Job Description
RCube IT Mexico is hiring a SOC Analyst for a 6+ month contract. The ideal candidate will have extensive experience in SOC environments, threat detection, and incident response, along with expertise in Palo Alto Cortex XDR and XQL queries.
Responsibilities:
- Monitor security tools such as SIEM, EDR, and IDS/IPS to detect threats.
- Utilize Palo Alto Cortex XDR and XQL queries for in-depth security analysis.
- Conduct proactive threat hunting to neutralize emerging threats.
- Integrate threat intelligence feeds to enhance security tools.
- Develop correlation rules within SIEM for complex attack detection.
- Analyze user behaviors and network traffic to detect suspicious activity.
- Configure and fine-tune SOC tools to improve detection capabilities.
- Work with machine learning and behavioral analytics for threat identification.
- Automate security operations using Python or PowerShell.
- Establish and maintain strong vendor relationships for security solutions.
Job Requirements
• Experience in SOC environments, threat detection, and incident response.
• Hands-on experience with Palo Alto Cortex XDR and XQL queries.
• Proficiency in SIEM (Splunk), EDR (Cortex), and IDS/IPS (Snort, Suricata).
• Knowledge of cloud, network, and application security.
• Experience with threat intelligence platforms and integrations.
• Strong skills in scripting (Python, PowerShell) and security automation.
• Knowledge of MITRE ATT&CK framework for threat detection.
Preferred Qualifications
• CISSP, CISM, CEH, OSCP, or GIAC certifications.
• Experience in the Biotech/Pharma industry is a plus.
• Strong analytical and problem-solving skills.
• Excellent communication and teamwork abilities.
• Apply Now! Send your resume.
About the Company
RCube IT Mexico is a leading IT and cybersecurity services provider offering cutting-edge security solutions to safeguard businesses against evolving cyber threats.