Aktiviere Job-Benachrichtigungen per E-Mail!

Cyber Security Specialist - Threat Detection Engineer (f/m/d)

Deutsche Börse Group

Frankfurt

Vor Ort

EUR 55.000 - 90.000

Vollzeit

Vor 4 Tagen
Sei unter den ersten Bewerbenden

Erhöhe deine Chancen auf ein Interview

Erstelle einen auf die Position zugeschnittenen Lebenslauf, um deine Erfolgsquote zu erhöhen.

Zusammenfassung

An established industry player is looking for a Cyber Security Specialist to enhance threat detection capabilities. In this pivotal role, you'll assess the organization's security posture, develop detection logic, and collaborate with various teams to optimize security measures. Your expertise in threat management frameworks and strong problem-solving skills will be crucial in identifying and mitigating evolving threats. Join a dynamic team that values collaboration and innovation, and contribute to protecting critical information assets in a highly regulated environment. This is a fantastic opportunity to make a significant impact in the field of cyber security.

Qualifikationen

  • Solid IT security background with knowledge of threat detection.
  • Experience in CERT or SOC teams is a plus.

Aufgaben

  • Assess security posture against evolving threats and propose enhancements.
  • Develop detection use cases based on MITRE ATT&CK.
  • Collaborate with Red and Blue Teams to refine detection strategies.

Kenntnisse

Threat Detection
Security Monitoring Technologies
Cyber Threat Management
Problem-Solving Skills
Scripting (Python, Bash, Perl)
Collaboration

Ausbildung

Bachelor's Degree in Cyber Security or related field
Technical Certifications (GIAC, OSCP, CEH)

Tools

SIEM
EDR
JIRA
JIRA Service Manager

Jobbeschreibung

Cyber Security Specialist - Threat Detection Engineer (f/m/d)

The Group Security department directly contributes to the execution of the Deutsche Börse Group's information security strategy. As a central service provider for the Group entities, Group Security is responsible for protecting information assets in terms of safety, integrity, confidentiality, authenticity, and availability by enforcing information security controls based on relevant regulatory requirements and following the international standard ISO/IEC 27000-series on the Information Security Management System.

Your area of work:

The Cyber Defense Framework team operates in close cooperation with CERT, SOC, Threat Intelligence, and Cyber Analytics teams (responsible for SIEM use case implementation). The team is responsible for defining requirements, setting strategic goals, and conducting maturity evaluations to enhance threat detection capabilities. This includes defining threat landscapes, Purple Teaming, Threat Hunting, and Threat Management structured against MITRE.

We are seeking a Threat Detection Engineer to improve threat landscape analysis, use case coverage, and detection efficacy. The candidate will assess current detection capabilities, identify gaps, and develop new detection logic to address evolving threats. Collaboration with security teams to analyze attack trends, optimize security use cases, and improve threat visibility across on-premises and cloud environments is essential.

Your responsibilities:
  • Assess the organization’s security posture against evolving threats and propose enhancements.
  • Develop and refine detection use cases based on MITRE ATT&CK and real-world attack scenarios.
  • Map existing detections to attack frameworks to identify coverage gaps.
  • Develop advanced detection logic and algorithms to identify suspicious activity or threats.
  • Perform detection gap assessments across network, endpoint, cloud, and application layers.
  • Understand threat scenarios and actor techniques to perform red team/penetration testing and suggest remediations.
  • Profile threat actors and understand their operations.
  • Translate threat actor tactics into defensive strategies and threat hunting procedures.
  • Support remediation of external threats by understanding attack methods.
  • Collaborate with Red and Blue Teams to refine detection and response strategies.

Your profile:

  • Solid IT security background with broad knowledge of threat detection and security monitoring technologies (e.g., SIEM, EDR, Cloud Security).
  • Strong understanding of cyber threats and detection measures.
  • Familiarity with cyber threat management frameworks, especially MITRE ATT&CK.
  • Deliverable-oriented with strong problem-solving skills, adaptable to complex, highly regulated environments.
  • Team player willing to collaborate across locations.
  • Experience in CERT or SOC teams and threat detection investigations is a plus.
  • Good report-writing skills for threat modeling exercises.
  • Scripting skills (e.g., Python, Bash, Perl) are advantageous.
  • Experience with JIRA and JIRA Service Manager is beneficial.
  • Technical certifications in Red Teaming, Penetration Testing, Purple Teaming, or Threat Hunting (e.g., GIAC, OSCP, CEH) are a plus.
  • Experience with public cloud platforms (GCP preferred, Azure, AWS).
  • Proficiency in English; French or German skills are a plus.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.