--- title: 'CyberSecurity Engineer | USM Anywhere at Avertium' canonical: 'https://feeny.ai/job/cybersecurity-engineer-usm-anywhere-avertium-guadalajara-fkga67d7ktrw' type: 'job' last_seen: '2026-09-13' --- # CyberSecurity Engineer | USM Anywhere at Avertium - **Company:** Avertium - **Location:** Guadalajara, Mexico - **Employment:** full-time - **Work type:** remote - **Posted:** 2026-08-19 - **Last confirmed live:** 2026-09-13 - **Apply:** https://jobs.lever.co/avertium/b8eed3c9-a43e-4683-9201-b8cfc78fd218 ## Job description Avertium is a cyber fusion and MXDR leader, delivering comprehensive security and compliance services to mid-market and enterprise customers. Our unique “Assess, Design, Protect” methodology addresses and improves security strategy, reduces attack surface risk, strengthens compliance, and provides continuous threat protection. Avertium maximizes customer security investments and enables customers to focus on growth, innovation, and business outcomes, while assuring that their security infrastructure is resilient and adaptive to evolving threats. That’s why customers trust Avertium to deliver better security, improved compliance, and greater ROI. Avertium is seeking a Senior Cybersecurity Engineer with strong hands-on experience with USM Anywhere and modern SIEM/XDR technologies. This role will focus on designing, implementing, optimizing, and supporting security monitoring and response solutions across customer environments. The ideal candidate understands how SIEM and XDR technologies work together to provide centralized visibility, threat detection, investigation, incident response, and security automation. You will serve as a senior technical resource for complex security issues, help improve the effectiveness of our security monitoring capabilities, and support the continued evolution and scalability of our security operations. While USM Anywhere is the primary platform for this role, candidates with strong experience in other major SIEM/XDR platforms such as Microsoft Sentinel, Splunk, FortiSIEM, LogRhythm, or comparable technologies will also be considered. Responsibilities: - Design, implement, configure, and optimize USM Anywhere SIEM/XDR environments. - Configure and manage security monitoring, log collection, data sources, integrations, agents, and supporting infrastructure. - Develop, tune, and maintain detections, correlation rules, alerts, dashboards, and other security monitoring capabilities. - Support threat detection, investigation, and incident response using SIEM and XDR technologies. - Leverage endpoint, network, cloud, application, and other security telemetry to improve threat visibility and detection. - Troubleshoot complex SIEM, XDR, security, infrastructure, and networking issues and serve as a technical escalation point for other engineers. - Support integrations between USM Anywhere and endpoint, cloud, network, identity, and other security technologies. - Develop automation and scripting to improve operational efficiency and enhance security response capabilities. - Identify opportunities to improve detection quality, system performance, reliability, scalability, and operational processes. - Support the architecture and deployment of new SIEM/XDR environments and customer solutions. - Create and maintain technical documentation, architecture diagrams, procedures, and operational standards. - Collaborate with Security Operations, Engineering, Service Delivery, and other technical teams to resolve complex customer and operational issues. - Participate in change management and CAB processes. - Stay current with emerging SIEM, XDR, threat detection, automation, and security operations technologies. Required Qualifications: - 5+ years of overall IT experience, including at least 2 years in cybersecurity engineering, security operations, or a related security role. - 2+ years of hands-on experience implementing, administering, troubleshooting, or engineering SIEM and/or XDR solutions. - Strong hands-on experience with USM Anywhere or a comparable enterprise SIEM/XDR platform. - Strong understanding of SIEM concepts, including log collection, normalization, correlation, alerting, detection, dashboards, and security event analysis. - Experience developing, tuning, or troubleshooting security detections and understanding the underlying data supporting those detections. - Strong technical troubleshooting and advanced problem-solving skills. - Experience with security automation or scripting using PowerShell, Python, Bash, SQL, or similar technologies. - Foundational understanding of cloud security and infrastructure in AWS and/or Azure. - Working knowledge of networking concepts, including TCP/IP, DNS, VPNs, and IPsec. - Strong written and verbal communication skills. - #LI-CS1 Preferred Qualifications: - Advanced experience with USM Anywhere and/or related LevelBlue security technologies. - Experience with Open XDR and security orchestration, automation, and response (SOAR) capabilities. - Experience with Microsoft Sentinel, SentinelOne, Splunk, FortiSIEM, LogRhythm, or other major SIEM/XDR platforms. - Experience working in an MSSP, managed security services, or professional services environment. - Experience supporting multiple customer environments or multitenant security platforms. - Strong Windows and Linux administration experience. - Experience with SQL, Elasticsearch, or other security data platforms. - Familiarity with MITRE ATT&CK and the NIST Cybersecurity Framework. - Relevant cybersecurity or vendor certifications. - Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field, or equivalent professional experience. ## About Avertium ## Company Overview - **One-liner**: Avertium is a managed cybersecurity and compliance services provider that delivers end-to-end security solutions, including Managed XDR, attack surface management, and AI safety, to mid-market and enterprise organizations. - **Entity Type**: Private (backed by Sunstone Partners) - **Headquarters**: Knoxville, Tennessee, United States - **Founded**: 2019 - **Founders**: Not publicly available (led by CEO Vicente Velez) ## Core Business - **Primary Industry**: Computer and Network Security / Managed Security Services - **Target Customers**: Mid-market and enterprise organizations across 15+ industries - **Mission/Purpose**: To deliver a more comprehensive, programmatic approach to cybersecurity that drives action on the ground and influence in the boardroom, enabling clients to focus on growth and innovation while ensuring resilient security infrastructure. ## Products & Services - **Managed XDR & Security Operations**: 24/7 co-managed threat detection, automated response, and continuous monitoring via Cyber Fusion Centers, including Microsoft Defender XDR and Sentinel integration. - **Attack Surface Management**: Consolidation of tools, posture enhancement, and continuous vulnerability testing to reduce risk and exposure. - **Governance, Risk & Compliance (GRC)**: Expert-led services for audit, assessment, framework design (PCI DSS, ISO 27001, SOC 2, NIST, HIPAA, GDPR), and continuous compliance management. - **AI Safety & Security**: Readiness and deployment services for Microsoft Copilot for Security, enabling security teams to leverage generative AI at machine speed. - **Identity & Endpoint Management**: Configuration and management of Microsoft Entra ID, Active Directory, and Intune, with professional and MXDR support. - **Data Security, Compliance & Privacy**: Solutions using Microsoft Purview and E5, combined with Avertium’s regulatory expertise. ## Market Standing - **Valuation**: Not disclosed (Privately held) - **Key Metric**: Annual Revenue of $34.4M (estimated); Total Funding not publicly disclosed (backed by Sunstone Partners) - **Notable Investors/Partners**: Sunstone Partners (parent company); deep partnership with Microsoft (Microsoft security solutions, Defender, Sentinel, Purview, Copilot) - **Growth Signals**: Over 1,200 customers across 15 industries; 900k+ devices under management; 400+ certifications; 24/7/365 Cyber Fusion Centers; LinkedIn followers grew 29.5% year-over-year. ## Competitive Advantages - **Assess, Design, Protect Methodology**: A proprietary, flexible framework that adapts to any stage of a client’s security and compliance journey. - **Microsoft Ecosystem Depth**: Specialized expertise in configuring and managing the full Microsoft security stack (Defender, Sentinel, Entra, Purview, Copilot), differentiating them from generalist MSSPs. - **Human + Machine Fusion**: Combines 24/7 human expertise in Cyber Fusion Centers with integrated automation and threat intelligence, not just out-of-the-box tools. - **Compliance as a Competitive Advantage**: Turns compliance burdens into strategic assets through expert-led, continuous management. ## Strategic Focus - **Deepening Microsoft Alliance**: Maximizing ROI for Microsoft security investments and leading adoption of Microsoft Copilot for Security. - **AI Readiness**: Helping clients prepare IT environments and teams for generative AI security tools. - **Mid-Market Domination**: Targeting mid-to-large enterprises with a comprehensive, programmatic approach that larger consultancies may overlook. - **Continuous Innovation**: Iterating on services to meet evolving threats, with a focus on attack surface management and AI safety. ## Why Work Here - **Culture & Mission**: Emphasizes a team-oriented, "no weakness" ethos where employees tackle complex security challenges as a unit. The company values digging deeper and asking tough questions. - **Growth & Learning**: Strong focus on continuous learning and skills evolution in a fast-changing cybersecurity landscape. Career growth is actively encouraged. - **Remote/Hybrid Policy**: Hybrid and remote roles available (e.g., Security Solutions Architect is remote, US-based; some roles are on-site in Knoxville or Guadalajara, Mexico). - **Employee Ratings**: 4.2/5.0 on LinkedIn (69 reviews), with strong scores for Work-Life Balance (4.6) and Compensation (4.3). - **Global Presence**: Offices in Knoxville (HQ), Phoenix, and Guadalajara, Mexico, with a distributed workforce across the US, Mexico, and UK. ## Sources 1. [avertium.com](https://www.avertium.com/) 2. [jobs.lever.co](https://jobs.lever.co/avertium) 3. [linkedin.com](https://co.linkedin.com/company/avertium-cybersecurity) 4. [avertium.com/leadership-team](https://www.avertium.com/leadership-team) 5. [builtin.com](https://builtin.com/company/avertium) ## Other roles at Avertium - [CyberSecurity Analyst](https://feeny.ai/job/cybersecurity-analyst-avertium-guadalajara-19png8z8qq3t) — Guadalajara, Mexico - [Project Manager - Resource Management | Professional Services](https://feeny.ai/job/project-manager-resource-management-professional-services-avertium-united-states-d1001wwrqfve) — United States - [CyberSecurity Engineer | Microsoft](https://feeny.ai/job/cybersecurity-engineer-microsoft-avertium-united-states-p0tz6gxpjh2s) — United States - [CyberSecurity Consultant | Contractor](https://feeny.ai/job/cybersecurity-consultant-contractor-avertium-united-states-eea2pdpwmk7f) — United States - [Service Delivery Manager](https://feeny.ai/job/service-delivery-manager-avertium-united-states-cgsvhvt7kmjz) — United States - [CyberSecurity Specialist](https://feeny.ai/job/cybersecurity-specialist-avertium-remote-trwkrrqxrq53) - [Account Executive](https://feeny.ai/job/account-executive-avertium-united-states-v6jm31kyv1th) — United States - [CyberSecurity Consultant | Microsoft Azure](https://feeny.ai/job/cybersecurity-consultant-microsoft-azure-avertium-united-states-nmtjqbf5nyzk) — United States - [Senior Manager, Cyber Fusion Center](https://feeny.ai/job/senior-manager-cyber-fusion-center-avertium-united-states-r9vpfk9qpsz0) — United States - [CyberSecurity Engineer | Microsoft](https://feeny.ai/job/cybersecurity-engineer-microsoft-avertium-guadalajara-dt1dyh3rnnav) — Guadalajara, Mexico