Cybersecurity Incident Response Specialist

hace 3 días


Lima, Perú KMicro Tech, Inc. A tiempo completo
Cybersecurity Incident Response Specialist

This range is provided by KMicro Tech, Inc.. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

The Cybersecurity Incident Response Specialist is a critical leadership position within our Managed Security Services (MSS) practice, responsible for managing and leading incident response efforts for both internal managed clients and external organizations procuring incident response (IR) engagements. This role combines technical expertise, strategic planning, and leadership to ensure effective threat management and response to cybersecurity incidents across a diverse client base, managing multi-client environments, and delivering high-quality security outcomes under pressure.

ResponsibilitiesIncident Response Leadership for Managed Clients
  • Serve as the Incident Response (IR) lead for all internal managed clients, ensuring rapid and effective response to cybersecurity incidents.
  • Coordinate response efforts across diverse environments, leveraging client-specific threat models and operational constraints.
  • Maintain deep familiarity with clients' security postures, including their use of MSS-provided tools like SIEM (e.g., Microsoft Sentinel), EDR/XDR (e.g., Microsoft Defender for Endpoint), and other integrated platforms.
  • Act as the primary point of escalation for managed clients during active incident investigations.
Procured Incident Response Engagements
  • Lead and execute IR engagements for non-managed clients who procure services during or after an active breach.
  • Rapidly scope incident engagements, define objectives, and create engagement roadmaps for containment, eradication, and recovery.
  • Manage remote IR engagements, including forensic investigations, malware analysis, and data exfiltration assessments.
  • Ensure timely delivery of post-incident reports with actionable insights, technical findings, and strategic recommendations.
  • Support the sales and procurement teams by providing technical scoping assistance for IR service engagements.
Operational Excellence in Incident Response
  • Develop, maintain, and continuously improve IR playbooks for managed and non-managed environments, addressing diverse incident types (e.g., ransomware, insider threats, supply chain attacks).
  • Lead root cause analyses (RCAs) for incidents, ensuring findings are documented and shared with clients to improve future resilience.
  • Establish and enforce service level agreements (SLAs) for incident response, ensuring timely and consistent client support.
Technical Expertise and Tool Utilization
  • Operate and optimize security tools and platforms such as Microsoft Sentinel, Defender for Endpoint, Defender for Identity, Velociraptor, Azure Lighthouse, and forensic analysis tools.
  • Conduct threat analysis and develop actionable recommendations to mitigate client risk proactively.
  • Stay up-to-date with emerging attack vectors, malware trends, and advanced persistent threat (APT) activity to enhance response capabilities.
Collaboration and Stakeholder Management
  • Collaborate with internal teams, including threat intelligence, vulnerability management, SOC analysts, and client success managers, to provide holistic support during incidents.
  • Partner with clients' internal IT, legal, compliance, and executive teams during incidents to ensure a coordinated response.
  • Communicate complex technical findings clearly to both technical and non-technical stakeholders, including client executives.
  • Work closely with legal and compliance teams to ensure IR activities align with applicable regulations and client obligations.
Training and Mentorship
  • Develop and deliver training sessions and tabletop exercises for managed and non-managed clients to enhance readiness for incidents.
  • Mentor and guide junior IR team members, fostering growth and enhancing the capabilities of the broader MSS incident response team.
  • Assist clients in creating and improving their internal incident response plans and processes as part of proactive consulting services.
Continuous Improvement and Strategy
  • Identify trends and recurring issues across client incidents to recommend and implement preventive measures, such as new security controls or improved monitoring.
  • Drive innovation in IR methodologies and tools, ensuring the MSS practice remains at the forefront of the cybersecurity industry.
  • Work with the MSS leadership team to define and execute strategic goals for the incident response function.
  • Contribute to thought leadership, such as whitepapers or presentations, on effective incident response strategies for the wider cybersecurity community.
Qualifications
  • Bachelor's degree or above, majored in software engineering, computer science, information technology, cybersecurity, or related area.
  • At least 5 years of experience related to Digital Forensics and Incident Response (DFIR) or Security Operations Center (SOC).
  • Basic knowledge of different Cybersecurity tools including but not limited to EDR, SIEM, Network proxies and firewalls and Security Orchestration, Automation and Response (SOAR).
  • Has intermediate/advanced and industry recognized certifications such as GCIH, CISSP, ITIL4, GSOC.
  • Awareness of the cyber security/privacy incident disclosure requirements of different geographies.
  • Ability to operate effectively and calmly in high stress situations.
  • Ability to work independently.
  • Strong leadership skills and able to communicate effectively with key customers including Senior Management, and articulate security events in a concise and understandable manner.
  • A history of solving hard problems with creative solutions. Able to explain technical concepts to teammates and non-technical colleagues.
  • Ability to work cross-functionally across different organizations and geographical locations.
  • Effective communication, collaboration, and interpersonal skills.
  • Strong communication skills in English (oral & written).

Must be able to work normal business hours in a US time zone.

100% Remote. Must be comfortable on camera.

Seniority level

Mid-Senior level

Employment type

Full-time

Job function

Engineering and Information Technology

Industries

IT Services and IT Consulting

#J-18808-Ljbffr

  • Lima, Perú KMicro Tech, Inc. A tiempo completo

    About the RoleCybersecurity Incident Response Specialist is a key leadership position that requires a unique blend of technical expertise, strategic planning, and leadership skills. The successful candidate will be responsible for managing and leading incident response efforts for both internal managed clients and external organizations.Main...


  • Lima, Perú KMicro Tech, Inc. A tiempo completo

    Job SummaryCybersecurity Incident Response Specialist is a critical leadership position responsible for managing and leading incident response efforts for both internal managed clients and external organizations. The role combines technical expertise, strategic planning, and leadership to ensure effective threat management and response to cybersecurity...


  • Lima, Perú World Wildlife Fund - Peru A tiempo completo

    **Company Description** Imagine waking up every morning, ready to start purposeful work at an organization that is changing the world. Imagine building your career while protecting the future of nature for future generations. At WWF, you'll be able to make a difference every day as we work passionately to achieve our mission: Building a future where people...


  • Lima, Perú KMicro Tech, Inc. A tiempo completo

    Our Ideal CandidateWe're looking for a highly skilled and experienced Cybersecurity Incident Response Specialist to join our team. If you have a passion for incident response, leadership, and technical expertise, we'd love to hear from you!Main ResponsibilitiesManage and lead incident response efforts for internal managed clients, ensuring rapid and...


  • Lima, Perú KMicro Tech, Inc. A tiempo completo

    About Our CompanyKMicro Tech, Inc. is a leading provider of Managed Security Services (MSS) to organizations worldwide. Our team of experts provides comprehensive security solutions, including incident response, vulnerability management, and security consulting.Job SummaryCybersecurity Incident Response Specialist is a key leadership position that requires a...


  • Lima, Perú Kyndryl A tiempo completo

    The Ideal CandidateWe are looking for a motivated and experienced Systems Management Specialist to join our team. The ideal candidate will have:Proven experience in system management, network administration, and technical support.A strong understanding of operating systems, networks, and software systems.Familiarity with cybersecurity, incident response, and...


  • Lima, Perú Canonical - Jobs A tiempo completo

    This CISO role is for a global cybersecurity leader with a passion for Linux and open source to help define the way Canonical secures its corporate infrastructure, designs its products and assures regulatory compliance. This role will be responsible for the end to end definition and implementation of the cybersecurity and compliance program. They will...


  • Lima, Perú BCP A tiempo completo

    **Cybersecurity Manager - Proveedores** Queremos que tu talento se sume al del BCP, para seguir siendo el banco que todo el tiempo está innovando, es pionero y digital. Juntos tendremos la posibilidad de generar un impacto positivo en nuestro país, teniendo como objetivo que los peruanos logren transformar sus planes en realidad. #SumaBCP Hoy te traemos...


  • Lima, Perú Samishop A tiempo completo

    Somos Samishop, una plataforma de comercio electrónico que brinda engagement y posicionamiento a las pequeñas, medianas y grandes empresas para que puedan vender y gestionar eficazmente su negocio a través de su propia tienda online. Somos una start-up del portafolio de Krealo, la Corporate Venture Capital del grupo Credicorp. **¿Cuál será tu rol...


  • Lima, Perú TripleTen A tiempo completo

    **_TripleTen_**_ is a service that empowers individuals, regardless of their prior experience, to embark on the exciting and challenging journey of mastering tech professions. Our boot camps focus on training students in software engineering, data science, business intelligence analytics, cybersecurity and QA engineering in a feasible and accessible way,...


  • Lima Metropolitana, Perú Bancofalabella A tiempo completo

    Descripción EmpresaSomos más de 90 mil personas que cada día trabajamos por el firme Propósito - Simplificar y Disfrutar más la Vida. Estamos presentes en 9 países y compuestos por grandes marcas posicionadas de diversas industrias. Falabella Retail, Sodimac, Banco Falabella, Tottus, Mallplaza, Falabella.com, Falabella Inmobiliario. Cada una de éstas...

  • IT Project Manager

    hace 3 semanas


    Lima, Perú Mindelta A tiempo completo

    We are seeking an experienced Level 2 IT Project Manager /IT Incident Manager with Cyber Security experience to join our team on a 1-year contract in Peru. Your work will be mostly remote, although you will occasionally have to attend the Client’s headquarters in Lima. Please Note: Cybersecurity is a priority for the client. The IT Incident Manager will...


  • Lima Metropolitana, Perú Applaudo A tiempo completo

    You are someone who wants to influence your own development. You're looking for a company where you play a crucial role in supporting and architecting solutions for SOC operations and incident response.You bring to Applaudo the following competencies:- Bachelor's Degree in an IT-related discipline or equivalent experience.- 3+ years of hands-on experience in...


  • Lima, Perú BCP A tiempo completo

    **INFRASTRUCTURE SECURITY SPECIALIST** Queremos que tu talento se sume al del BCP, para seguir siendo el banco que todo el tiempo está innovando, es pionero y digital. Juntos tendremos la posibilidad de generar un impacto positivo en nuestro país, teniendo como objetivo que los peruanos logren transformar sus planes en realidad ¡Sé parte de nuestro...


  • Lima, Perú Telefónica A tiempo completo

    Visión GeneralEn Telefónica Cybersecurity & Cloud Tech, el equipo de seguridad y tecnología de la nube tiene como objetivo proporcionar servicios de primer nivel para todas las operaciones de seguridad, atención a incidentes y requerimientos sobre plataformas comunes, soluciones estándares y ciberseguridad.


  • Lima, Perú Kyndryl A tiempo completo

    About the JobWe are looking for a skilled System Management professional to join our Kyndryl team. The ideal candidate will have experience in system management, network administration, and technical support.Key ResponsibilitiesMaintain and optimize IT infrastructure to ensure peak performance.Troubleshoot critical customer situations and provide timely...


  • Lima, Perú Cyber Crime A tiempo completo

    Company Overview:Fortinet delivers cybersecurity solutions to protect the digital attack surface. Our threat-informed approach enables customers to defend against today's evolving threats.


  • Lima, Perú KURAC RPO A tiempo completo

    **Descripción**: SALES SPECIALIST CIBERSEGURIDAD Objetivos del puesto: Se encarga de apoyar al Producto Manager y Gerente de Soluciones sobre los productos y tecnologías de Ciberseguridad que la empresa comercializará e implementará. Asimismo, coordina con el área comercial para elaborar la mejor propuesta técnica luego de evaluar las necesidades de...


  • Lima, Perú RateHawk A tiempo completo

    We are looking to hire an **Incident Resolution Manager**, who will resolve retail and corporate problems of our clients in an effective way. Job Responsibilities: - rapid and effective resolution of both retail and corporate clients’ problems, sent to you as requests through the CRM system; - advising clients on all matters concerning bookings and our...


  • Lima, Perú amdocs A tiempo completo

    **Job ID**: 164537 **Required Travel** :Minimal **Managerial - No** **Location**:Peru - Lima (Customer Site)** **Who are we?**: **In one sentence**: **What will your job look like?**: - Present demos of the software products to partners and internal/external customers, using technical knowledge to influence the direction and evolution of the...