The Senior Cyber Security Engineer, is a senior technical leader within the Security Operations function, responsible for advanced analytics, complex investigations, tool engineering, and driving Security Operations Center (SOC) capability maturity. This role proactively identifies and responds to sophisticated threats, advances detection capabilities, and guides the SOC toward higher automation, intelligence‑driven operations, and continuous improvement aligned with industry best practices and Gartner L4 maturity. Reports to: Cyber Security Director.
JOB DUTIES:
- Continuously assess emerging threats and evaluate SOC tools, architectures, and workflows for improvement.
- Recommend and implement standardized, scalable approaches for SOC technologies and processes.
- Develop and enhance SLAs, KPIs, and operational reporting for security tooling and SOC effectiveness.
- Maintain and enhance SOC policies, documentation, and procedures.
- Lead identification, investigation, and remediation of advanced security events and incidents.
- Ensure audit trails and evidence-handling standards support incident investigation and regulatory requirements.
- Develop cybersecurity policies and DLP standards aligned with organizational risk posture.
- Manage and investigate data‑loss events to ensure risks are mitigated.
- Execute and enforce security policy, exception management, and risk controls.
- Provide Tier 3 technical escalation support for SOC incidents and engineering issues.
- Collaborate closely with architecture, network, data center, HR, Legal, and third parties during investigations.
- Lead and contribute to complex cybersecurity and SOC modernization projects.
- Mentor and develop SOC engineers and analysts to strengthen capabilities.
- Provide leadership input into planning, deployment, and optimization of new and existing security initiatives.
- Lead SIEM, SOAR, and XDR engineering, correlation rule development, and detection content optimization.
- Drive automation design and orchestration to increase SOC efficiency and reduce response times.
- Lead deep‑dive threat hunting, hypothesis‑driven investigations, and adversary simulation.
- Guide cloud‑native security monitoring and detection engineering.
YOU MUST HAVE:
- Minimum 5 years of cybersecurity or SOC experience.
- Excellent documentation and communication skills.
- Certifications: GSEC, Security+, CISSP (preferred or in progress).
- Deep understanding of network protocols, IDS/IPS, SIEM, firewalls, proxies, and DLP technologies.
- Strong understanding of incident response frameworks and advanced threat actor behaviors.
- Ability to prioritize in a dynamic, fast‑paced environment.
- Advanced written and verbal English communication skills.
WE VALUE:
- Experience with modern SOC engineering (SOAR automation, XDR implementation, cloud monitoring).
- Strong experience developing detection rules, tuning alerts, and engineering log ingestion pipelines.
- Proven ability to lead investigations involving advanced persistent threats (APTs).
- Additional certifications (GCIA, GCFE, GDAT, GCTI, etc.).
BEHAVIORAL COMPETENCES:
- Ability to lead and influence across teams and stakeholders.
- Strong adaptability, decision-making, and urgency in high‑pressure environments.
- Exceptional communication, collaboration, and mentorship abilities.
- Ability to absorb and apply new technologies quickly.
WHAT'S IN IT FOR YOU?
- Benefits that go beyond Mexican labor law, ensuring your well-being and peace of mind.
- A collaborative and inclusive work environment where your contributions are valued.
- Opportunities for continuous professional growth and skill development through training, mentoring, and challenging projects.
- Access to cutting-edge tools, resources, and a supportive team to help you excel.
- The chance to work with a global, innovative company shaping the future in its industry.
#LI-AM2
#LI-HYBRID
About UsResideo is a global leader in smart home and building solutions, with trusted brands including Honeywell Home, First Alert, and Resideo helping people feel more comfortable, secure, connected, and in control every day. Our products and technologies are found in more than 150 million homes and businesses worldwide. From intelligent climate solutions to security, sensing, water, and connected home technologies, Resideo develops and manufactures products designed to simplify everyday life and help protect what matters most. Our global teams span engineering, manufacturing, software, product management, supply chain, customer experience, and more — all working together to shape the future of connected living through innovation, quality, and meaningful real-world impact. At Resideo, our teams help create products and experiences that make everyday life more comfortable, secure, and connected for millions around the world. Learn more at www.resideo.com.
You can find out more about how the talent community works here: Resideo Talent Community Terms. Our recruitment privacy notice Resideo -Recruitment Privacy Notice - Dec 16 2022 describes in more detail how we process your personal data and how you can exercise your personal data rights.
If a disability prevents you from applying for a job through our website, request assistance here.
Skills Required
- Minimum 5 years of cybersecurity or SOC experience
- Deep understanding of network protocols, IDS/IPS, SIEM, firewalls, proxies, and DLP technologies
- Strong understanding of incident response frameworks and advanced threat actor behaviors
- Excellent documentation and communication skills; advanced written and verbal English
- Ability to prioritize in a dynamic, fast-paced environment
- Certifications: GSEC
- Certifications: Security+
- CISSP (preferred or in progress)
- Experience with SOAR automation, XDR implementation, and cloud monitoring
- Experience developing detection rules, tuning alerts, and engineering log ingestion pipelines
- Proven ability to lead investigations involving advanced persistent threats (APTs)
- Additional certifications (GCIA, GCFE, GDAT, GCTI, etc.)
Resideo Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Resideo and has not been reviewed or approved by Resideo.
-
Retirement Support — Feedback suggests the retirement program features a standout employer match and access to an employee stock purchase plan. These elements add meaningful long-term value to total rewards.
-
Leave & Time Off Breadth — Feedback suggests time off is generous in some salaried roles, with flexible or unlimited PTO alongside company holidays and parental leave. Actual usage appears to depend on team norms and manager support.
-
Healthcare Strength — Feedback suggests medical, dental, and vision coverage are comprehensive, complemented by wellness resources and health savings options in some plans. This establishes a solid baseline of health support across many roles.
Resideo Insights
What We Do
Resideo is a global leader in ensuring homeowners are safe, productive and comfortable in their homes. The company became an independent, publicly traded company in late 2018 as a result of Honeywell spinning off its Homes product portfolio and ADI Global Distribution businesses. Resideo’s mission is to provide its customers with integrated, simple solutions for today’s connected home.
Why Work With Us
Resideo puts people in charge of their home comfort, safety, security, and energy efficiency. We are also a top global distributor of security, fire, and low-voltage products. We work as a team of teams, where we all understand and work towards a common goal to solve challenges, serve our customers, and support the communities where we live.
Gallery







