Manager, Cybersecurity Incident Handler (Cortex XSOAR Environments) - Advanced English
We are KTSA – KPMG Technology Services Americas. A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country.
At KTSA, our Employer Value Proposition is clear : Explore . Explore isn’t just a word — it’s how we grow, lead, and thrive. It’s the mindset that drives our culture and shapes every opportunity :
- Experience a collaborative, inclusive, and multicultural workplace where you belong.
- Excel by creating impact and leaving your mark on global projects.
- Expand your potential with real career paths, learning programs, and mentorship.
- Express your individuality — come as you are, and thrive as your authentic self.
RESPONSIBILITIES AND QUALIFICATIONS :
Key Responsibilities :
Manage and perform day-to-day security monitoring and incident response activities for 24x7 operations, using a thorough understanding of cybersecurity. Use Cortex XSOAR skills to enhance workflows, automate processes, and improve efficiency.Response activities may include incident response, incident management, driving remediation or threat mitigation, threat hunting, and forensic analysis.Serve as a service owner and subject matter expert for XSOAR to enhance delivery and integration.Lead efforts to build and maintain effective relationships with multiple internal technology groups, ensuring strategic alignment across teams.Leverage intelligence to lead and manage threat and vulnerability monitoring, respond appropriately, and develop risk mitigation strategies.Implement automation and orchestration to improve efficiency and effectiveness of security monitoring and response processes.Integrate processes and technologies, with the objective of a 'single pane of glass' for monitoring and comprehensive security response process.Provide input into business cases and presentations to leadership of proposed security products and studies.May oversee work product(s) and lead entire small to medium size projects, managing deadlines, expectations, and often contributing to staffing decisions and supervising the work performed by more junior staff.Qualifications :
Bachelor’s degree with 5-8 years of experience in Cyber security operations, and demonstratable experience with Palo Alto Cortex XSOAR or other security orchestration and automation implementation.Both project and operational experience in security monitoring, security operations, and incident response activities; preferably within a professional services firm or similar environment.Experience implementing processes, including playbooks and procedures, defining security monitoring rules, and providing management oversight of security tooling.Hands on network and administration skills with Linux, Windows, cloud security, Active Directory, SIEM and security infrastructure.Excellent English verbal / written communication, collaboration, analytical and presentation skills to lead an environment driven by customer service and teamwork.Ability to participate in development of resource plans and project estimation.Preferred Qualifications :
Experience with Palo Alto Cortex product.Cybersecurity certifications include but not limited to CISSP, CCSP, CCSK, GSEC, GCIH, GCFE, GCFA, SC-200, CEH, and AZ-900.#J-18808-Ljbffr