Manage security capabilities and lead complex L3 incident response and preventive engineering, ensuring the outsourced SOC’s detections and escalations translate into structural improvements across identity, endpoint, email, DLP, cloud, DevOps, Product and AI security.
The Senior role designs and drives resilient security solutions and reduces exposure surface by turning repeated incidents, vulnerabilities, and audit findings into prioritized roadmaps, automation, and guardrails—balancing security, usability, and compliance.
Tasks & Responsabilities
· End-to-end ownership of one or more security capabilities/platforms: design, implement, operate, and evolve them with threats and business needs.
· Serve as L3 technical authority for complex/high-impact incidents: lead investigations, perform deep RCA, and define long-term preventive engineering actions.
· Drive exposure surface reduction by improving vulnerability management processes, prioritization, and engineering remediation patterns.
· Ensure operational excellence for anti-phishing and DLP (advanced tuning, policy design, exception governance, evidence-by-default).
· Embed security into DevOps and product environments: threat modeling facilitation, application security tooling/guardrails, and automation to shift left.
· Design and maintain AI security implementation patterns (data protection, identity controls, safe usage guardrails) aligned with compliance needs.
· Strengthen the SOC partner operating model: refine escalation criteria, enrich context, improve runbooks, and reduce noise via engineering.
· Mentor/coach (as IC leadership) on secure engineering practices, troubleshooting methodology, and standards adoption across teams.
Requirements
Professional Experience & Studies
- Experience: 5–8 years of significant successful experience in IT infrastructure, application security and cybersecurity operations or engineering.
- Studies: Engineering degree or Master’s in IT/Security is a plus; Bachelor’s remains acceptable with strong track record (consistent with your baseline).
- Language: Professional English; strong written skills for standards and audit evidence narratives.
Certifications
Must have
- Azure Security & Governance, Sentinel/Defender, Purview, Entra IAM, Azure Security Architecture.
Nice to have
- Ethical hacking experience.
Skills & Abilities
Must have
- Strong communication, negotiation, leadership behaviors (“can do”, “team player”), problem-solving and analytical skills.
- Expert-level hands-on expertise: Azure/M365/Entra, Defender, Intune, Purview DLP/MIP, Sentinel SIEM/SOAR automation, Azure DevOps CI/CD.
- Strong networking and system foundations (Windows/Linux/AD, firewall/VPN/DNS/DHCP/Wi‑Fi) and ability to drive complex remediation.
- Strong security fundamentals: vulnerability management, OWASP, pentesting concepts, AI security; ability to turn incidents/findings into structural improvements.
- Strong scripting/automation capability (PowerShell/Python) and ability to operate with agile/Kanban.
- Knowledge of standards and governance: ITIL/ITSM, ISO27001/NIST, regulatory context (GDPR/TISAX).
Nice to have
- Automotive/industrial experience; additional professional languages (French/German/Chinese).
Benefits
Biweekly Payment
IMSS
Chritsmas Bonus
Vacations by the law
Vacations bonus by the law
Food Vouchers
Gas Vouchers
Medical Insurance only for employee
Life Insurance only for employee
Skills Required
- 5-8 years experience in IT infrastructure, application security, or cybersecurity operations/engineering
- Bachelor's degree in engineering or related field (Master's in IT/Security is a plus)
- Professional English with strong written communication for standards and audit evidence
- Azure Security & Governance, Sentinel/Defender, Purview, Entra IAM, Azure Security Architecture (must-have certifications/experience)
- Ethical hacking experience
- Strong communication, negotiation, leadership and problem-solving skills
- Expert-level hands-on: Azure/M365/Entra, Defender, Intune, Purview DLP/MIP, Sentinel SIEM/SOAR, Azure DevOps CI/CD
- Strong networking and system foundations: Windows, Linux, AD, firewall, VPN, DNS, DHCP, Wi‑Fi
- Security fundamentals: vulnerability management, OWASP, pentesting concepts, AI security
- Scripting/automation capability (PowerShell, Python) and experience with agile/Kanban
- Knowledge of standards and governance: ITIL/ITSM, ISO27001, NIST, GDPR, TISAX
- Automotive/industrial security experience
- Additional professional languages (French, German, Chinese)
What We Do
A2MAC1 is the world leading provider of competitive technical benchmarking solutions across the automotive industry and beyond. It is a pioneer in the analysis and transformation of data into value, and a source of mission-critical insights into the market. With over 600 employees worldwide (Austria, Canada, China, France, Germany, India, Japan, Korea, Mexico, Thailand, Turkey, the United Kingdom, and the United States), the group’s offering is used daily by nearly 650,000 professionals from the entire automotive value chain and beyond (transportation, agriculture, appliances, etc.) for 25 years. Its unique, easy-to-use, 3D proprietary technology platform helps manufacturers optimize the design and materials of their products throughout their life cycle, with a constant focus on innovation and cost and value optimization.








