Manager, Cyber Threat Intelligence - Mexico - KTSA - KPMG Technology Services Americas

    KTSA - KPMG Technology Services Americas
    Default job background
    Tecnología / Internet
    Descripción

    About KTSA

    We are KTSA – KPMG Technology Services Americas.

    A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country. We deliver high-value technology, consulting, and corporate support services to KPMG US and its clients.

    At KTSA, our Employer Value Proposition is clear: Explore.

    Explore isn't just a word — it's how we grow, lead, and thrive. It's the mindset that drives our culture and shapes every opportunity:

    • Experience a collaborative, inclusive, and multicultural workplace where you belong.
    • Excel by creating impact and leaving your mark on global projects.
    • Expand your potential with real career paths, learning programs, and mentorship.
    • Express your individuality — come as you are, and thrive as your authentic self.

    And because we know that thriving at work also means thriving in life, we back this mindset with KTSAMÁS, our total rewards program, designed to support your well-being, goals, and personal milestones.

    RESPONSIBILITIES AND QUALIFICATIONS:

    Key Responsibilities:

    • ​Strong background in tactical/ operational cyber threat intel with knowledge of incident response/ threat hunting. Demonstrated ability to automate tasks/ workflows is highly favorable. Knowledge of Microsoft KQL also highly desirable but other SIEM knowledge acceptable.​
    • One of the primary responsibilities are IOC sweeps/ blocks/ investigations of hits. Assist with automating this task. End goal is for IR to receive high fidelity true positive hits and for the person in this role to assess trends of IOC hits and feed intel to the threat hunt workstream to prioritize hunts on those threat actors. While working towards IOC sweep automation, escalates to hunters when hits determined to be true positive and remediation actions are required or if advanced analysis is required.D
    • aily CISO report (CTI Input) – This report is sent out daily to our CISO and other Sr. Leadership/ workstreams regarding daily CTI news and its relevance to KPMG. The person in this role will be responsible for this daily.A
    • ssist U.S. CTI workstream SME with alerts/ investigations from CTI tools. Prefer experience with CTI tools such as ZeroFox (Brand abuse/ leaked credentials investigations), Flashpoint (Deep dark web investigations), Domain Tools (domain/ web investigations) and experience with a Threat Intelligence Platform (TIP) such as Threat Q.A
    • ssist with the assessment of Top 10 threat actors/ malware for the firm to prioritize on assessments/ hunts.R
    • esearch and develop risk mitigating approaches and drive response and remediationD
    • ocument processes and procedures in the form of playbooks and reference guides.S
    • tay abreast of the latest information security controls, practices, techniques and capabilities in the marketplace.L
    • ead internal skills development activities for information security personnel on the topic of cyber threat intelligence, by providing mentoring and by conducting knowledge sharing sessionsP
    • rovide input to business cases and presentations to senior IT leadership of proposed security products and studies. Produce operating metrics and key performance indicators.K
    • nowledge of all phases of incident response life cycle: analysis, containment, eradication, remediation, recoveryE
    • valuate external threat intelligence sources related to zero-day attacks, exploit kits and malware to determine organizational risk.

    Q

    ualifications:​

    • Knowledge/ experience in automating tasks (creating logic apps, powershell/ python scripts to automate workflows/ tasks). This is highly desirable skillset.E
    • xperience in security monitoring, security operations, and incident response activities; preferably within a professional services firm or similar environmentS
    • trong knowledge of incident response and crisis management; Ability to identify both tactical and strategic solutionsK
    • nowledge/ background with snort rules (reading and/or writing them).K
    • nowledge of Microsoft KQL (writing queries/ creating workbooks are highly desirable).E
    • xperience with IT process definition and / or improvementA
    • bility to coordinate, work with and gain the trust of business stakeholders, technical resources, and third-party vendorsS
    • trong verbal/written communication, with ability to effectively interact with individuals at all levels of responsibility and authority. Must be able to prioritize, delegate to support an environment driven by customer service and teamwork. · Strong trouble-shooting and organizational skills and ability to work on multiple projects simultaneously. Ability to participate in resource planning processes based on defined organizational plans.E
    • xperience defining security monitoring rules, monitoring events, assessing risk, responding to incidents and providing security oversight related to the security features of IT tools supported by the IT operations teamsA
    • bility to coordinate, work with and gain the trust of business stakeholders, technical resources, and third-party vendors
    • Strong verbal/written communication, with ability to effectively interact with individuals at all levels of responsibility and authority. Must be able to prioritize, delegate and foster the development of high-performance teams to lead/support an environment driven by customer service and team work. Strong trouble-shooting and organizational skills and ability to work on multiple projects simultaneously. Ability to participate in resource planning processes based on defined organizational plans.E
    • xperience developing/ utilizing SIEM queries for investigating IOCs within the network.E
    • xperience conducting analysis based on Deep Dark Web intelligence.

    E

    xpand your possibilities with KTSA through KTSAMÁS, where you can access:E

    • xtended maternity, paternity, and adoption leavesA
    • bove-market vacation benefitsH
    • ybrid work modelL
    • earning opportunities, training, and certification programsE
    • xtended marriage leave and daycare supportW
    • ellness and Employee Assistance Programs (EAP)C
    • omprehensive medical plan, life insurance, car insurance, and funeral assistanceV

    isit to learn more.

    A

    t KTSA, we celebrate and support everyone's individuality. We do not discriminate against any race, religion, color, national origin, gender, sexual orientation, gender identity or expression, age, marital status, or disability. We are supportive of helping you to achieve a balance between your home and work demands. We are happy to discuss specific requirements and our range of flexible working arrangements could be of interest. Please ask to find out more. We strongly state that we DO NOT require a certificate of non-pregnancy or HIV in order to participate in any of our processes.

    E

    xplore KTSA, we dare to be differentH

    ome - KTSAK

    TSA - KPMG Technology Services of Americas



  • Canonical Mexico City

    **Threat Intelligence Lead Role Overview** · This role will lead Canonical's threat intelligence strategy, understanding which cyber threat actors target Canonical and utilizing intelligence on Tactics, Techniques, and Procedures (TTP) to enhance our products and internal cyberse ...


  • Canonical Ciudad de México

    Key Responsibilities: · Owning Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical. · Leading intelligence gathering and development activities on threat actors targeting software supply chains. · St ...


  • KTSA - KPMG Technology Services Americas México

    About KTSA · We are a Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country. · We deliver high-value technology, consulting, and corporate support services to KPMG US and its clients. · Our Culture ...


  • Canonical distrito federal

    Threat Intelligence Lead · The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical. This will involve the use of intelligence on Tactics, Techniques and Procedures ( ...


  • Canonical Mexico

    Job Description · The Threat Intelligence Lead will play a critical role in shaping Canonical's threat intelligence strategy and execution. This includes understanding which cyber threat actors are targeting Canonical, and leveraging intelligence on Tactics, Techniques, and Proce ...


  • Nubank Ciudad de México

    About Nubank · Nubank was founded in 2013 in São Paulo by David Vélez, and co-founded by Cristina Junqueira and Edward Wible to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the ...


  • KTSA - KPMG Technology Services Americas Mexico

    About KTSA · We are a Service Delivery Center of KPMG US, with offices in Mexico City and Guadalajara, and a growing network of remote talent across the country. · We deliver high-value technology, consulting, and corporate support services to KPMG US and its clients. · Our Cultu ...


  • KTSA - KPMG Technology Services Americas méxico

    About KTSA We are a Service Delivery Center of KPMG US, with offices in Mexico City and Guadalajara. · We deliver high-value technology, consulting, and corporate support services to KPMG US and its clients. · Explore isn't just a word — it's how we grow, lead, and thrive. It's ...


  • Velatia Careers Xico

    Empresa de ámbito internacional, que diseña, implementa y administra tecnología e infraestructura para telecomunicaciones, aportando conocimiento y experiência en ámbitos con requerimientos específicos. · Ofrece alternativas innovadoras para arquitecturas tecnológicas, con el obj ...


  • Canonical Ecatepec de Morelos

    **Threat Intelligence Lead** · The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including an understanding of which cyber threat actors are targeting Canonical. This role involves using intelligence on Tactics, Techniques and Procedure ...


  • Pepsico Xico

    Overview: · **We Are PepsiCo** · *** · Join PepsiCo and Dare for Better · We are the perfect place for curious people, thinkers and change agents. · From leadership to front lines, we're excited about the future and working together to make the world a better place. · Being part ...

  • InfoVision Inc.

    Security Engineer

    hace 1 semana


    InfoVision Inc. Mexico

    L3 Security Operations Center (SOC) Engineer · We are seeking an experienced and innovative Level 3 SOC Engineer to join our growing cybersecurity team. This role is instrumental in enhancing our detection and response capabilities, automating security processes, and strengthenin ...


  • Sibylline Ltd Mexico City De jornada completa

    · Company Description · About Sibylline · Sibylline is a leading intelligence and strategic risk consultancy in the security sector. Since 2010 we have supported businesses, governments and NGOs through the provision of high-quality risk analysis, due diligence and consultancy s ...


  • Sibylline Ltd Mexico City De jornada completa

    · Company Description · About Sibylline · Sibylline is a leading intelligence and strategic risk consultancy in the security sector. Since 2010 we have supported businesses, governments and NGOs through the provision of high-quality risk analysis, due diligence and consultancy s ...


  • Kyndryl Mexico City De jornada completa

    Who We Are · At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inc ...


  • Recorded Future Mexico City De jornada completa

    With 1,000 intelligence professionals, over $300M in sales, and serving over 1,900 clients worldwide, Recorded Future is the world's most advanced, and largest, intelligence company · As an Account Director at Recorded Future, you will drive revenue growth by expanding relationsh ...

  • Kyndryl

    Service Manager

    hace 6 días


    Kyndryl Mexico City De jornada completa

    Who We Are · At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inc ...


  • KTSA - KPMG Technology Services Americas Mexico

    About KTSA · We are KTSA – KPMG Technology Services Americas. · A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country. We deliver high-value technology, consulting, and corporate support services ...


  • Recorded Future Mexico City De jornada completa

    With 1,000 intelligence professionals, over $300M in sales, and serving over 1,900 clients worldwide, Recorded Future is the world's most advanced, and largest, intelligence company · As a Business Development Representative you'll act as part of the sales team interfacing closel ...


  • KTSA - KPMG Technology Services Americas Mexico

    About KTSA · We are KTSA – KPMG Technology Services Americas. · A Service Delivery Center of KPMG US, with offices in Mexico City, Guadalajara, and a growing network of remote talent across the country. We deliver high-value technology, consulting, and corporate support services ...

Trabajos
>
Mexico City