Posted 10 days ago
Cyber Defense Analyst
AI Summary
Cyber Defense Analyst monitors and protects technology environments by analyzing security signals, correlating events across endpoints, networks, identity, and cloud systems, and supporting incident response in a SOC setting.
About this role
Cyber Defense Analyst
About You
You are a hands-on Cyber Defense Analyst who enjoys protecting complex technology environments by turning security signals into actionable insights. You are comfortable working across endpoints, networks, identity systems, and cloud environments, using security platforms to detect suspicious activity, investigate alerts, and support effective incident response.
You bring an analytical and detail-oriented mindset to cybersecurity operations and enjoy digging into logs, events, and behavioral patterns to understand what is happening and determine the appropriate response. You collaborate effectively with IT, infrastructure, and network teams, remain composed when priorities shift or incidents arise, and continuously look for opportunities to strengthen detection capabilities, security controls, and operational processes.
Note: This is a hybrid position for candidates based in San Salvador, El Salvador, and a fully remote opportunity for candidates based in other countries.
You Bring to Applaudo the Following Competencies:
- Bachelor’s Degree in Computer Science, Software Engineering, Computer Engineering, or a related field is desired, or equivalent professional experience.
- 2+ years of hands-on experience in Cybersecurity, Security Operations, or SOC environments.
- Experience with SIEM platforms such as Microsoft Sentinel, Stellar Cyber, Google SecOps, or similar solutions.
- Experience with EDR/XDR tools such as SentinelOne, Microsoft Defender, Cortex XDR, or similar solutions.
- Knowledge of security infrastructure and network security technologies, including Fortinet and Palo Alto.
- Understanding of Identity and Access Management (IAM) concepts, including Microsoft Entra ID.
- Experience working with cloud environments such as GCP and Azure.
- Familiarity with incident response, threat detection, and the MITRE ATT&CK framework.
- Basic scripting and querying skills using PowerShell, Python, KQL, or similar technologies.
- Knowledge of ManageEngine and Microsoft Security products.
- Strong analytical and critical-thinking skills to evaluate complex security events and incidents.
- Excellent verbal and written communication skills for reporting and cross-functional collaboration.
- Ability to work independently and under pressure while maintaining strong attention to detail.
- Advanced English proficiency.
Preferred Certifications:
- CompTIA Security+.
- Certified SOC Analyst (CSA).
- EC-Council Certified Incident Handler (ECIH).
You Will Be Accountable for the Following Responsibilities:
- Monitor, support, and configure SIEM and endpoint security tools to identify potential threats.
- Correlate events across endpoints, networks, identity systems, and cloud environments.
- Conduct initial analysis, triage, and escalation of security alerts following SOC procedures.
- Assist in fine-tuning detection rules to improve alert accuracy and response efficiency.
- Provide technical support and configuration assistance for security infrastructure and network controls.
- Review logs, network activity, and security events to identify suspicious behavior or misconfigurations.
- Collaborate with infrastructure teams to maintain secure network architecture and ensure connectivity complies with security standards.
- Support and configure identity protection and access-monitoring tools.
- Analyze authentication patterns, privilege escalations, and abnormal access behaviors.
- Assist in enforcing secure authentication policies, including MFA and conditional access.
- Support endpoint protection solutions through configuration, monitoring, and troubleshooting.
- Validate endpoint compliance, agent health, and policy configuration across devices.
- Assist with containment and coordination of response actions during security incidents.
- Monitor and assist in configuring security controls across cloud environments.
- Ensure visibility and log collection from cloud workloads into security monitoring platforms.
- Validate cloud resources against organizational security baselines.
- Document incidents, investigations, and configuration changes accurately.
- Contribute to knowledge sharing, SOC playbooks, and process improvement initiatives.
- Participate in post-incident analysis to identify lessons learned and optimization opportunities.
Qualifications
- 2+ years of hands-on Cybersecurity / SOC experience.
- Experience with SIEM and EDR/XDR security platforms.
- Knowledge of network security, IAM, and endpoint protection.
- Experience working with Azure and/or GCP cloud environments.
- Familiarity with incident response, threat detection, and MITRE ATT&CK.
- Advanced English proficiency.
Additional Information
About Us
We Are Engineered Different.
At Applaudo, talented people design, build, and scale meaningful, AI-powered solutions that create real business impact. As an AI-native organization, we collaborate across design, development, cloud, data, and artificial intelligence to turn ideas into scalable products that transform how companies operate, make decisions, and grow.
We are building a high-performance culture grounded in five values: Empowering Excellence, Collaborative Teamwork, Unsolicited Respect, Consistent Transparency, and Efficient Communication. These define how we work, how we support one another, and how we hold ourselves accountable.
Applaudo is a place for people who want to learn fast, take ownership, and work alongside strong teams they are proud to belong to. Joining us means being part of an organization that is evolving intentionally, investing in modern ways of working, and leading AI-native transformation at scale.
Skills
Explore related jobs
More jobs at Applaudo Studios
- Solution Architect – Data Integration (Part-Time Contract)San José, San José Province
- Senior .NET Engineer – AzureMexico City, CDMX
- Senior Functional QA Engineer – SaaS Billing IntegrationsMexico City, CDMX
- QA Functional Analyst (Temporary)Cali, Valle del Cauca
- Senior Data Engineer (GCP & Data Integration)Lima, Callao Region
- Data Integration EngineerLima, Callao Region
Similar Azure jobs
Jobs in San Salvador
- Ejecutivo de ventas Paracentral IIGrupo Mariposa · SAN SALVADOR, SOYAPANGO
ASESOR COMERCIAL DE ENERGIAElectronics Shop, S.A. · San Salvador, El Salvador- Ejecutivo de Ventas Paracentral IGrupo Mariposa · SAN SALVADOR, El Salvador
- Trainer - Financial Services program.GC Services Limited Partnership d/b/a InteLogix · San Salvador, SLV
- SupervisorGC Services Limited Partnership d/b/a InteLogix · San Salvador, SLV
- Quality AnalystGC Services Limited Partnership d/b/a InteLogix · SLV_Site_San Salvador
Browse these categories
Market data for this role
All reports →- SeriesRole reportsOne role family at a time: how many openings, what changed this week, who is hiring, what it pays.
- SeriesSalary reportsWhat employers publish in job postings, by level and workplace. Not self-reported pay.
- Market overviewState of tech hiring, September 2026: up 4.8%Tech hiring rose 4.8% month over month in September 2026, with 411,122 new listings. Customer support and account executive roles led the growth.