Senior Information Security Operations Center Analyst

Jobtailor

Deutschland

Vor Ort

EUR 70.000 - 95.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Jobtailor is seeking a seasoned information security professional in Germany to plan and implement security measures across systems, networks and data. You will lead investigations, monitor threats, and coordinate containment and remediation with senior IT and business leaders.

Responsibilities include deep incident analysis, threat hunting, and publishing actionable intelligence. Candidates should have a Bachelor's degree and 3+ years in security administration, with cloud security experience

Qualifikationen

  • Bachelor's degree required in Information Assurance, Computer Science, Engineering, or related technical field.
  • Three or more years of experience in information security administration, offensive tactics, monitoring, and IR.
  • Three or more years of experience with security systems administration (endpoint, network, application, host-based).
  • Two years or more cloud security configuration and management experience.
  • Knowledge of incident handling procedures and intrusion analysis models.
  • Foundational knowledge to research, analyze and disseminate threat intelligence.

Aufgaben

  • Plan and implement security measures to protect computer systems, networks, and data.
  • Handle higher level security investigations and incidents.
  • Monitor network traffic for security events and triage analysis to identify security incidents.
  • Receive incidents and perform deep analysis; correlate with threat intelligence to identify threat actors and affected systems.
  • Define and execute containment, remediation, and recovery strategies.
  • Deliver cyber intelligence services to IT and business leaders.
  • Identify new threat tactics, techniques and procedures used by cyber threat actors.
  • Publish actionable threat intelligence for management.
  • Participate in threat hunting to proactively search for threats in the enterprise.
  • Create/use cases for triggering investigations in 24/7 Operations and Threat Management.
  • Act as coordinator in escalated threats/incidents for Tier 1 analysts.
  • Assist in escalated incidents including forensics and malware analysis.

Kenntnisse

Information Security
Incident Response
Threat Intelligence Analysis
Cloud Security Configuration
SOC Operations

Ausbildung

Bachelor's degree in Information Assurance, Computer Science, Engineering, or related field

Tools

Amazon Web Services
Google Cloud Platform
Microsoft Azure

Jobbeschreibung

Responsibilities
  • Responsible for planning and implementing security measures to protect computer systems, networks, and data.
  • Handle higher level security investigations and incidents.
  • Monitor network traffic for security events and perform triage analysis to identify security incidents.
  • Receive incidents and perform deep analysis; correlate with threat intelligence to identify the threat actor, nature of the attack and systems or data affected.
  • Define and execute on strategy for containment, remediation, and recovery.
  • Deliver cyber intelligence services and material to information technology and business leaders.
  • Identify new threat tactics, techniques and procedures used by cyber threat actors.
  • Publish actionable threat intelligence for business and technology management.
  • Participate in threat hunting activities to proactively search for threats in the enterprise environment.
  • Create and maintain use cases for recurring investigation/incident triggers in support of the 24/7 Cyber Threat Operations and Cyber Threat Management program.
  • Act as coordinator in the event of escalated cyber threats/incidents for Tier 1 analysts.
  • Assist in escalated computer security incidents and cyber investigations including computer forensics, network forensics, root cause analysis and malware analysis.
Requirements
  • Bachelor's degree required in Information Assurance, Computer Science, Engineering, or related technical field.
  • Three (3) years or more experience in information security administration, offensive tactics, monitoring, and IR.
  • Three (3) years or more experience related security systems administration with endpoint, network, application, and host-based security solutions.
  • Two (2) years or more Cloud computing (e.g., Amazon Web Services, Google Cloud Platform or Microsoft Azure) security configuration and management experience preferred.
  • Knowledge of the incident handling procedures and intrusion analysis models.
  • Foundational knowledge of processes, procedures and methods to research, analyze and disseminate threat intelligence information.
  • Demonstrated advanced knowledge of cyber security operations with a focus area in two or more of the following: Security Operations Center (SOC) operations, Intrusion Detection/Intrusion Prevention Systems (IDS/IPS), Security Information and Event Management (SIEM) use, threats (including Advanced Persistent Threat (APT), insider) vulnerabilities, and exploits; incident response, investigations and remediation.
  • Broad knowledge of general IT with a focus area in two or more of the following areas: operating systems, networking, computer programing, web development or database administration.
Core Competencies

Demonstrates expertise in planning and implementing security measures, incident response, and threat intelligence analysis. Proficient in managing security systems and conducting investigations to protect computer systems and networks.

Highest-signal resume keywords
  • Information Security Administration
  • Incident Response
  • Threat Intelligence Analysis
  • Cloud Security Configuration
  • Security Operations Center (SOC) Operations
Hard Skills
  • Cyber Security Operations
  • Intrusion Detection/Intrusion Prevention Systems (IDS/IPS)
  • Security Information and Event Management (SIEM)
  • Computer Forensics
  • Network Forensics
  • Root Cause Analysis
  • Malware Analysis
  • Endpoint Security Solutions
  • Network Security Solutions
  • Application Security Solutions
Industry Keywords
  • Threat Actor
  • Advanced Persistent Threat (APT)
  • Incident Handling Procedures
  • Threat Hunting
  • Cyber Threat Operations
  • Cyber Threat Management
Tools & Technologies
  • Amazon Web Services
  • Google Cloud Platform
  • Microsoft Azure
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

IT Security Analyst – Level 1
IT Security Analyst – Level 1

Jobtailor • Deutschland

Hybrid
EUR 45.000 - 65.000
Security Operations Center Specialist
Security Operations Center Specialist

Jobtailor • Deutschland

Remote
EUR 70.000 - 95.000
Cybersecurity Operations – Incident Response Lead
Cybersecurity Operations – Incident Response Lead

Jobtailor • Deutschland

Hybrid
EUR 90.000 - 130.000
Hybrid work model
Threat Management & Investigations Analyst
Threat Management & Investigations Analyst

Bogaard Group International, Inc. • Deutschland

Remote
EUR 80.000 - 110.000
Offensive Security Analyst
Offensive Security Analyst

Sonoco • Hub

Vor Ort
EUR 60.000 - 85.000
Systems Engineer - SOC
Systems Engineer - SOC

Grohe • Deutschland

Vor Ort
EUR 60.000 - 90.000
Cloud Security Engineer
Cloud Security Engineer

Jobtailor • Deutschland

Vor Ort
EUR 90.000 - 130.000
Security training
Cybersecurity Incident Response Engineer
Cybersecurity Incident Response Engineer

Jobtailor • Deutschland

Remote
EUR 90.000 - 130.000
IT Security Analyst, 3rd Level
IT Security Analyst, 3rd Level

Jobtailor • Köln

Vor Ort
EUR 60.000 - 90.000
IS Principal Security Architect
IS Principal Security Architect

Jobtailor • Deutschland

Hybrid
EUR 130.000 - 190.000