JOB DETAILS

Cyber Defense Analyst

CompanyApplaudo Studios
LocationSan Salvador
Work ModeOn Site
PostedJune 10, 2026
About The Company
2026 Google Cloud Public Sector Partner of the Year LATAM Applaudo is a nearshore AI-native partner helping ambitious enterprises transform through AI-first engineering and scalable delivery. We turn AI ambition into measurable outcomes with performance, trust, and responsible execution. Our promise is simple: AI Engineered to Transform. We combine AI-first engineering, outcome-driven partnerships, and nearshore delivery excellence to help clients move faster from idea to execution, and build systems designed to perform at scale. What makes Applaudo different is not just what we build, but how we build it. AI-First Engineering We engineer software that is inherently intelligent. Every system is designed to learn, adapt, and compound value from day one. Outcome-Driven Partnerships We measure success in business impact, not story points. Our engagement model aligns our incentives with yours. LATAM AI Talent Powerhouse We are building one of the strongest concentrations of AI-fluent engineering talent in Latin America, scaling regional excellence to global impact. Applaudo is also a high-performance culture grounded in five values: Empowering Excellence, Collaborative Teamwork, Unsolicited Respect, Consistent Transparency, and Efficient Communication. We build with high standards, real ownership, and teams you can trust. We Are Engineered Different.
About the Role

Company Description

 

 

Job Description

About You
You thrive in fast-paced environments, collaborating with IT and network teams to ensure that all security tools and platforms are properly configured, monitored, and maintained to protect the organization’s infrastructure, endpoints, and cloud environments.

You Bring to Applaudo the Following Competencies:

  • Bachelor’s Degree in Computer Science, Software Engineering, Computer Engineering, or a related field is desired, or equivalent professional experience.
  • At least 1 year of hands-on experience in a Cybersecurity or SOC role.
  • Experience with SIEM platforms (e.g., MS Sentinel, Stellar Cyber, Google SecOps).
  • Experience with EDR/XDR tools (e.g., SentinelOne, MS Defender, Cortex XDR).
  • Knowledge in security infrastructure configuration (Fortinet, Palo Alto).
  • Understanding of IAM concepts, including MS Entra ID.
  • Experience with cloud environments (GCP, Azure).
  • Familiarity with IR, threat detection, and MITRE ATT&CK framework.
  • Basic scripting/querying skills (PowerShell, Python, KQL).
  • Desired certifications: CompTIA Security+, Certified SOC Analyst (CSA), EC-Council Certified Incident Handler (ECIH).
  • Strong analytical and critical thinking skills to evaluate complex datasets and incidents.
  • Excellent communication skills, both verbal and written, for reporting and collaborating with team members.
  • Ability to work independently and under pressure while maintaining attention to detail.
  • Knowledge with Manage Engine y Microsoft Security product
  • Advanced English (required).


You Will Be Accountable for the Following Responsibilities:

  • Monitor, support, and configure SIEM and endpoint security tools to identify potential threats.
  • Correlate events across endpoints, networks, identity systems, and cloud environments.
  • Conduct initial analysis, triage, and escalation of security alerts following SOC procedures.
  • Assist in fine-tuning detection rules and improving alert accuracy and response efficiency.
  • Provide technical support and configuration assistance for security infrastructure and network controls.
  • Review logs, network activity, and events to detect suspicious behaviors or misconfigurations.
  • Collaborate with infrastructure teams to maintain secure network architecture and ensure connectivity complies with security standards.
  • Support and configure identity protection and access monitoring tools.
  • Analyze authentication patterns, privilege escalations, and abnormal access behaviors.
  • Assist in enforcing secure authentication policies such as MFA and conditional access.
  • Support endpoint protection solutions through configuration, monitoring, and troubleshooting.
  • Validate endpoint compliance, agent health, and policy configuration across devices.
  • Assist with containment and coordination of response actions during incidents.
  • Monitor and assist in the configuration of security controls within cloud environments.
  • Ensure visibility and log collection from cloud workloads into security monitoring platforms.
  • Validate compliance of cloud resources with organizational security baselines.
  • Document incidents, investigations, and configuration changes with accuracy.
  • Contribute to knowledge sharing, SOC playbooks, and process improvement initiatives.
  • Participate in post-incident analysis to identify lessons learned and optimization opportunities.

#LI-LM1

Qualifications

Provide first line response to cybersecurity incidents via detection, containment, and remediation of IT threats, thus playing a vital role in keeping Applaudo’s proprietary and sensitive information secure. Collaborate with other IT teams across Applaudo Studios to develop, maintain, and follow procedures for security event alerting, and participate in security investigations.

Additional Information

About Us

We Are Engineered Different.

At Applaudo, talented people design, build, and scale meaningful, AI-powered solutions that create real business impact. As an AI-native organization, we collaborate across design, development, cloud, data, and artificial intelligence to turn ideas into scalable products that transform how companies operate, make decisions, and grow.

We are building a high-performance culture grounded in five values: Empowering Excellence, Collaborative Teamwork, Unsolicited Respect, Consistent Transparency, and Efficient Communication. These define how we work, how we support one another, and how we hold ourselves accountable.

Applaudo is a place for people who want to learn fast, take ownership, and work alongside strong teams they are proud to belong to. Joining us means being part of an organization that is evolving intentionally, investing in modern ways of working, and leading AI-native transformation at scale.

Key Skills
SIEMEDR/XDRSecurity Infrastructure ConfigurationIAMCloud SecurityIncident ResponseThreat DetectionMITRE ATT&CKPowerShellPythonKQLAnalytical ThinkingCommunicationManage EngineMicrosoft SecurityEnglish Proficiency
Categories
Security & SafetyTechnologySoftwareEngineeringData & Analytics
Job Information
📋Core Responsibilities
Monitor and configure SIEM and endpoint security tools to detect and triage potential threats across cloud and network environments. Collaborate with IT teams to maintain secure architecture, enforce authentication policies, and document incident investigations.
📋Job Type
full time
📊Experience Level
0-2
💼Company Size
442
📊Visa Sponsorship
No
💼Language
English
🏢Working Hours
40 hours
Apply Now →

You'll be redirected to
the company's application page