Information Security Analyst

Guatemala·Bogotámid
OtherInformation Security Analyst
0 views0 saves0 applied

Quick Summary

Key Responsibilities

Security Operations & Incident Response: Participate in security incident response activities, including investigation, containment, eradication, recovery, and post-incident analysis.

Requirements Summary

Create weekly and monthly reporting packs, demonstrating rolling position on vulnerabilities, threats, progress against plan on important security initiatives.

Technical Tools
OtherInformation Security Analyst

Responsibilities

~1 min read
  • Participate in security incident response activities, including investigation, containment, eradication, recovery, and post-incident analysis.

  • Monitor security alerts from different sources (SIEM, EDR, cloud logs) and respond to security incidents promptly.

  • Develop and maintain security documentation, including procedures, runbooks, and incident response plans.

  • Conduct vulnerability assessments and support penetration testing remediation efforts.

  • Contribute to the development and delivery of security awareness training for employees, being a domain authority for security best practices.

  • Work with all IT teams to ensure security is integrated into all aspects of our infrastructure and applications at the design and requirements stage.

  • Find opportunities for automation and improvement of Rainforest Alliance security posture, including exception handling of threat alerts, patches, system and software vulnerabilities.

  • Create weekly and monthly reporting packs, demonstrating rolling position on vulnerabilities, threats, progress against plan on important security initiatives.

  • Conduct risk assessments and participate in security design reviews.

  • Administer and configure Azure security services (e.g., Azure Security Centre/Defender for Cloud, Defender for Endpoint, Azure Network Security Groups, Azure Key Vault, Azure Firewall).

  • Monitor Azure environments for security threats, vulnerabilities, and misconfigurations.

  • Make sure security best practices within Azure IaaS and PaaS deployments, audit Azure resources for compliance.

  • Lead and secure Entra ID (Azure Active Directory) including Conditional Access Policies, Multi-Factor Authentication (MFA), Identity Governance, and Privileged Identity Management (PIM).

  • Monitor Entra ID for suspicious activity and unauthorised access attempts.

  • Secure Microsoft 365 services (Exchange Online, SharePoint Online, OneDrive, Teams), looking after user access, data governance, and threat protection within the Microsoft 365 ecosystem.

  • Configure and improve Microsoft 365 security features (e.g., Defender for Office365, Data Loss Prevention (DLP), Microsoft Purview + compliance policies).

  • Develop, implement, and maintain security baselines and hardening standards for endpoints (Windows, macOS, Linux).

  • Configure and handle Microsoft Entra Domain Services based Group Policies (GPOs) and equivalent Mobile Device Management (MDM) solutions for security settings.

  • Ensure secure configuration and patch management across all endpoints.

  • Administer, configure, and optimise our XDR service, currently Crowdstrike Falcon but planned for migration to Microsoft Defender XDR.

  • Monitor alerts and dashboards for endpoint security incidents and threats, perform threat hunting and incident response activities using CrowdStrike data.

  • Develop and refine custom detections and response playbooks within CrowdStrike.

  • Identify and prioritise remediation of CVE-aligned vulnerabilities
  • Provide reporting to IT leadership on progress against remediation targets
  • Notify IT teams of new high/critical vulnerabilities and coordinate remediation planning
  • Design reporting dashboards for senior IT leadership

 

  • Minimum of 3 years of hands-on experience in an information security role.

  • Experience with Azure security services and best practices.

  • Experience with Entra ID (Azure Active Directory) and Microsoft 365 security administration.

  • Experience with endpoint hardening methodologies and implementation.

  • Hands-on administration and operational experience with CrowdStrike Falcon platform.

  • Experience with security incident response and threat hunting.

  • Experience with networking concepts.

  • Familiarity with security frameworks (e.g., Cyber Essentials, NIST, ISO 27001).

 

What We Offer

~1 min read
✓Be a part of a global organization with an impactful mission and a collaborative, respectful, and accountable culture.
✓Enjoy opportunities for professional growth and career development.
✓Benefit from remote working flexibility and flexible hybrid working environment.
✓A favourable time‑off policy.
✓Prioritize your wellbeing. We have numerous ways to promote work-life balance.

 

About the Role

~1 min read

Location & Eligibility

Where is the job
Bogotá, Guatemala
On-site at the office
Who can apply
GT

Listing Details

Posted
September 30, 2026
First seen
September 30, 2026
Last seen
October 2, 2026

Posting Health

Days active
3
Repost count
0
Trust Level
56%
Scored at
October 4, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

Information Security Analyst