Source Job

Colombia

  • Safeguard customer digital assets, sensitive data, and critical systems against cyber threats as part of the MXDR team.
  • Leverage expertise in vulnerability identification, robust security implementation, and incident response to enhance security posture.
  • Collaborate with cross-functional teams to assess risks, formulate security strategies, and ensure adherence to industry standards.

Cybersecurity SIEM Incident Response Cloud Security Scripting

20 jobs similar to Managed Services Lead Consultant, MXDR

Jobs ranked by similarity.

India

  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.
  • Support incident response, remediation, and recovery activities.

Pragmatike recruits for major international organizations, specializing in cybersecurity and cloud enterprise security. They operate a global 24/7 Cybersecurity Operations Centre with a team of security specialists across different regions.

EMEA

  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.
  • Support incident response, remediation, and recovery activities while collaborating with global cybersecurity teams.

Pragmatike is a recruitment firm that recruits on behalf of major international organizations in the cybersecurity and cloud security space. They are committed to a fair, transparent, and inclusive recruitment process, fostering a culture of diversity and global collaboration.

India

  • Act as a senior member of the SOC, independently managing and resolving security incidents end-to-end.
  • Lead incident investigations, perform root cause analysis, and drive lessons learned.
  • Collaborate with global security teams to develop and improve processes, tooling, and operational best practices.

Netrix Global provides the people, processes, and technology needed to run and scale modern, data-driven businesses that are always on and always secure. The company is consistently ranked in the CRN VAR500 as a top system integrator and fosters a culture of ownership, teamwork, and respect.

Europe

  • Monitor, triage, and investigate security alerts across SIEM, EDR, and cloud environments.
  • Analyze logs from Windows, Linux, databases, and network systems to identify and remediate threats.
  • Work with Incident Response teams to contain threats and improve detection quality.

Talan is a global consulting group specializing in innovation and business transformation through technology. With over 7,200 consultants across 21 countries and an €850M turnover, we deliver future-ready solutions in a multicultural, growth-oriented environment.

Global

  • Contribute to the development, tuning, and maintenance of security monitoring and detection capabilities across SIEM, EDR, and cloud platforms.
  • Support the onboarding, integration, and testing of security data sources and telemetry feeds.
  • Collaborate with threat intelligence and incident response teams to translate requirements into effective detection mechanisms.

Talan is an international consulting group specializing in innovation and business transformation through technology. With over 7,200 consultants in 21 countries and a turnover of €850M, they are committed to delivering impactful, future-ready solutions.

$90,000–$100,000/yr
US

  • Monitor, triage, and respond to security alerts and incidents across the security stack.
  • Engineer, implement, and maintain information security technologies such as SIEM, detection rules, and automation.
  • Collaborate with teams to promote information security culture and advise on cyber risk across the organization.

VEIC is a sustainable energy organization working toward a healthy planet, thriving people, and energy justice. The company values an inclusive culture and supports flexible work arrangements, welcoming candidates of all backgrounds.

India

  • Monitor security alerts and events to identify potential threats and vulnerabilities.
  • Detect and analyze security incidents using multiple security tools like SIEM, EDR, and IDS/IPS.
  • Respond to security incidents promptly following established procedures and perform phishing analysis.

Zscaler accelerates digital transformation so customers can be more agile, efficient, resilient, and secure with its Zero Trust Exchange platform. The company employs thousands globally and fosters a culture of ownership, collaboration, and continuous feedback.

US

  • Support the security team by monitoring and triaging security activity, investigating potential threats, and improving security operations across endpoint, network, and cloud platforms.
  • Assist with developing SIEM detection rules, analyzing security telemetry for anomalous behavior, and conducting targeted threat-hunting activities.
  • Work with vulnerability management, threat intelligence, and documentation to strengthen security practices and ensure adherence to policies.

SimSpace is an AI Proving Ground that helps organizations train, test, and outmaneuver adversaries through realistic cyber simulations. Founded in 2015 by experts from U.S. Cyber Command and MIT Lincoln Laboratory, the company fosters a culture of continuous learning and professional growth, consistently outperforming industry benchmarks in internal mobility and promotions.

US

  • Execute day-to-day implementation, monitoring, and optimization of cybersecurity systems and data pipelines.
  • Support log onboarding, normalization, and validation, as well as detection engineering and SIEM platform operations.
  • Assist in client engagements, security architecture reviews, and automation of response workflows.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. The company has over 1,300 employees and maintains a culture of collaboration and mentorship.

Australia

  • Lead security incident response in a 24/7 global rotation, managing incidents from detection through recovery.
  • Create and maintain comprehensive incident response documentation, including runbooks and procedures.
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention.

GitLab is the intelligent orchestration platform for DevSecOps, helping organizations improve developer productivity, operational efficiency, and security. With over 50 million users and a high-performance culture, GitLab values innovation, continuous knowledge exchange, and inclusion.

  • Proactively search for signs of malicious activities within network and systems.
  • Swiftly assess and prioritize security incidents to minimize potential impact.
  • Participate in incident response, analyze phishing, create user education, and dissect malware.

They are a tech pioneer offering adult entertainment and games on safe, popular platforms. With an international team of dynamic innovators, they focus on safe user experiences and community empowerment, with offices in Montreal, Austin, and Nicosia.

Global 12w maternity 12w paternity

  • Lead incident response across platforms and applications, from triage to recovery.
  • Hunt proactively for threats using system logs, user behavior, and threat intelligence.
  • Build and automate incident response workflows and strengthen detection with MITRE ATT&CK.

Xplor provides cloud-based technology solutions that help small and medium-sized businesses manage operations and get paid securely. With over 130,000 businesses in 72+ countries processing $47B annually, the company fosters a culture of simplicity, purpose, and community.

Poland

  • Lead investigation and resolution of complex cybersecurity incidents in the Security Operations Centre.
  • Analyze and correlate security events from SIEM, IDS, EDR, and other sources.
  • Conduct digital forensic investigations and provide expert guidance throughout the incident response lifecycle.

Eurofins Scientific is an international life sciences company providing analytical testing services to make life and the environment safer, healthier, and more sustainable. With over 65,000 employees across 950+ laboratories in 60 countries, they are a global leader in testing and laboratory services.

$133,000–$209,000/yr
US

  • Design and continuously improve detection and alerting controls to reduce noise and enable rapid response.
  • Build, test, and automate incident response playbooks to increase efficiency across the incident lifecycle.
  • Drive prioritization of alerts using a data-driven triage framework aligned with business impact and threat context.

Sword builds AI to heal billions, pioneering AI Care for healthcare delivery across physical therapy, women’s health, and more. With over 700,000 members and 1,000+ enterprise clients, they have raised $500 million and emphasize a culture of proactive security and AI proficiency.

US

  • Monitor security tools and analyze logs, alerts, and data for suspicious activity.
  • Investigate potential threats, determine if alerts are real incidents, and identify vulnerabilities.
  • Contain threats, remediate vulnerabilities, document findings, and report to management.

Mercury Insurance helps people reduce risk and overcome unexpected events by providing insurance solutions for over 60 years. They are a midsize employer recognized as one of America's Best Midsize Employers for 2026, fostering a collaborative and inclusive culture.

UK 5w PTO

  • Monitor networks, servers, and devices for suspicious activity and respond to priority alerts within SLAs.
  • Analyze threats, conduct incident investigations, and develop automated playbooks for handling threats outside business hours.
  • Collaborate with the InfoSec team and other departments to ensure network security and contribute to documentation and policy review.

NEC Software Solutions is part of global tech giant NEC Corporation, providing software that helps dispatch ambulances, support families, and keep trains moving. With over 3,000 employees, they work with governments, hospitals, and police forces to push technological boundaries.

LatAm

  • Design, test, and implement security configurations to meet controls within Security Platforms.
  • Collaborate with stakeholders on emerging controls and guide intake discussions with engineers.
  • Troubleshoot and respond to security platform errors or incidents, monitoring health and coverage across the enterprise.

Nir Yu is a company that focuses on technology, with a security engineering team. The company is remote-first in Latin America and values collaboration, innovation, and a customer service oriented culture.

UK Ireland

  • Lead complex incident response investigations end-to-end with minimal supervision.
  • Perform alert triage, phishing investigations, endpoint forensics, and data exfiltration analysis.
  • Mentor junior analysts and drive improvements to security processes.

Version 1 is a technology and transformation solutions provider trusted by global brands. With over 3,300 employees and €350m revenue, it has been recognized as a Great Place to Work for over a decade.

$150,000–$210,000/yr
US

  • Design, build, and maintain cybersecurity data pipelines using Cribl, managing data flows from source systems into SIEM and data lake platforms.
  • Develop and integrate connectors for security data ingestion, configure parsing, routing, and transformation, and support SIEM architecture and operations.
  • Troubleshoot complex pipeline issues, create documentation, and collaborate with cross-functional teams to ensure data accuracy, security, and performance.

Cribl is a cybersecurity and data engineering company that helps organizations manage and optimize security data pipelines for SIEM and data lake environments. As a growing company with a small team, they emphasize independent problem-solving, collaboration, and a culture that values technical excellence and clear communication.

Brazil

  • Lead the complete response lifecycle for Level 2 and Level 3 security incidents, from analysis to containment and eradication.
  • Coordinate with MSSPs, 24/7 SOC, and cross-functional teams (Legal, DPO, Communications) during critical incidents.
  • Develop and refine IR playbooks, perform DFIR investigations, and integrate automation with SOAR.

Grupo QuintoAndar is the largest real estate ecosystem in Latin America, with a diversified portfolio of brands and solutions across the housing journey. The company is valued at over USD 5.1 billion and has a Technology Hub in Portugal, fostering innovation, collaboration, and high performance.