Job Description
About You
You are a hands-on Cyber Defense Analyst who enjoys protecting complex technology environments by turning security signals into actionable insights. You are comfortable working across endpoints, networks, identity systems, and cloud environments, using security platforms to detect suspicious activity, investigate alerts, and support effective incident response.
You bring an analytical and detail-oriented mindset to cybersecurity operations and enjoy digging into logs, events, and behavioral patterns to understand what is happening and determine the appropriate response. You collaborate effectively with IT, infrastructure, and network teams, remain composed when priorities shift or incidents arise, and continuously look for opportunities to strengthen detection capabilities, security controls, and operational processes.
Note: This is a hybrid position for candidates based in San Salvador, El Salvador, and a fully remote opportunity for candidates based in other countries.
You Bring to Applaudo the Following Competencies:
- Bachelor’s Degree in Computer Science, Software Engineering, Computer Engineering, or a related field is desired, or equivalent professional experience.
- 2+ years of hands-on experience in Cybersecurity, Security Operations, or SOC environments.
- Experience with SIEM platforms such as Microsoft Sentinel, Stellar Cyber, Google SecOps, or similar solutions.
- Experience with EDR/XDR tools such as SentinelOne, Microsoft Defender, Cortex XDR, or similar solutions.
- Knowledge of security infrastructure and network security technologies, including Fortinet and Palo Alto.
- Understanding of Identity and Access Management (IAM) concepts, including Microsoft Entra ID.
- Experience working with cloud environments such as GCP and Azure.
- Familiarity with incident response, threat detection, and the MITRE ATT&CK framework.
- Basic scripting and querying skills using PowerShell, Python, KQL, or similar technologies.
- Knowledge of ManageEngine and Microsoft Security products.
- Strong analytical and critical-thinking skills to evaluate complex security events and incidents.
- Excellent verbal and written communication skills for reporting and cross-functional collaboration.
- Ability to work independently and under pressure while maintaining strong attention to detail.
- Advanced English proficiency.
Preferred Certifications:
- CompTIA Security+.
- Certified SOC Analyst (CSA).
- EC-Council Certified Incident Handler (ECIH).
You Will Be Accountable for the Following Responsibilities:
- Monitor, support, and configure SIEM and endpoint security tools to identify potential threats.
- Correlate events across endpoints, networks, identity systems, and cloud environments.
- Conduct initial analysis, triage, and escalation of security alerts following SOC procedures.
- Assist in fine-tuning detection rules to improve alert accuracy and response efficiency.
- Provide technical support and configuration assistance for security infrastructure and network controls.
- Review logs, network activity, and security events to identify suspicious behavior or misconfigurations.
- Collaborate with infrastructure teams to maintain secure network architecture and ensure connectivity complies with security standards.
- Support and configure identity protection and access-monitoring tools.
- Analyze authentication patterns, privilege escalations, and abnormal access behaviors.
- Assist in enforcing secure authentication policies, including MFA and conditional access.
- Support endpoint protection solutions through configuration, monitoring, and troubleshooting.
- Validate endpoint compliance, agent health, and policy configuration across devices.
- Assist with containment and coordination of response actions during security incidents.
- Monitor and assist in configuring security controls across cloud environments.
- Ensure visibility and log collection from cloud workloads into security monitoring platforms.
- Validate cloud resources against organizational security baselines.
- Document incidents, investigations, and configuration changes accurately.
- Contribute to knowledge sharing, SOC playbooks, and process improvement initiatives.
- Participate in post-incident analysis to identify lessons learned and optimization opportunities.
- 2+ years of hands-on Cybersecurity / SOC experience.
- Experience with SIEM and EDR/XDR security platforms.
- Knowledge of network security, IAM, and endpoint protection.
- Experience working with Azure and/or GCP cloud environments.
- Familiarity with incident response, threat detection, and MITRE ATT&CK.
- Advanced English proficiency.
About Us
We Are Engineered Different.
At Applaudo, talented people design, build, and scale meaningful, AI-powered solutions that create real business impact. As an AI-native organization, we collaborate across design, development, cloud, data, and artificial intelligence to turn ideas into scalable products that transform how companies operate, make decisions, and grow.
We are building a high-performance culture grounded in five values: Empowering Excellence, Collaborative Teamwork, Unsolicited Respect, Consistent Transparency, and Efficient Communication. These define how we work, how we support one another, and how we hold ourselves accountable.
Applaudo is a place for people who want to learn fast, take ownership, and work alongside strong teams they are proud to belong to. Joining us means being part of an organization that is evolving intentionally, investing in modern ways of working, and leading AI-native transformation at scale.
Skills Required
- 2+ years of hands-on experience in cybersecurity, security operations, or SOC environments
- Experience with SIEM platforms such as Microsoft Sentinel, Stellar Cyber, Google SecOps, or similar
- Experience with EDR/XDR tools such as SentinelOne, Microsoft Defender, Cortex XDR, or similar
- Knowledge of security infrastructure and network security technologies, including Fortinet and Palo Alto
- Understanding of Identity and Access Management concepts, including Microsoft Entra ID
- Experience working with GCP and/or Azure cloud environments
- Familiarity with incident response, threat detection, and the MITRE ATT&CK framework
- Basic scripting and querying skills using PowerShell, Python, KQL, or similar technologies
- Knowledge of ManageEngine and Microsoft Security products
- Advanced English proficiency
- Bachelor's degree in Computer Science, Software Engineering, Computer Engineering, or a related field, or equivalent professional experience
- CompTIA Security+ certification
- Certified SOC Analyst certification
- EC-Council Certified Incident Handler certification
What We Do
We are a Nearshore digital solutions company powered by our LATAM based tech talent. Our specialties include Digital Transformation, Web and Mobile Development, Cloud Computing, AI, and Machine Learning, among others. We are committed to delivering high-quality software solutions that not only are scalable and dependable but also future proof. We accelerate our customers digital roadmap by leveraging our 10 years of experience building custom digital solutions, augmenting our clients' teams, and reducing time-to-market. Our Vision: Code that changes lives; has made us believe that the power of innovation can change the world. Contact us to see how we can help you achieve your business goals. www.applaudo.com We are hiring! We are looking for diverse and talented professionals around the world, who share our commitment to making a positive impact on those surrounding us. Working hand in hand to develop our skills, we will continue daring each other to reach new horizons and overcoming barriers. Visit our Jobs tab to see the multiple open positions waiting for you. Apply now and discover why Applaudo is the Best Place to Code.







