Cybersecurity Incident Response Specialist
hace 3 días
This range is provided by KMicro Tech, Inc.. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay rangeThe Cybersecurity Incident Response Specialist is a critical leadership position within our Managed Security Services (MSS) practice, responsible for managing and leading incident response efforts for both internal managed clients and external organizations procuring incident response (IR) engagements. This role combines technical expertise, strategic planning, and leadership to ensure effective threat management and response to cybersecurity incidents across a diverse client base, managing multi-client environments, and delivering high-quality security outcomes under pressure.
ResponsibilitiesIncident Response Leadership for Managed Clients- Serve as the Incident Response (IR) lead for all internal managed clients, ensuring rapid and effective response to cybersecurity incidents.
- Coordinate response efforts across diverse environments, leveraging client-specific threat models and operational constraints.
- Maintain deep familiarity with clients' security postures, including their use of MSS-provided tools like SIEM (e.g., Microsoft Sentinel), EDR/XDR (e.g., Microsoft Defender for Endpoint), and other integrated platforms.
- Act as the primary point of escalation for managed clients during active incident investigations.
- Lead and execute IR engagements for non-managed clients who procure services during or after an active breach.
- Rapidly scope incident engagements, define objectives, and create engagement roadmaps for containment, eradication, and recovery.
- Manage remote IR engagements, including forensic investigations, malware analysis, and data exfiltration assessments.
- Ensure timely delivery of post-incident reports with actionable insights, technical findings, and strategic recommendations.
- Support the sales and procurement teams by providing technical scoping assistance for IR service engagements.
- Develop, maintain, and continuously improve IR playbooks for managed and non-managed environments, addressing diverse incident types (e.g., ransomware, insider threats, supply chain attacks).
- Lead root cause analyses (RCAs) for incidents, ensuring findings are documented and shared with clients to improve future resilience.
- Establish and enforce service level agreements (SLAs) for incident response, ensuring timely and consistent client support.
- Operate and optimize security tools and platforms such as Microsoft Sentinel, Defender for Endpoint, Defender for Identity, Velociraptor, Azure Lighthouse, and forensic analysis tools.
- Conduct threat analysis and develop actionable recommendations to mitigate client risk proactively.
- Stay up-to-date with emerging attack vectors, malware trends, and advanced persistent threat (APT) activity to enhance response capabilities.
- Collaborate with internal teams, including threat intelligence, vulnerability management, SOC analysts, and client success managers, to provide holistic support during incidents.
- Partner with clients' internal IT, legal, compliance, and executive teams during incidents to ensure a coordinated response.
- Communicate complex technical findings clearly to both technical and non-technical stakeholders, including client executives.
- Work closely with legal and compliance teams to ensure IR activities align with applicable regulations and client obligations.
- Develop and deliver training sessions and tabletop exercises for managed and non-managed clients to enhance readiness for incidents.
- Mentor and guide junior IR team members, fostering growth and enhancing the capabilities of the broader MSS incident response team.
- Assist clients in creating and improving their internal incident response plans and processes as part of proactive consulting services.
- Identify trends and recurring issues across client incidents to recommend and implement preventive measures, such as new security controls or improved monitoring.
- Drive innovation in IR methodologies and tools, ensuring the MSS practice remains at the forefront of the cybersecurity industry.
- Work with the MSS leadership team to define and execute strategic goals for the incident response function.
- Contribute to thought leadership, such as whitepapers or presentations, on effective incident response strategies for the wider cybersecurity community.
- Bachelor's degree or above, majored in software engineering, computer science, information technology, cybersecurity, or related area.
- At least 5 years of experience related to Digital Forensics and Incident Response (DFIR) or Security Operations Center (SOC).
- Basic knowledge of different Cybersecurity tools including but not limited to EDR, SIEM, Network proxies and firewalls and Security Orchestration, Automation and Response (SOAR).
- Has intermediate/advanced and industry recognized certifications such as GCIH, CISSP, ITIL4, GSOC.
- Awareness of the cyber security/privacy incident disclosure requirements of different geographies.
- Ability to operate effectively and calmly in high stress situations.
- Ability to work independently.
- Strong leadership skills and able to communicate effectively with key customers including Senior Management, and articulate security events in a concise and understandable manner.
- A history of solving hard problems with creative solutions. Able to explain technical concepts to teammates and non-technical colleagues.
- Ability to work cross-functionally across different organizations and geographical locations.
- Effective communication, collaboration, and interpersonal skills.
- Strong communication skills in English (oral & written).
Must be able to work normal business hours in a US time zone.
100% Remote. Must be comfortable on camera.
Seniority levelMid-Senior level
Employment typeFull-time
Job functionEngineering and Information Technology
IndustriesIT Services and IT Consulting
#J-18808-Ljbffr-
Incident Response Team Lead
hace 3 días
Lima, Perú KMicro Tech, Inc. A tiempo completoAbout the RoleCybersecurity Incident Response Specialist is a key leadership position that requires a unique blend of technical expertise, strategic planning, and leadership skills. The successful candidate will be responsible for managing and leading incident response efforts for both internal managed clients and external organizations.Main...
-
Cybersecurity Threat Manager
hace 3 días
Lima, Perú KMicro Tech, Inc. A tiempo completoJob SummaryCybersecurity Incident Response Specialist is a critical leadership position responsible for managing and leading incident response efforts for both internal managed clients and external organizations. The role combines technical expertise, strategic planning, and leadership to ensure effective threat management and response to cybersecurity...
-
Cybersecurity Specialist
hace 2 días
Lima, Perú World Wildlife Fund - Peru A tiempo completo**Company Description** Imagine waking up every morning, ready to start purposeful work at an organization that is changing the world. Imagine building your career while protecting the future of nature for future generations. At WWF, you'll be able to make a difference every day as we work passionately to achieve our mission: Building a future where people...
-
Managed Security Specialist
hace 3 días
Lima, Perú KMicro Tech, Inc. A tiempo completoOur Ideal CandidateWe're looking for a highly skilled and experienced Cybersecurity Incident Response Specialist to join our team. If you have a passion for incident response, leadership, and technical expertise, we'd love to hear from you!Main ResponsibilitiesManage and lead incident response efforts for internal managed clients, ensuring rapid and...
-
Security Operations Director
hace 3 días
Lima, Perú KMicro Tech, Inc. A tiempo completoAbout Our CompanyKMicro Tech, Inc. is a leading provider of Managed Security Services (MSS) to organizations worldwide. Our team of experts provides comprehensive security solutions, including incident response, vulnerability management, and security consulting.Job SummaryCybersecurity Incident Response Specialist is a key leadership position that requires a...
-
System Maintenance and Support Expert
hace 2 días
Lima, Perú Kyndryl A tiempo completoThe Ideal CandidateWe are looking for a motivated and experienced Systems Management Specialist to join our team. The ideal candidate will have:Proven experience in system management, network administration, and technical support.A strong understanding of operating systems, networks, and software systems.Familiarity with cybersecurity, incident response, and...
-
Chief Information Security Officer
hace 2 semanas
Lima, Perú Canonical - Jobs A tiempo completoThis CISO role is for a global cybersecurity leader with a passion for Linux and open source to help define the way Canonical secures its corporate infrastructure, designs its products and assures regulatory compliance. This role will be responsible for the end to end definition and implementation of the cybersecurity and compliance program. They will...
-
Cybersecurity Manager Proveedores
hace 3 semanas
Lima, Perú BCP A tiempo completo**Cybersecurity Manager - Proveedores** Queremos que tu talento se sume al del BCP, para seguir siendo el banco que todo el tiempo está innovando, es pionero y digital. Juntos tendremos la posibilidad de generar un impacto positivo en nuestro país, teniendo como objetivo que los peruanos logren transformar sus planes en realidad. #SumaBCP Hoy te traemos...
-
Cybersecurity Specialist
hace 2 días
Lima, Perú Samishop A tiempo completoSomos Samishop, una plataforma de comercio electrónico que brinda engagement y posicionamiento a las pequeñas, medianas y grandes empresas para que puedan vender y gestionar eficazmente su negocio a través de su propia tienda online. Somos una start-up del portafolio de Krealo, la Corporate Venture Capital del grupo Credicorp. **¿Cuál será tu rol...
-
Student Projects’ Code Reviewer for Cubersecurity
hace 2 semanas
Lima, Perú TripleTen A tiempo completo**_TripleTen_**_ is a service that empowers individuals, regardless of their prior experience, to embark on the exciting and challenging journey of mastering tech professions. Our boot camps focus on training students in software engineering, data science, business intelligence analytics, cybersecurity and QA engineering in a feasible and accessible way,...
-
Senior Cybersecurity Specialist
hace 1 semana
Lima Metropolitana, Perú Bancofalabella A tiempo completoDescripción EmpresaSomos más de 90 mil personas que cada día trabajamos por el firme Propósito - Simplificar y Disfrutar más la Vida. Estamos presentes en 9 países y compuestos por grandes marcas posicionadas de diversas industrias. Falabella Retail, Sodimac, Banco Falabella, Tottus, Mallplaza, Falabella.com, Falabella Inmobiliario. Cada una de éstas...
-
IT Project Manager
hace 3 semanas
Lima, Perú Mindelta A tiempo completoWe are seeking an experienced Level 2 IT Project Manager /IT Incident Manager with Cyber Security experience to join our team on a 1-year contract in Peru. Your work will be mostly remote, although you will occasionally have to attend the Client’s headquarters in Lima. Please Note: Cybersecurity is a priority for the client. The IT Incident Manager will...
-
Solo Quedan 15h SOC Engineer
hace 7 días
Lima Metropolitana, Perú Applaudo A tiempo completoYou are someone who wants to influence your own development. You're looking for a company where you play a crucial role in supporting and architecting solutions for SOC operations and incident response.You bring to Applaudo the following competencies:- Bachelor's Degree in an IT-related discipline or equivalent experience.- 3+ years of hands-on experience in...
-
Infraestructura Security Specialist
hace 2 semanas
Lima, Perú BCP A tiempo completo**INFRASTRUCTURE SECURITY SPECIALIST** Queremos que tu talento se sume al del BCP, para seguir siendo el banco que todo el tiempo está innovando, es pionero y digital. Juntos tendremos la posibilidad de generar un impacto positivo en nuestro país, teniendo como objetivo que los peruanos logren transformar sus planes en realidad ¡Sé parte de nuestro...
-
Especialista en Servicios de Nube
hace 3 días
Lima, Perú Telefónica A tiempo completoVisión GeneralEn Telefónica Cybersecurity & Cloud Tech, el equipo de seguridad y tecnología de la nube tiene como objetivo proporcionar servicios de primer nivel para todas las operaciones de seguridad, atención a incidentes y requerimientos sobre plataformas comunes, soluciones estándares y ciberseguridad.
-
Technical Operations Manager
hace 2 días
Lima, Perú Kyndryl A tiempo completoAbout the JobWe are looking for a skilled System Management professional to join our Kyndryl team. The ideal candidate will have experience in system management, network administration, and technical support.Key ResponsibilitiesMaintain and optimize IT infrastructure to ensure peak performance.Troubleshoot critical customer situations and provide timely...
-
Network Security Specialist
hace 2 días
Lima, Perú Cyber Crime A tiempo completoCompany Overview:Fortinet delivers cybersecurity solutions to protect the digital attack surface. Our threat-informed approach enables customers to defend against today's evolving threats.
-
Sales Specialist Ciberseguridad
hace 2 semanas
Lima, Perú KURAC RPO A tiempo completo**Descripción**: SALES SPECIALIST CIBERSEGURIDAD Objetivos del puesto: Se encarga de apoyar al Producto Manager y Gerente de Soluciones sobre los productos y tecnologías de Ciberseguridad que la empresa comercializará e implementará. Asimismo, coordina con el área comercial para elaborar la mejor propuesta técnica luego de evaluar las necesidades de...
-
Customer Support Specialist
hace 2 semanas
Lima, Perú RateHawk A tiempo completoWe are looking to hire an **Incident Resolution Manager**, who will resolve retail and corporate problems of our clients in an effective way. Job Responsibilities: - rapid and effective resolution of both retail and corporate clients’ problems, sent to you as requests through the CRM system; - advising clients on all matters concerning bookings and our...
-
Software Engineering Specialist
hace 2 semanas
Lima, Perú amdocs A tiempo completo**Job ID**: 164537 **Required Travel** :Minimal **Managerial - No** **Location**:Peru - Lima (Customer Site)** **Who are we?**: **In one sentence**: **What will your job look like?**: - Present demos of the software products to partners and internal/external customers, using technical knowledge to influence the direction and evolution of the...