledge of incident response and crisis management; Ability to identify both tactical and strategic solutions.
  • Knowledge / background with snort rules (reading and / or writing them).
  • Knowledge of Microsoft KQL (writing queries / creating workbooks are highly desirable).
  • Experience with IT process definition and / or improvement.
  • Ability to coordinate, work with and gain the trust of business stakeholders, technical resources, and third-party vendors.
  • Strong verbal / written communication, with ability to effectively interact with individuals at all levels of responsibility and authority. Must be able to prioritize, delegate to support an environment driven by customer service and teamwork.
  • Strong trouble-shooting and organizational skills and ability to work on multiple projects simultaneously. Ability to participate in resource planning processes based on defined organizational plans.
  • Experience defining security monitoring rules, monitoring events, assessing risk, responding to incidents and providing security oversight related to the security features of IT tools supported by the IT operations teams.
  • Ability to coordinate, work with and gain the trust of business stakeholders, technical resources, and third-party vendors
  • Strong verbal / written communication, with ability to effectively interact with individuals at all levels of responsibility and authority. Must be able to prioritize, delegate and foster the development of high-performance teams to lead / support an environment driven by customer service and team work. Strong trouble-shooting and organizational skills and ability to work on multiple projects simultaneously. Ability to participate in resource planning processes based on defined organizational plans.
  • Experience developing / utilizing SIEM queries for investigating IOCs within the network.
  • Experience conducting analysis based on Deep Dark Web intelligence.
  • Expand your possibilities with KTSA through KTSAMÁS, where you can access :

  • Extended maternity, paternity, and adoption leaves
  • Above-market vacation benefits
  • Learning opportunities, training, and certification programs
  • Extended marriage leave and daycare support
  • Wellness and Employee Assistance Programs (EAP)
  • Comprehensive medical plan, life insurance, car insurance, and funeral assistance
  • Visit to learn more.

    At KTSA, we celebrate and support everyone's individuality. We do not discriminate against any race, religion, color, national origin, gender, sexual orientation, gender identity or expression, age, marital status, or disability. We are supportive of helping you to achieve a balance between your home and work demands. We are happy to discuss specific requirements and our range of flexible working arrangements could be of interest. Please ask to find out more. We strongly state that we DO NOT require a certificate of non-pregnancy or HIV in order to participate in any of our processes.

    Explore KTSA, we dare to be different

    Home - KTSA

    KTSA - KPMG Technology Services of Americas

    Crear una alerta de empleo para esta búsqueda

    Manager Manager • Mexico, MX

    Ofertas relacionadas
    • Oferta promocionada
    Manager, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    Manager, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    4870- Security Engineer, Detection & Response ( contractor through Deel)

    4870- Security Engineer, Detection & Response ( contractor through Deel)

    CompassMexico, Mexico
    Security Engineer, Detection & Response ( contractor through Deel).LOCATIONS : ARGENTINA / URUGUAY / MEXICO ( remote).Only resumes in english and candidates based and authorized to work in the menti...Mostrar másÚltima actualización: hace 17 días
    • Oferta promocionada
    Especialista en seguridad de TI

    Especialista en seguridad de TI

    Syntax MéxicoMexico, Mexico
    Syntax is a leader in providing Cloud and Managed Services to businesses across North America.Syntax’s cloud offerings, including their best-in-class Enterprise Cloud for ERP continues to grow and ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Docente de Sociales - Maestro / a Part Time sin Experiencia en Fresnillo

    Docente de Sociales - Maestro / a Part Time sin Experiencia en Fresnillo

    TusclasesFresnillo, Mexico
    Buscas un trabajo online con horario flexible y bien remunerado?.En Tusclases, estamos buscando profesores de Sociales, con o sin experiencia, para impartir clases en línea, desde cualquier parte d...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Threat Intelligence Lead

    Threat Intelligence Lead

    Canonical Group LtdMexico
    Teletrabajo
    The Threat Intelligence Lead will own Canonical’s threat intelligence strategy and execution, including understanding which cyber threat actors are targeting Canonical, and the use of intelligence ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Specialist, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    Senior Specialist, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Specialist, Cyber Operations & Incident Handler - Advanced English

    Senior Specialist, Cyber Operations & Incident Handler - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Docente de Computación - Maestro / a Part Time sin Experiencia en Fresnillo

    Docente de Computación - Maestro / a Part Time sin Experiencia en Fresnillo

    TusclasesFresnillo, Mexico
    Buscas un trabajo online con horario flexible y bien remunerado?.En Tusclases, estamos buscando profesores de Computación, con o sin experiencia, para impartir clases en línea, desde cualquier part...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Docente de Psicologia - Maestro / a Part Time sin Experiencia en Fresnillo

    Docente de Psicologia - Maestro / a Part Time sin Experiencia en Fresnillo

    TusclasesFresnillo, Mexico
    Buscas un trabajo online con horario flexible y bien remunerado?.En Tusclases, estamos buscando profesores de Psicologia, con o sin experiencia, para impartir clases en línea, desde cualquier parte...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Cybersecurity Specialist - Master

    Cybersecurity Specialist - Master

    SofttekMexico
    Teletrabajo
    Ingeniero de Seguridad - Trabajo Remoto | REF#259283.Apoyo en Auditorías internas y externas de ciberseguridad.Seguimiento en planes de acción y remediación. Revisión periódica de la postura de segu...Mostrar másÚltima actualización: hace 1 día
    • Oferta promocionada
    Senior Specialist, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    Senior Specialist, Cybersecurity Incident Handler (GCP Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Manager, Information Security

    Manager, Information Security

    PetcoMexico, Mexico
    We’re making things better for pets, people, and the planet through our Think Adoption First philosophy, the Petco Foundation and other important initiatives that focus on putting animals first, ed...Mostrar másÚltima actualización: hace 27 días
    • Oferta promocionada
    Channel Manager

    Channel Manager

    RotateMexico, Mexico
    We are a fast-growing cybersecurity startup with an R&D center in Israel and a U.Backed by top-tier American investors, we are redefining cybersecurity for businesses by combining enterprise-grade ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Docente de Biología - Maestro / a Part Time sin Experiencia en Fresnillo

    Docente de Biología - Maestro / a Part Time sin Experiencia en Fresnillo

    TusclasesFresnillo, Mexico
    Buscas un trabajo online con horario flexible y bien remunerado?.En Tusclases, estamos buscando profesores de Biología, con o sin experiencia, para impartir clases en línea, desde cualquier parte d...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Manager, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    Manager, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Manager, Cyber Threat Intelligence - Advanced English

    Manager, Cyber Threat Intelligence - Advanced English

    KTSA - KPMG Technology Services AmericasMexico, Mexico
    We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.We deliver ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    INCIDENT MANAGER

    INCIDENT MANAGER

    Zurich 56 Company LtdMexico
    Zurich, aseguradora líder a nivel internacional te invita a ser parte de su equipo como : .Coordinar y gestionar la resolución eficiente de incidentes en los servicios de TI, asegurando la rápida res...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    ▷ Aplicar en 3 Minutos : Manager, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English...

    ▷ Aplicar en 3 Minutos : Manager, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English...

    KTSA - KPMG Technology Services AmericasMexico, MX
    About KTSA We are KTSA – KPMG Technology Services Americas.A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country...Mostrar másÚltima actualización: hace más de 30 días