RFQ C004645 - First Line Security Event Analyst

McBride International

Henegouwen

Sur place

EUR 45 000 - 65 000

Plein temps

14 jours+

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

McBride International is seeking a First Line Security Event Analyst for NATO Communications and Information Agency in Belgium. This role involves analyzing security events, assessing alerts, and providing remediation recommendations. Candidates should possess a university degree in a technical subject and have relevant experience in cyber security analysis.

The successful candidate will support incident handling, conduct security assessments, and present findings clearly. Experience with SIEM products like Splunk and knowledge of networking principles are essential for this position.

Qualifications

  • A university degree in a technical subject focused on IT, or equivalent experience.
  • Experience in cyber security analysis with knowledge of common network security threats.
  • Comprehensive knowledge of computer and communications security principles.

Responsabilités

  • Perform initial analysis of logs and network traffic, determine alert severity.
  • Conduct research and assessments of security events within NATO Cyber Security Centre.
  • Support the end-to-end Incident Handling process.

Connaissances

Cyber security analysis
TCP/IP networking
Windows operating systems
Linux operating systems
Security Information and Event Management (SIEM)
Log analysis
Network traffic capture analysis with Wireshark
Good written and spoken communication skills

Formation

University degree in IT or related field

Outils

Splunk
FirePower
Palo Alto Network Threat Prevention
Wireshark

Description du poste

RFQ C004645 - First Line Security Event Analyst

You will be working as a contractor for our client the NATO Communications and Information Agency (NCIA)NATO Communications and Information Agency (NCIA)NCIA was established on 1 July 2012 from a merger of several NATO entities. It has a 65-year legacy of supporting NATO operations, missions, and exercises and is on the frontlines against cyber threats, protecting NATO's networks 24/7. NCIA provides expertise and services that are critical to NATO's ability to fulfill its core tasks of consultation, collective defence, and crisis management.

Job Description

As a First Line Security Event Analyst (FLSEA), you will perform initial analysis of logs and network traffic, determine alert severity and escalates when required. You will collate information and present findings in a clear, structured format, providing remediation recommendations and first line response where applicable. Your main responsibilities will be to:

  • Conduct research and assessments of security events within NATO Cyber Security Centre (NCSC) team
  • Provide analysis of firewall, IDS, anti-virus and other network sensor–produced events and present findings
  • Appropriately leverage the comprehensive extended toolset (e.g. Log Collection, Intrusion Detection, Packet Capture, VA, Network Devices) for enhancing investigations
  • Support the end‑to‑end Incident Handling process
  • Support threat intelligence sharing and block list management activities
  • Propose optimisations and enhancements which help to maintain and improve NATO's Cyber Security posture
Requirements

Essential education, experience, and training:

  • A university degree in a technical subject with a focus on Information Technology (IT), obtained from a nationally recognised/certified institution in addition to a minimum of 1 year experience in the field of cyber security analysis. The lack of a degree may be compensated by at least 3 years of relevant experience in field of cyber security analysis. Similarly, candidate's lacking experience can compensate by demonstrating a high level of knowledge in the field of cybersecurity.
  • Comprehensive knowledge of the principles of computer and communications security including knowledge of TCP/IP networking, Windows and Linux operating systems.
  • Broad understanding of common network security threats and mitigation techniques.
  • Experience with Security Information and Event Management products (SIEM) – e.g. Splunk.
  • Experience with analysis of Network Based Intrusion Detection Systems (NIDS) events– e.g. FirePower, Palo Alto Network Threat Prevention.
  • Experience with log analysis from a variety of sources (e.g. Firewalls, Proxies, Routers, DNS and other security appliances).
  • Experience with network traffic capture analysis using Wireshark.
  • Logical approach to analysis and ability to perform structured security investigations using large, complex data sets.
  • Good written and spoken communication skills.
  • Ability to work independently and as part of a team.

Desirable education, experience, and training:

  • Holding industry leading certifications in the area of cyber security such as GCIA, GNFA, GCIH.
  • Proficiency in Intrusion/Incident Detection and Handling.
  • Experience in the following areas:
  • Full Packet Capture systems – e.g. RSA/NetWitness.
  • Endpoint Detection and Response Systems (EDR).
  • Computer forensics tools (stand alone, online and network).
  • Military communication systems and networks.
Education

Valid Personnel Security Clearance (PSC) at level NATO Secret

Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Cyber Security Firewall.
Cyber Security Firewall.

Spektrum • Henegouwen

Sur place
EUR 60 000 - 90 000
C005314 Senior Cyber Security Specialist (NS) - THU 10 Sep
C005314 Senior Cyber Security Specialist (NS) - THU 10 Sep

EMW • Henegouwen

Hybride
EUR 70 000 - 100 000
Cybersecurity Technician - Network Operations
Cybersecurity Technician - Network Operations

Spektrum • Henegouwen

Sur place
EUR 65 000 - 90 000
Cybersecurity Application Engineer
Cybersecurity Application Engineer

Spektrum • Henegouwen

Hybride
EUR 90 000 - 120 000
Teleworking up to 20%
Travel reimbursement
Security clearance
[6304] Senior Cyber Security Specialist
[6304] Senior Cyber Security Specialist

GardPass Consulting & Space • Henegouwen

Sur place
EUR 85 000 - 120 000
First Line Security Event Analyst
First Line Security Event Analyst

Nova Hunte Ltd • Henegouwen

Sur place
EUR 50 000 - 70 000
Senior Network Security Engineer
Senior Network Security Engineer

Spektrum • Henegouwen

Sur place
EUR 60 000 - 90 000
Senior Splunk Engineer
Senior Splunk Engineer

Spektrum • Henegouwen

Hybride
EUR 75 000 - 120 000
First-Line Security Event Analyst: Rapid Threat Triage
First-Line Security Event Analyst: Rapid Threat Triage

McBride International • Henegouwen

Sur place
EUR 45 000 - 65 000
[6300] CSAC Engineer
[6300] CSAC Engineer

GardPass Consulting & Space • Henegouwen

Hybride
EUR 70 000 - 95 000