Csirt Threat Hunting Analyst

hace 12 horas


San José, Costa Rica Cisco Systems A tiempo completo

**What You Will Do**

As a Computer Security Incident Response Team (CSIRT) Threat Hunting Analyst you will engage in proactive threat analysis, incident detection, and coordinated incident response.
You will use your advanced analytical and problem-solving skills to conduct in-depth research to identify potential threats and help develop security procedures to protect Cisco data and assets.
**You Will Also**
- Help design security monitoring strategies and implement threat detection plays for client engagements.
- Mentor Junior Analysts, fostering an inclusive and trusting environment.
- Communicate effectively with team members, customers, and leaders, identifying needs and evaluate alternative business solutions and strategies when practicable.
- Participate in several projects and initiatives concurrently, identifying dependencies and tradeoffs among projects.
- Document cases, procedures, analysis, and investigations accurately and thoroughly (including best-practice documentation).
- Triage security events and incidents, collaborating with the CSIRT Investigators to identify, neutralize, and contain the malicious activity.
- Learn the governance, policy, and architectural underpinnings of the Security Visibility and Incident Command (SVIC) organization, including services, systems, and partners.
- Be a great teammate: adventurous, selfless, and inquisitive while maintaining high ethical standards and respect for colleagues.
Have your teammates' backs.
**Who You Are**

You are an experienced analyst with a history of proven analytical and problem-solving skills.
You are accountable to drive initiatives and seize opportunities with limited direction and have a passion for finding ways to improve operations in a dynamic environment.
You have proficient technical capability, customer empathy, leadership skills, and passion to make an industry-wide impact.
Do you have an ambitious spirit, able to handle pressure and meet deadlines, and a burning desire to truly make a difference?
If so, then we want to meet you
**Desired Skills**
- Excellent analytical, interpersonal, and communication skills.
- 3+ years' experience working in a cybersecurity environment (e.g., security operations, monitoring, vulnerability management, etc.)
with a globally distributed network of colleagues.
- Ability to understand people, process, and technical security controls and communicate to critical business leaders.
- Experience with UNIX/Linux, Windows, and MacOS.
- Experience in cloud environments such as AWS, Azure, and GCP.
- Familiarity with adversary tactics and techniques based on real-world observations.
- Scripting/coding experience a plus: Python, Go, Java, Javascript, SQL, MySQL, STIX/TAXII, MITRE ATT&CK
- Relevant Certifications: GSEC, GCIA, GISF, GCED, GCFA, GCFE, GREM, GCTI, GASF, GCEH, CISSP, CCSP, SSCP
- Cisco tools: AMP4E, Network AMP, WSA, Firepower IPS, NGFW, ESA, CTA, ThreatGrid, Stealthwatch, Umbrella, SecureX
- Non-Cisco Tools: Splunk, OSQuery, ThreatQuotient, MISP, RecordedFuture, Volatility, Cuckoo, Maltego, Powershell, Wireshark, Encase, Tableau

**Why Cisco CSIRT**

We are a relentlessly curious, collaborative, and inclusive team that celebrates creativity, diversity, and innovation.
#WeAreCisco

Cisco is an Affirmative Action and Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, national origin, genetic information, age, disability, veteran status, or any other legally protected basis.
Cisco will consider for employment, on a case-by-case basis, qualified applicants with arrest and conviction records.


  • Staff Threat Hunter

    hace 12 horas


    San José, Costa Rica Sentinelone A tiempo completo

    **About Us**:SentinelOne is defining the future of cybersecurity through our XDR platform that automatically prevents, detects, and responds to threats in real-time.Singularity XDR ingests data and leverages our patented AI models to deliver autonomous protection.With SentinelOne, organizations gain full transparency into everything happening across the...


  • San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun, and most importantly to each other’s success. Learn more about...


  • San Francisco, Heredia, Costa Rica Encora A tiempo completo

    This is an exciting time for Encora's Information Security team, as we continue to build our program and enhance our incident response capabilities.In this role, you will be responsible for identifying and escalating security threats, working closely with engineers to design and implement effective security monitoring solutions. As a Senior Security...


  • San José, San José, Costa Rica Splunk A tiempo completo

    We are committed to our work, customers, and most importantly to each other's success.About UsSplunk is a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. We believe that machine data should be accessible, usable, and valuable to everyone.Role OverviewThe Splunk Threat Response...


  • San José, San José, Costa Rica Equifax A tiempo completo

    About EquifaxAt Equifax, we empower you to chart new paths and develop new skills in a dynamic and collaborative environment. With a rich history of innovation, we continue to push the boundaries of what's possible in data analytics and cybersecurity.Estimated Salary: $95,000 - $110,000 per yearThis role is based on national averages and may vary depending...


  • San Pedro, Costa Rica CRG Solutions A tiempo completo

    DFIR and Malware analyst Short description: The Digital Forensics & Incident Response investigator will handle cyber-attacks and data breaches investigations involving internal or external threat. The investigator will conduct an end-to-end investigation including Malware Analysis to reveal the big picture and protect any of the company's worldwide clients...


  • San José, San José, Costa Rica Microsoft A tiempo completo

    At Microsoft, we are committed to empowering every person and organization on the planet to achieve more. Our Customer Service & Support (CSS) organization builds trust and confidence for every person and organization through delivering a seamless support experience.The CSS organization is responsible for the strategy, design, and implementation of...


  • San José, Costa Rica Vs-Staffing A tiempo completo

    We are looking for a **Senior Cybersecurity Analyst (Tier-2 SOC)** to support cyber defense operations in a multi-tenant Managed Detection and Response (MDR) environment.This position is focused on cybersecurity monitoring & analysis as part of a comprehensive Security Operations Center (SOC).**What You will do**Monitor and conduct analysis of security...


  • San Francisco, Heredia, Costa Rica Ibm A tiempo completo

    **Overview of IBM's Business Unit**At IBM, work transcends a mere job - it embodies a calling: to innovate, design, and push boundaries. Our employees are not just workers; they're problem-solvers, innovators, and game-changers. They're part of an ecosystem that thrives on collaboration, creativity, and continuous improvement.As a Cybersecurity Threat...

  • Software Engineer

    hace 12 horas


    San José, Costa Rica Micro Focus A tiempo completo

    At Micro Focus, everything we do is based on a simple idea: The fastest way to get results is to build on what you have.Our software solutions enable organizations to do just that.Secure and scalable, with analytics built in, they bridge the gap between existing and emerging IT—fast-tracking digital transformations across DevOps, Hybrid IT, Security, and...


  • San José, San José, Costa Rica Microsoft A tiempo completo

    At Microsoft, we prioritize the security of our customers and our own infrastructure. Our mission is to empower individuals and organizations worldwide with innovative solutions that make a significant impact.We are seeking a seasoned Security Operations Lead to join our team and drive strategic decision-making in cybersecurity. This critical role will focus...


  • San Francisco, Heredia, Costa Rica Ibm A tiempo completo

    About the RoleWe are seeking a highly skilled Cyber Security Response Lead to join our team. In this role, you will be responsible for coordinating with security teams to investigate and respond to cyber-related threats.You will oversee the root cause analysis process, ensure preventative actions are taken, and enforce security policies. Your expertise in...


  • San Francisco, Heredia, Costa Rica Ibm A tiempo completo

    About the RoleWe are seeking a seasoned Cyber Security Crisis Manager to join our team. In this critical role, you will serve as a delegate to the IBM Cloud Chief Information Security Officer (CISO), overseeing cyber incidents in collaboration with IBM CSIRT, Legal, and other security teams.Your primary responsibilities will include:Providing final approvals...


  • San José, San José, Costa Rica Micro Focus A tiempo completo

    At Micro Focus, we prioritize building on existing strengths to drive digital transformation. Our software solutions enable organizations to bridge the gap between legacy and emerging IT systems.We offer scalable and secure analytics-driven solutions that help businesses innovate and stay ahead in DevOps, Hybrid IT, Security, Predictive Analytics, and...


  • San José, San José, Costa Rica Western Union A tiempo completo

    **Senior Information Security Analyst **We are seeking a highly skilled Cyber defense expert to enhance our security posture. The ideal candidate will have a focus on threat intelligence and be able to solve complex problems creatively while adhering to the most advanced industry standards.The successful candidate will support multiple security-related...

  • Security Operations Lead

    hace 12 horas


    San José, Costa Rica Microsoft A tiempo completo

    Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity.Microsoft Security aspires to make the world a safer place for all.We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified...


  • San José, Costa Rica Equifax A tiempo completo

    Equifax is where you can power your possibly.If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you.**What you'll do**- Create and implement detection and prevention controls using a range of security tools (SIEM, DLP, IPS/IDS, EDR)- Management and...

  • Senior Analyst, Security

    hace 12 horas


    San José, Costa Rica Western Union A tiempo completo

    **Cyber Fusion Security Analyst- Santa Ana, Costa Rica**Are you a Cyber defense expert with a focus on enhancing security?Can you solve complex problems creatively while adhering to the most advanced industry standards?Join Western Union as our Cyber Fusion Security Analyst.**Motivated by our values: purpose driven, globally minded, and trustworthy &...


  • San Francisco, Heredia, Costa Rica Re:Sources Global A tiempo completo

    Company Overview:">Re:Sources Global is a leading global organization providing cutting-edge cybersecurity solutions to businesses, clients, and vendors.Job Description:">The Senior Associate, Information Security plays a crucial role in our global team, responsible for swift and effective incident response to cyber security incidents. This individual must...


  • San José, San José, Costa Rica Micro Focus A tiempo completo

    At Micro Focus, we're dedicated to empowering organizations to achieve their goals through innovative solutions.Our software enables businesses to bridge the gap between existing and emerging IT, driving digital transformations across DevOps, Hybrid IT, Security, and Predictive Analytics.We pride ourselves on providing scalable and secure solutions that help...