Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Cybersecurity Investigation Analyst (Monterrey)

AT IBM
IBM

Cybersecurity Investigation Analyst (Monterrey)

Mexico City, Mexico

Introduction

This role will be performed locally in client´s premises. This will be performed by dedicated analysts on an 16x5 basis with stand by coverage for high severity incidents. These are dedicated resources to CEMEX, that follow agreed playbooks by CEMEX and IBM.

Responsibilities include, but may not be limited to, the following:

• Validate escalated offenses from T1, applying manual enrichment and context from CEMEX's Security controls such and AV consoles, Firewall consoles, etc. in order to determine if the offense are truly security incidents or false positives.

• Execute pre agreed investigation and response playbooks associated with the offense.

• Perform impact analysis of the incident.

Want more jobs like this?

Get jobs in Mexico City, Mexico delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.

• Recommend playbook changes when needed.

• Support investigations and analysis requested by T1 and incident management teams.

• Provide feedback to IBM MSS Global SOC teams, including T1 and SCE, on the escalated cases in order to allow offense analysis and escalation optimization for future cases.

Escalate validated offenses to Incident management, according to the stablished process and providing the appropriate recommendations in order to provide further details or containment actions.

Your role and responsibilities

Cybersecurity Investigation Analyst

This role will be performed locally on IBM premises. This will be performed by dedicated analysts on an 16x5 basis with stand by coverage for high severity incidents. These are dedicated resources to CEMEX, that follow agreed playbooks by CEMEX and IBM.

Responsibilities include, but may not be limited to, the following:

• Validate escalated offenses from T1, applying manual enrichment and context from CEMEX's Security controls such and AV consoles, Firewall consoles, etc. in order to determine if the offense are truly security incidents or false positives.

• Execute pre agreed investigation and response playbooks associated with the offense.

• Perform impact analysis of the incident.

• Recommend playbook changes when needed.

• Support investigations and analysis requested by T1 and incident management teams.

• Provide feedback to IBM MSS Global SOC teams, including T1 and SCE, on the escalated cases in order to allow offense analysis and escalation optimization for future cases.

Escalate validated offenses to Incident management, according to the stablished process and providing the appropriate recommendations in order to provide further details or containment actions..

Required education

Bachelor's Degree

Preferred education

Bachelor's Degree

Required technical and professional expertise

Details of qualifications and essential skills:

• CCNA or equivalent.

• CompTIA CySa+ (Cybersecurity Analyst) or equivalent.

• IBM Certified Associate Administrator - Security QRadar SIEM.

• IBM Certified SOC Analyst.

CISSP certificaton or equivalent

• CEH or equivalent.

• Analytical Thinking.

Knowledge of network security.

Preferred technical and professional experience

2+ years of experience managing cybersecurity incident investigations.

ABOUT BUSINESS UNIT

IBM Consulting is IBM's consulting and global professional services business, with market leading capabilities in business and technology transformation. With deep expertise in many industries, we offer strategy, experience, technology, and operations services to many of the most innovative and valuable companies in the world. Our people are focused on accelerating our clients' businesses through the power of collaboration. We believe in the power of technology responsibly used to help people, partners and the planet.

YOUR LIFE @ IBM

In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.

Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.

Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.

Are you ready to be an IBMer?

ABOUT IBM

IBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.

Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business.

At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.

OTHER RELEVANT JOB DETAILS

All our positions are eligible for people with disabilities PwD or rehabilitated.

Client-provided location(s): Mexico City, CDMX, Mexico
Job ID: IBM-14713
Employment Type: Other

Company Videos

Hear directly from employees about what it is like to work at IBM.