Skip to content

Open nowPosted 11 hours ago

Security Operation Analyst (Cyber Defense Operation)

Pragmatike73 open roles

Where
Mexico
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity Operation Analyst (Cyber Defense Operation)Pragmatike · Mexico
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Pragmatike's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. Pragmatike postings stay open a median of 5 days.

Share of postings closed within
  1. 1.9%1 day
  2. 3.8%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.1%30 days
This job: posted 11 hours ago

Pragmatike median: 5 days open

The posting

Location: Remote across LATAM Employment: Full-Time Contract Duration: Long-Term Language: Fluent English required Industry: Cybersecurity / Cloud / Enterprise Security

ABOUT THE OPPORTUNITY

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst to join a global Cybersecurity Operations team.

You’ll be part of a 24/7 Security Operations Centre (SOC) responsible for monitoring, detecting, investigating, and responding to cyber threats across enterprise, cloud, network, and endpoint environments.

This is a hands-on security role focused on alert triage, threat investigation, log analysis, incident response, and security monitoring, working alongside cybersecurity specialists distributed across multiple regions.

WHAT YOU’LL DO

- Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.

- Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.

- Investigate suspicious activity, identify root causes, and determine appropriate remediation or escalation.

- Support incident response, remediation, and recovery activities.

- Work closely with Incident Response and other cybersecurity teams to manage security threats.

- Analyze network and security events using TCP/IP, syslog, firewall, and network monitoring data.

- Identify opportunities to improve detection quality and reduce false positives through tuning and optimization.

- Gather technical information from clients to improve security monitoring and detection.

- Prepare and present security reports, summaries, and technical findings.

- Contribute to SOC procedures, documentation, knowledge bases, and quality-control processes.

- Review operational feedback and implement corrective actions to continuously improve service quality.

WHAT WE’RE LOOKING FOR

- 5+ years of relevant experience in IT/cybersecurity, including security alert triage and incident support.

- Hands-on experience working in a SOC environment.

- Strong experience with SIEM and EDR platforms.

- Advanced log analysis skills across Windows/Linux, databases, applications, and infrastructure.

- Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender.

- Experience with cloud security across Azure, AWS, and/or GCP.

- Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.

- Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.

- Knowledge of email security, network monitoring, and incident response.

- Strong knowledge of Linux, macOS, and Windows.

- Fluent English with excellent written and verbal communication skills.

NICE TO HAVE

- Experience working on an Incident Response team with Tier-1/Tier-2 incident triage.

- AWS security monitoring experience across IaaS, PaaS, or SaaS environments.

- Scripting experience with Python, PowerShell, Bash, Ruby, or similar.

- Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.

- Customer-facing cybersecurity experience.

WHY JOIN

- Work inside a global 24/7 cybersecurity operation protecting international organizations.

- Gain exposure to large-scale cloud, SIEM, EDR, network, and endpoint security environments.

- Collaborate with cybersecurity specialists across multiple regions and disciplines.

- Work directly on real-world threat detection and incident response.

- Build experience across a broad enterprise security technology stack.

Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.

In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Pragmatike's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Pragmatike's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Pragmatike's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.