Please submit your CV in English. As a member of the MSS Operations team, the Security Analyst is an experienced Security professional in the Cyber Fusion Center and is dealing with escalated operational cases.
Job Responsibilities
- Analyze and respond to security events from SIEM, EDR, FWs, IDS, IPS, AV and other security data sources.
- Deliver high quality Incident Handling and investigation.
- Be the 2nd level of escalation Tier-1 Security Analysts.
- Perform on-call for Threat Monitoring and Security Device Management escalation outside of business hours.
Key Areas of Focus
- Support rules factory program in improving the global set of detection.
- Continuously improve incident templates in terms of content for the clients and in terms of automation to best support the operation.
Support Product teams to build best new services to fit with Operations capabilities (needs, scalability, efficiency).
General Responsibilities
- Adhere to policies, procedures, and security best practices.
- Mentor fellow Security Engineers and Security Analysts.
Requirements
- Self-driven, team oriented, and highly motivated professional familiar with Security Operations.
- Minimum 2 years' experience in information security managing and monitoring security devices or educational equivalent.
- Good knowledge in cyber security threats and tactics.
- Good knowledge in Cloud and OT / ICS technologies.
- Windows and Unix / Linux operating system experience.
- Experience reviewing and analyzing log data.
- Experience reviewing and analyzing network packet captures.
- Very good level of English (oral and written).
- Spanish or any other languages.