Description
Job Summary:
Continuously monitor security alerts to identify and respond to potential threats, overseeing SIEM and SOAR platforms and escalating incidents.
Key Highlights:
1. Continuous monitoring of security alerts and threat response.
2. Opportunities for development and innovation.
3. Meaningful work that promotes quality of life.
**Job Description**
----------------------
Continuously monitor the organization's security alerts to promptly identify and respond to potential threats.
What will you do daily?
* Continuously supervise alerts generated by security monitoring platforms (SIEM and SOAR) to identify potential threats and events of interest.
* Analyze and categorize alerts based on their severity level and potential impact on the organization, applying criteria defined in procedures and playbooks.
* Conduct preliminary alert analysis to determine validity and risk level, identifying suspicious behavioral patterns and collecting relevant information to facilitate escalation.
* Follow predefined playbooks and procedures to respond to low-complexity security incidents, documenting each intervention step.
* Escalate high-severity or high-complexity security incidents to Level 2 Analysts or other specialized teams, providing a detailed summary of the situation and initial findings.
* Maintain clear communication with other SOC members and other organizational teams in incidents potentially impacting other areas.
* Stay updated on the latest cybersecurity threats and tactics, as well as efficient use of SIEM, SOAR, and other SOC tools.
* Support basic maintenance tasks for security tools to ensure optimal operation and accurate alert generation.
In our team, you will find:
* Spaces to create and innovate.
* You will be part of an environment full of development opportunities.
* Meaningful work that promotes quality of life.
* Belonging to an energetic company!
We are a company supporting Law 21015; we support diversity and inclusion in all forms, regardless of religion, race, gender, disability status, or nationality.**Candidate Requirements**
--------------------------
* Degrees/certifications/courses in related fields such as cybersecurity, IT security, or networking.
* Theoretical knowledge of SIEM-type tools and security event management (mandatory).
* Theoretical knowledge of networks and security protocols (mandatory).
* Knowledge of Linux and MS operating systems (mandatory).
* Analytical ability and attention to detail for analytical tasks.
* Availability to work rotating shifts (morning, afternoon, and night) (mandatory).
This position is suitable for persons with disabilities.
**Selection Process**
------------------------
The selection process is conducted via Aira — a recruitment platform designed to enhance your application experience.
To apply, you only need:
1\. Apply to the job posting.
2\. Check your email.
3\. Log in to Aira and answer the requested questions and/or tests.
Then, if your profile matches what we are seeking, we will contact you by email (via Aira) to proceed to the in-person stage.
**About Us**
------------------
We are over 88,000 people who work every day toward our firm Purpose — Simplify and Enjoy Life More. We operate in 9 countries and consist of five major brands positioned across diverse industries: Falabella Retail, Sodimac, Banco Falabella, Tottus, and Mallplaza. Each of these brands shapes who we are, and together — as One Team — we strive daily to reinvent ourselves and exceed our customers’ expectations.
A team full of dreams that makes things happen. We dare to launch and innovate, take risks, and generate opportunities that keep us at the forefront — driving us to reinvent ourselves to deliver the best shopping experience at every touchpoint with us.