🎁 Antes de postularte, practica esta entrevista. Crea tu cuenta gratis en WorkMundi y recibe un Entrenamiento de Entrevista en HelpsYouSpeak — sin costo, sin tarjeta. Quiero mi entrenamiento →
Nos encontramos en la búsqueda de un Analista de Ciberseguridad Defensiva para incorporarse por un proyecto a largo plazo , en una Empresa de Tecnología que tiene como principal cliente una empresa del rubro logístico. OBJETIVOS Y MISIÓN DEL ROL: Garantizar la protección, monitoreo proactivo y resiliencia de la infraestructura híbrida (Cloud AWS, Microsoft y On-Premise), detectando y respondiendo oportunamente a incidentes de seguridad, e impulsando la reducción de riesgos mediante la automatización de controles, hardening de sistemas, observabilidad de eventos de seguridad y la alineación con buenas prácticas y estándares de ciberseguridad. RESPONSABILIDADES DE LA POSICIÓN: Monitoreo y Detección de Amenazas: Operar y realizar el tuning continuo de plataformas SIEM/XDR (Microsoft Sentinel / Wazuh) y herramientas de observabilidad para la detección temprana de eventos anómalos e Indicadores de Compromiso (IOCs). Gestión y Respuesta a Incidentes (IR): Liderar el triaje, contención, análisis de causa raíz, erradicación y recuperación ante incidentes de ciberseguridad en entornos productivos e híbridos. Seguridad e Identidades Cloud en AWS y Microsoft: Auditar y gestionar controles de seguridad, accesos y políticas de mínimo privilegio sobre recursos en AWS (IAM, CloudTrail, Security Hub, GuardDuty) y Microsoft Entra ID / Hybrid AD. Hardening y Bastionado de Infraestructura: Definir e implementar configuraciones seguras y bastionado sobre sistemas operativos (Windows Server, Linux), Active Directory y servicios de red. Revisión de Postura de Seguridad en IaC y Contenedores: Validar y auditar la postura de seguridad en plantillas de Infraestructura como Código (Terraform/Terragrunt) y entornos de contenedores (Docker, ECS, EKS, Kubernetes) para corregir configuraciones inseguras. Controles Defensivos en CI/CD y DevSecOps: Verificar la inclusión de controles defensivos (gestión segura de secretos, permisos y dependencias) dentro de los pipelines de integración y despliegue continuo. Gestión y Remediación de Vulnerabilidades: Clasificar, priorizar y dar seguimiento a los hallazgos de vulnerabilidades reportados, coordinando su remediación técnica con las áreas de infraestructura y desarrollo. Automatización de Tareas Defensivas: Desarrollar scripts (Python, Bash, PowerShell) para automatizar la recolección de evidencia, auditorías de configuración y respuestas ante incidentes. Colaboración e Interacción: Trabajar en conjunto con los equipos de Infraestructura, TI y Desarrollo para garantizar la implementación de arquitecturas seguras y cumplimiento de políticas de la compañía. Documentación y Estándares: Elaborar y mantener actualizados los procedimientos de respuesta a incidentes, guías de hardening y documentación técnica del área. Guardias y Soporte de Incidentes Críticos: Participar en el esquema de guardias operativas para la atención y resolución de eventos de seguridad críticos fuera del horario habitual. Conocimientos: SISTEMAS OPERATIVOS Y BASTIONADO (HARDENING): ADMINISTRACIÓN DEFENSIVA AVANZADA EN WINDOWS SERVER (ACTIVE DIRECTORY / DOMINIO) Y LINUX; APLICACIÓN DE BUENAS PRÁCTICAS Y LÍNEAS BASE DE SEGURIDAD (CIS BENCHMARKS). OPERACIONES DE SEGURIDAD, SIEM/XDR Y LOGS: TRIAJE Y CORRELACIÓN DE ALERTAS, ANÁLISIS DE EVENTOS/LOGS EN PLATAFORMAS SIEM/XDR (EJ. WAZUH, SENTINEL O ELK) E INVESTIGACIÓN DE ANOMALÍAS. GESTIÓN Y PROTECCIÓN DE IDENTIDADES: IMPLEMENTACIÓN DE POLÍTICAS DE MÍNIMO PRIVILEGIO, ACCESO CONDICIONAL Y MFA EN ENTORNOS HÍBRIDOS (MICROSOFT ENTRA ID / ACTIVE DIRECTORY Y AWS IAM). SEGURIDAD Y REDES EN AWS: CONFIGURACIÓN DEFENSIVA, REVISIÓN DE CONTROLES Y MONITOREO EN SERVICIOS AWS (VPC, SECURITY GROUPS, EC2, S3, IAM, CLOUDTRAIL, GUARDDUTY). RESPUESTA A INCIDENTES (IR): TRIAJE, CONTENCIÓN, ANÁLISIS DE CAUSA RAÍZ Y ERRADICACIÓN DE AMENAZAS O INCIDENTES OPERATIVOS EN ENTORNOS PRODUCTIVOS. AUTOMATIZACIÓN OPERATIVA: SCRIPTING BÁSICO/INTERMEDIO (PYTHON, BASH O POWERSHELL) ORIENTADO A LA RECOLECCIÓN DE EVIDENCIA, AUDITORÍA DE CONFIGURACIONES Y AUTOMATIZACIÓN DE TAREAS DE SEGURIDAD. MARCOS DEFENSIVOS: CONOCIMIENTO PRÁCTICO Y APLICACIÓN DE MARCOS DE SEGURIDAD COMO MITRE ATT&CK, CIS CONTROLS O NIST CSF. Estudiantes o graduados de carreras vinculadas a Sistemas. Experiencia de 5 años en la misma posición L a V, full time , 3x2 home semanales en oficinas ubicadas en Zona Norte (Bs. As) Te esperamos!
Here's where they are and how to stand out in your applications.
19.149Jobs
10.110BR
2%EN
Brazil alone has 10,110 of them. Colombia has 4,664. If you're job hunting in Latin America, the analista role is everywhere—which means competition is real. But scale cuts both ways: more jobs means more chances to find the right fit.
Before you apply, map the geography. The top five countries by volume are BR, CO, CL, PE, and AR. Check whether the role you want exists in your region or whether you need to look across borders. Some positions may offer remote work; others won't say until you ask.
When you interview, expect questions about your process. Hiring managers for analista roles almost always ask: 'Walk me through how you'd approach a problem you've never seen before.' They want to hear your method, not just your answer. Show them you think systematically, that you ask clarifying questions, and that you break complex work into steps.
The employers posting most are COMPUTRABAJO, Confidencial, LEADERSEARCH SAS, and MAGNETO GLOBAL S.A.S. Research these companies before you apply. Understand their hiring patterns and what they value in candidates.