L2 SOC Analyst

Integrity360

Paris

Sur place

EUR 50 000 - 75 000

Plein temps

Il y a 7 jours
Soyez parmi les premiers à postuler

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

Integrity360 is a leading cybersecurity specialist hiring a Security Analyst to analyse alerts, investigate threats, and provide actionable insights across IT/OT environments. You will work in a dynamic SOC, handling incidents, trend analysis and customer reporting with potential on-call duties.

The role requires experience with SIEM, IPS and DLP, plus knowledge of OT networks and industrial protocols. A strong focus on proactive client services and tool recommendations is essential.

Qualifications

  • Experience analysing security alerts and incidents using defined investigation processes.
  • Proven ability to correlate data from multiple sources to identify threats.
  • Knowledge of OT security monitoring and industrial environments is advantageous.

Responsabilités

  • Analyse security alerts and incidents, following defined investigation processes to determine risk and impact.
  • Perform ad-hoc analysis of varied logs to identify anomalies in customer environments.
  • Investigate confirmed incidents with senior SOC analysts to mitigate threats.

Connaissances

Threat Analysis
Incident Response
Log Analysis
Network Security
OT Security
Threat Hunting
SIEM
IPS
DLP
Malware

Formation

SEC+
CYSA+
Net+
SC-200
AZ-500
AZ-900
Splunk Power User

Outils

Splunk
SIEM
IPS

Description du poste

Integrity360 is a leading independent cybersecurity and PCI specialist operating across Europe, Africa, the Caribbean, and North America. The company has office locations in Ireland, the UK, France, Bulgaria, Italy, Sweden, Spain, Lithuania, Ukraine, Africa, the Caribbean, and Canada, supported by six Security Operations Centres (SOCs) located in Dublin, Sofia, Madrid, Stockholm, Rome, and Cape Town.

With over 780 employees, including more than 585 dedicated cybersecurity professionals, Integrity360 delivers a full suite of professional, support, and managed security services. These span the complete cyber risk lifecycle, from identification and prevention to detection, response, and recovery. Integrity360 supports over 3000 mid-market and enterprise organisations across sectors including financial services, insurance, government, healthcare, retail, telecommunications, and utilities.

At Integrity360, people come first. We invest heavily in learning, development and progression, fostering a dynamic culture where innovation, collaboration and continuous growth are at the heart of what we do. If you're ready to take your cyber security career to the next level, we’d love to hear from you.

Job Role / Responsibilities

In this role you will be expected to analyse a range of alerts and incidents, identifying threats and attacks performed by Threat Actors ranging from cyber criminals, ATPs, and Nation States. You will leverage various threat intelligence streams to enhance your understanding of emerging threats and vulnerabilities used by Threat Actors, providing customers with your insight and experience. You will act as a core investigator for security incidents and alerts, escalating to senior SOC staff when a true positive has been identified. A successful security analyst will verify security events as security incidents; correlate and collate the information; and effectively cascade their findings and recommendations internally, or to the customer.

The role requires flexibility and the ability to work as part of a wider shift pattern, additionally, there may be an on-call aspect required. A good knowledge of Information Security is required for this role. Proactive client services, such as compromise assessments and evaluating and recommending tools and technology for incident response are also in scope. Demonstration of a strong comprehension of malware, emerging threats and adversary TTPs will be critical to success.

This role contributes also to the development of Operational Technology (OT) security monitoring, as part of the integration of industrial environments into our Global SOC model.#

Primary Duties/Responsibilities Include

  • Analyse security alerts and incidents, following defined investigation processes to determine the risk they present and impact to customers.
  • Perform ad-hoc analysis of varied logs, identifying anomalies in customer environments.
  • Perform in-depth investigation on confirmed security incidents, assisting senior SOC analysts to mitigate threats.
  • Identify threats, perform mitigating actions to contain and eradicate threats in the environment.
  • Identify and document tuning opportunities for senior SOC analysts to perform
  • Assist in the report creation process, performing enriching queries and investigations to help produce a high quality incident report for core stakeholders.
  • Assist in development of varied customer reports such as Emerging Threat reports, Incident Response reports, consistent MDR reports.
  • Assist in CSOC continuous improvement and development initiative to maintain and improve core processes, SOPs, and documentation.
  • Assist in monitoring alerts related to OT / industrial environments, following defined processes.
  • Support investigation of incidents involving industrial systems or OT-related activity.
  • Analyse anomalies in industrial network traffic or asset behavior, with guidance from senior analysts.
  • Contribute to incident enrichment in IT/OT convergence scenarios.
  • Escalate complex OT-related cases to Level 3 analysts as required.
  • Work in close collaboration with the Group’s OT Security Practice, leveraging their expertise for OT-related cases.

Desired Skills

  • Experience working with security event detection tools like IPS, SIEM, DLP, Anti-virus, etc.
  • Ability to perform event correlation, host/ network threat analysis.
  • Ability to manage multiple incidents and make effective decisions under high pressure environment.
  • Experience in performing analysis on network pcaps and documents for malicious activity or codes.
  • Conceptual knowledge in Networks and Network Security.
  • Understanding of Network infrastructure hardware and protocols (TCP/IP, switches, bridges, routers, proxy servers, VPN concentrators).
  • Understanding of Security protocols (IPSec), and encryption technologies (3DES, AES, SHA2, TLS).
  • Understanding of basic security principles such as Confidentiality, Availability, Integrity.
  • Familiar with security best practices.
  • A process of on-going certification for the benefit of the business and for self-development is encouraged .
  • Review the adequacy of the security controls and their ability to protect the information system and its information.
  • Experience with Splunk is a plus.
  • Experience using SIEM & IPS solutions is a plus.
  • Basic understanding or strong interest in Operational Technology (OT) environments.
  • Awareness of industrial systems such as SCADA, DCS, PLCs and HMIs.
  • Exposure to industrial protocols or networks is a plus.
  • Willingness to learn and develop skills in OT security monitoring.

Certifications/Qualifications

  • Security industry certifications: SEC+, CYSA+, Net+, SC-200,AZ-500,AZ-900,Splunk Power user
  • A working knowledge of Intrusion Prevention System (IPS), SIEM, SOAR & DLP is a nice to have.
  • Experience working with threat hunting tools is nice to have.
  • Interest in pursuing OT-related training or certifications is encouraged.
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

L2 SOC Analyst
L2 SOC Analyst

Integrity360 • Paris

Hybride
EUR 58 000 - 78 000
Prinicipal (L3) SOC Analyst
Prinicipal (L3) SOC Analyst

Integrity360 • Paris

Hybride
EUR 65 000 - 95 000
L2 SOC Analyst: Threat Detection & OT Security
L2 SOC Analyst: Threat Detection & OT Security

Integrity360 • Paris

Sur place
EUR 50 000 - 75 000
CyberSOC Analyst (L2) — Threat Detection & OT Security
CyberSOC Analyst (L2) — Threat Detection & OT Security

Integrity360 • Paris

Hybride
EUR 58 000 - 78 000
Snr OT Cyber Security Consultant
Snr OT Cyber Security Consultant

Integrity360 • Paris

Sur place
EUR 50 000 - 75 000
Coaching and skills development
Annual external training
Team activities and events
OT (Industrial) Cyber Security Consultant
OT (Industrial) Cyber Security Consultant

Integrity360 • Paris

Hybride
EUR 60 000 - 90 000
Reference manager program
Internal training and progression
Annual external training
SOC Analyst (Level 3)
SOC Analyst (Level 3)

Jobtailor • Paris

Sur place
EUR 70 000 - 90 000
Cybersecurity Engineer
Cybersecurity Engineer

Jobtailor • Paris

Sur place
EUR 60 000 - 90 000
Analyste SOC / MDR (H/F)
Analyste SOC / MDR (H/F)

Neurones • France

Sur place
EUR 45 000 - 70 000
SOC Analyst N2/N3
SOC Analyst N2/N3

MLO CONSULTING • Paris

Sur place
EUR 25 000 - 31 000