Ingeniero/a incident response
Core
Specialized technical profile for cybersecurity incident response, detecting, analyzing, coordinating, and responding to incidents in IT and OT environments while driving vulnerability management.
Role type
Incident Response Engineer (SOC-IRT)
Builds
Incident response playbooks, vulnerability remediation actions, and security operations governance for corporate and industrial infrastructures.
Domain
Cybersecurity, IT Operations, Operational Technology (OT), Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident Response, Vulnerability Management, Cloud Infrastructure (Azure, AWS), Scripting (Python, PowerShell, Bash), Threat Analysis, Risk Prioritization, SOC Operations, OT Security, Process Automation (SOAR), Lean/Agile/DevSecOps
Preferred skills
Quantum Cryptography, IBM QRadar, Tenable Security Center, Microsoft Azure Sentinel, AWS Security Hub
Technologies
Azure, AWS, Python, PowerShell, Bash, Linux, Windows, SOAR, QRadar, Tenable, Azure Sentinel, AWS Security Hub
Responsibilities
Coordinate and manage the full lifecycle of cybersecurity incidents from detection to closure in IT and OT environments. Analyze alerts to identify scope, impact, root cause, and attack vectors. Prioritize and track vulnerability remediation across infrastructure, cloud, and endpoint systems. Collaborate with technical teams and vendors to execute containment and mitigation actions. Contribute to improving SOC-IRT procedures, playbooks, and automation.
Seniority
Mid-level, hands-on IC
