Are you energized by solving complex security challenges and helping protect environments from evolving cyber threats?
DYOPATH is looking for a SNOC Engineer III (Security) who thrives on advanced problem‑solving, technical leadership, and a commitment to operational excellence in a fast‑paced security operations environment.
Why You’ll Love Working Here- Purpose with Passion – A culture guided by the L.O.V.E. philosophy (Living Our Values Every Day).
- Grow & Thrive – Certifications, security training, and professional development opportunities.
- Award-Winning Culture – Known for outstanding service internally and externally.
- Teamwork & Respect – A collaborative, uplifting environment where achievements are celebrated.
- Aguinaldo (25 days – above legal requirement)
- Vacation + 25% premium
- IMSS + Major medical insurance (family included)
- Monthly savings fund + pantry vouchers
- Transportation assistance
- Quarterly performance bonus opportunities
- Paid life events leave (parental, marriage, bereavement)
- Location: Remote (Mexio)
- Schedule: 1st Shift (8a-5p CST); Monday through Friday
- Salary: 37,500 MXN (monthly)
- Drive continuous improvement within SNOC security operations by identifying opportunities to enhance monitoring, response workflows, automation, and operational efficiency
- Serve as the primary escalation point for complex security incidents, providing advanced technical analysis and resolution support to the SNOC engineering team.
- Support the development and maintenance of operational documentation including security runbooks, incident response procedures, investigation guides, and knowledge base articles.
- Identify and analyze potential security risks, vulnerabilities, and suspicious activity across network, system, endpoint, identity, and cloud environments, recommending remediation actions.
- Assist in strengthening security monitoring capabilities by improving detection logic, tuning alerts, and contributing to SIEM analytics rules and automation workflows.
- Provide mentorship and technical guidance to junior SNOC engineers during investigations, troubleshooting, and incident response activities.
- Support security compliance initiatives by ensuring operational activities, incident investigations, and response actions are properly documented to support audits and reporting.
- Participate in validation and testing of incident response procedures, disaster recovery plans, and operational readiness exercises.
- Act as the technical lead for high-severity security incidents, coordinating investigation activities and guiding containment, eradication, and recovery efforts.
- Perform advanced threat analysis using SIEM, EDR, identity protection, and network telemetry platforms to identify malicious or suspicious activity.
- Investigate complex security alerts and correlated incidents across endpoint, identity, email, cloud, and network security platforms.
- Develop and refine detection capabilities including SIEM analytics rules, threat hunting queries, alert enrichment logic, and automated response playbooks.
- Provide escalation support during major incidents, assisting with root cause analysis, containment strategies, and post-incident documentation.
- Collaborate with engineering, infrastructure, and client teams to implement remediation actions and long-term risk mitigation strategies.
- Support onboarding and integration of security telemetry from new platforms and security technologies into the monitoring environment.
- Ensure security investigations, incidents, and operational actions are accurately documented within ticketing and case management systems.
- Bachelor’s degree in Cybersecurity, Information Technology, or related field preferred (or equivalent experience).
- Preferred professional certifications:
- GIAC (GCIH, GCIA, GCFA)
- CompTIA CySA+ or CASP+
- Microsoft Certified: Azure Security Engineer Associate
- AWS Certified Security – Specialty
- Cisco CCNP or equivalent
- Advanced knowledge of security operations, incident investigation, and threat detection methodologies.
- Experience with SIEM and security monitoring platforms such as Microsoft Sentinel, Wazuh, SentinelOne, or similar technologies.
- Strong understanding of networking fundamentals, endpoint security, identity protection, and cloud security environments (Azure, AWS, or similar).
- Experience performing advanced log analysis, threat hunting, and alert triage across multiple telemetry sources.
- Ability to troubleshoot complex security issues and provide leadership during high-severity operational events.
- Strong written and verbal communication skills for both internal operational documentation and client-facing discussions.
- Experience improving security monitoring through detection engineering, alert tuning, and security automation.
- Familiarity with security frameworks, compliance standards, and operational security best practices.
As a SNOC Engineer III (Security), you won’t just respond to threats—you will help shape DYOPATH’s security posture. You’ll lead advanced investigations, engineer better detection capabilities, mentor teammates, and make a direct impact on protecting clients. You’ll grow your expertise while contributing to a team that values collaboration, curiosity, and continuous improvement.
This role is open to applicants in Mexico only.
Equal Opportunity Employer
DYOPATH is committed to a work environment free of all forms of discrimination. DYOPATH recruits and hires without regard to age, color, disability, gender, gender identity, genetic information, marital status, military status, national origin, race, religion, sexual orientation, veteran status, or any other legally protected characteristic. For more information about DYOPATH, please visit our website at www.dyopath.com. The above information has been designed to indicate the general nature and level of work performed by employees in this classification. It is not designed to contain or to be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of the employee assigned to this job.
Skills Required
- Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience)
- Professional security certifications (GIAC GCIH/GCIA/GCFA, CompTIA CySA+/CASP+, Azure Security, AWS Security, Cisco CCNP)
- Advanced knowledge of security operations, incident investigation, and threat detection methodologies
- Experience with SIEM and security monitoring platforms (Microsoft Sentinel, Wazuh, SentinelOne, or similar)
- Strong understanding of networking fundamentals, endpoint security, identity protection, and cloud security (Azure, AWS, or similar)
- Experience performing advanced log analysis, threat hunting, and alert triage across multiple telemetry sources
- Experience improving security monitoring through detection engineering, alert tuning, and security automation
- Ability to troubleshoot complex security issues and lead during high-severity incidents
- Strong written and verbal communication skills for operational documentation and client-facing interactions
- Familiarity with security frameworks, compliance standards, and operational security best practices
What We Do
DYOPATH, a leading Managed Service Provider (MSP) was founded to empower organizations by delivering trusted IT solutions that are grounded in accountability resulting in exceptional customer service. With locations in Houston, TX and Chicago, IL, we help our clients focus on what they do best by providing unparalleled support and services. Rob Koch, CEO of Single Path (founded 2003) and Chuck Orrico, CEO of DYONYX (founded 1996) created the opportunity to drive more value in the organizations they created by merging to form DYOPATH on March 1, 2020. By bringing together two industry leaders, the merger created one of the largest privately held MSPs in the US today. DYOPATH helps organizations across all industries manage their risk, technology and people more effectively with an unparalleled delivery of exceptional customer service.
.png)






