Technical Security Analyst#
Mexico City, Mexico
Technical Security Analyst#
- 202507530
- Mexico City, Mexico
Description
As a Security Operations (SecOps) Analyst, you are passionate about security analytics and application protection. You thrive on solving complex problems and proactively seek new ways to uncover and address vulnerabilities. You will join a dynamic team responsible for designing, managing, and securing mission-critical systems for leading organizations. Your role will focus on security scanning, vulnerability management, and threat analysis to ensure the integrity and resilience of our products and services.
The Role
This position is part of the Infrastructure and Engineering team within Benefits Outsourcing's Product & Technology group. As a SecOps Analyst, you will lead and support security operations and analytics for cloud solutions, with a strong emphasis on application security and vulnerability management.
Key Responsibilities
- Conduct security scanning using SAST, DAST, and penetration testing tools to identify vulnerabilities in applications and infrastructure.
- Manage the vulnerability process lifecycle: triage, research, resolve, and document security findings.
- Monitor and analyze data for security threats, leveraging automated scan tools and manual techniques.
- Support and enhance security threat infrastructure, including continuous improvement of scanning and remediation processes.
- Collaborate with development and engineering teams to integrate security into CI/CD pipelines.
- Perform threat analysis and provide actionable recommendations to mitigate risks.
- Ensure adherence to SLA (Service Level Agreements) for vulnerability remediation and security operations.
- Project manage security assessments and findings, ensuring timely resolution and reporting.
- Maintain compliance with data security policies and industry standards.
- Continuously learn and apply new security technologies and practices.
Qualifications
The requirements:
- BS / BA degree or relevant experience.
- 3 - 5+ years of demonstrated experience in security scanning (SAST, DAST), Penetration Testing and vulnerability management for enterprise applications.
- Strong understanding of application security principles and threat analysis methodologies.
- Experience with security testing suites and scan tools (e.g., Burp Suite, OWASP ZAP, Nessus, Qualys, etc.).
- Data analytics experience: ability to analyze and refine data sets to uncover meaningful security information.
- 3 - 5+ years of experience with Azure or equivalent cloud platforms.
- Scripting (PowerShell preferred) and software development experience.
- Experience modeling data to refine output into actionable security insights.
- Data querying and analytics (SQL, Kusto/KQL).
- Strong analytical and problem-solving skills.
- Ability to work independently and within cross-functional teams.
- Experience with ticketing systems (JIRA) and task management.
- Flexible, coachable, self-driven, and passionate about learning in a fast-paced environment.
Inclusive job opportunity
其他人还看过
主动联系
任何未经请求主动通过我们的网站或韦莱韬悦员工的个人电子邮件帐户提交的简历/应聘者资料,均视为韦莱韬悦的财产,且无需支付代理费用。要成为韦莱韬悦的授权招聘机构/猎头公司,此类机构必须持有由韦莱韬悦授权招聘人员签署的正式书面协议,并与公司保持积极的工作关系。简历必须按照我们的应聘者提交流程进行提交,包括积极参与特定职位的搜索工作。同样,对于我们授权的招聘机构/猎头公司,如果未能遵守应聘者提交流程,韦莱韬悦将不支付任何代理费用。韦莱韬悦是提倡机会均等的雇主。如果您希望我们保存您的联系信息以便将来考虑,请发送电子邮件至:Agency.inquiries@willistowerswatson.com 。
我们的办事处
我们的员工为全球 140 多个国家和市场提供服务。这为我们所做的每一项工作注入了全球视野,同时也能够为您创造许多绝佳的合作机遇与成长空间。探索下面的地图,探索您的职业发展可能。