Information Security Engineer

Job not on LinkedIn

🔥 0 minutes ago

🇲🇽 Mexico – Remote

⏰ Full Time

🟢 Junior

🟡 Mid-level

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 13%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Oportun

Oportun

1001 - 5000 employees

Founded 2006

💼 Consulting

🛡️ Insurance

💳 Fintech

Consulting • Insurance • Fintech

Oportun is a financial technology company that specializes in providing affordable personal loans and savings solutions. They are recognized as Bankrate's #1 app for saving money in 2024. Oportun offers personal loans ranging from $300 to $10,000 for various financial needs such as bills, repairs, and deposits, with quick funding and affordable payments. The company provides a unique app that helps users manage their loans and saves money intelligently. Oportun also focuses on financial education and offers tools like loan calculators and prequalification services, which do not impact credit scores. Although Oportun is not a bank, they ensure deposits are FDIC insured through partner banks.

📋 Description

• Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments • Identify, investigate, contain, and remediate security incidents • Correlate data from SIEM, EDR, cloud, identity, and network security tools • Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams during incidents • Manage incidents, communicate risk, and improve the organization’s security posture • Improve security operations through automation, AI-assisted workflows, detection tuning, and playbook development • Coordinate external takedowns and threat remediation with third-party providers • Investigate suspicious activity in AWS, Kubernetes, GitHub, SaaS platforms, and identity systems • Conduct purple team exercises and threat hunting • Develop, tune, and maintain security detections and SIEM use cases • Document investigations, incident timelines, playbooks, and lessons learned

🎯 Requirements

• Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field, or 2-5 years of experience in Security Operations, Incident Response, Digital Threat Protection, Threat Intelligence, Cyber Forensics, or Detection Engineering • Experience leading and coordinating cybersecurity investigations from initial detection through containment and remediation • Experience with SIEM platforms such as Splunk for investigation, detection engineering, and threat hunting • Experience investigating incidents across cloud, endpoint, identity, SaaS, and network environments • Experience analyzing telemetry from EDR, firewalls, identity providers, proxies, cloud platforms, email security solutions, and authentication systems • Strong understanding of Windows, Linux, Active Directory, Entra ID (Azure AD), AWS IAM, and modern identity attacks • Working knowledge of TCP/IP, DNS, HTTP/S, SMTP, VPNs, and common enterprise architectures • Experience performing root cause analysis and correlating activity across multiple security technologies • Ability to develop executive summaries and communicate technical findings to technical and non-technical stakeholders • Experience collaborating across Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams • Strong documentation skills for investigations, incident timelines, playbooks, and lessons learned • Continuous learning, security automation, and process improvement • Experience leveraging AI-assisted security tools and workflow automation • Ability to identify repetitive operational tasks suitable for automation and implement AI-enabled workflows • Experience conducting purple team exercises • Experience using Wiz CNAPP • Experience conducting threat hunting using the MITRE ATT&CK framework • Experience developing, tuning, or maintaining security detections and SIEM use cases • Experience with SOAR platforms and security automation • Experience conducting fraud investigations or partnering with Fraud Operations • Experience investigating account takeover, payment fraud, synthetic identity fraud, or cyber-enabled fraud • Security certifications such as GCIH, GCTI, AWS Security Specialty, Security+, or equivalent

🏖️ Benefits

• Diverse, equitable, and inclusive culture • Employee resource groups • Equal opportunity employment • No pre-employment fees for background checks, training, or equipment

Apply Now

Similar Jobs

🕒 4 days ago

Sequoia Connect

11 - 50

💼 Consulting

📣 Marketing

📦 Logistics

Security Track Engineer analyzing vulnerabilities, deploying patches, and strengthening application and infrastructure security. Supporting an automation-led digital transformation company serving Fortune 500 clients.

🗣️🇪🇸 Spanish Required

Cloud

🕒 4 days ago

Sequoia Connect

11 - 50

💼 Consulting

📣 Marketing

📦 Logistics

Security Track Associate triaging vulnerabilities and prioritizing remediation for an automation-led technology powerhouse. Collaborating with engineering teams on cloud and AI-driven transformation projects.

🗣️🇪🇸 Spanish Required

Cloud

🕒 4 days ago

Sequoia Connect

11 - 50

💼 Consulting

📣 Marketing

📦 Logistics

CRA compliance and product security engineer translating legislation into secure engineering protocols. Leading cross-functional product security and regulatory alignment for global IT transformation projects.

🗣️🇪🇸 Spanish Required

Cloud

Cyber Security

🕒 4 days ago

Sequoia Connect

11 - 50

💼 Consulting

📣 Marketing

📦 Logistics

SAP Security Specialist managing SAP ECC security roles, users, authorizations, and SoD remediation. Supporting compliance, testing, troubleshooting, and customer-facing delivery for a global automation powerhouse.

🗣️🇪🇸 Spanish Required

🕒 6 days ago

Avertium

201 - 500

🔒 Cybersecurity

🏢 Enterprise

Senior LogRhythm Engineer/Architect securing customer systems for Avertium, a cyber fusion and MXDR provider. Managing distributed LogRhythm deployments, cloud environments, SIEM databases, and security operations.

AWS

Azure

Cloud

Cyber Security

EC2

ElasticSearch

Linux

Python

SQL