CyberSoc Security Analyst

Orange Cyberdefense

Malmö kommun

Hybrid

SEK 550,000 - 750,000

Full time

36 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Orange Cyberdefense is seeking a CyberSOC Security Analyst to analyze logs and events using SIEM, IDS/IPS, and EDR solutions. You will report to the CyberSOC Team Leader and collaborate with GOPS colleagues to deliver high-quality security analysis for customer environments.

The role emphasizes proactive learning, incident handling, and knowledge sharing. The role is hybrid and based in Malmo, Sweden, with responsibilities spanning strategic and tactical security operations, documentation, and

Qualifications

  • Good knowledge of operating system concepts related to Windows, Linux and OS X.
  • Solid understanding of malware, exploits, vulnerabilities and the overall threat landscape.
  • Understanding of the cyber kill chain and threat hunting concepts.
  • Good knowledge of red teaming procedures and tools used.

Responsibilities

  • Analyze and correlate logs and events using SIEM, IDS/IPS and EDR tools.
  • Report incidents in the Incident Management system and create knowledge base articles.
  • Maintain and update documentation; mentor junior staff when applicable.
  • Engage directly with customers to ensure thorough analysis and delivery.

Skills

Windows OS
Linux OS
OS X
IT security knowledge
Threat hunting
Incident reporting
Documentation
Communication with customers

Tools

SIEM
IDS/IPS
EDR solutions
Knowledge base tools

Job description

The role of the CyberSOC Security Analyst is responsible for log and event analysis using solutions like SIEM, IDS/IPS and different endpoint and EDR solutions. Reporting to the CyberSOC Team Leader and working closely with GOPS colleagues to provide a thorough analysis of the events and alerts that any of the Cyber Security Operations Centre (CyberSOC) supported tools generate. To be able to conduct the analysis you are required to have sufficient technical skills and knowledge of any specific customer requirements or routines. You must also know how to handle and report incidents in the Incident Management system, write knowledge base articles and engage in direct contact with customers.

In order to provide a solid analysis towards a customer you should be able to do both automatic and manual correlation based on all information available. You must also be passionate about security & love what you do.

Your responsibility as a Security Analyst means that you must deliver the expected quality towards our customers and you must continue to enhance your skills and knowledge in both technical and non-technical terms. To be successful in the role, you will be provided with tools and capabilities but it is also very important that you continue to develop your own skill set by both teaching others and yourself.

Key Responsibilities - Strategic
  • Actively provide feedback to the group and management about challenges and potential opportunities.
  • Help enhance the current delivery in both technical and non-technical terms.
  • Keep yourself updated from a security perspective about current threats, vulnerabilities and other relevant it security related risks.
  • Be aware of the SLA’s that are used and how they work towards overall delivery and specific customers.
  • Provide continuous feedback to your colleagues and management.
  • It is included in the role of the Security analysts to be TDM for one or more customers. See the role description for the TDM role in the Role Description Library.
  • Mandate according to the business plan, assignment, budget, result, annual goals and authorisation rules.
Key Responsibilities - Tactical
  • Understand and possess knowledge about customer networks and technology.
  • Understand how escalation and follow ups is done towards customers.
  • Maintain documentation and keep information updated.
  • Add new information to documentation system when necessary.
  • Participate in meetings both internally and externally.
  • Adhere to, and keep yourself updated on workflows, instructions and guidelines for the overall group.
  • Participate actively in reporting towards customers and management when desired.
Supervisory requirements of the role

The role has no direct reports, but as with all other members of the OCD-GOPS team, will be expected to contribute to the mentoring of junior staff, trainees and apprentices as required.

Skills & Experience

The CyberSOC Security Analyst will need to possess the following skills and experience:

  • Good knowledge of operating system concepts related to Windows, Linux and OS X.
  • Knowledge over technical products and their role in the IT security environment.
  • Solid understanding of malware, exploits, vulnerabilities and the overall threat landscape.
  • Understanding of the cyber kill chain and threat hunting concepts.
  • Good knowledge of red teaming procedures and tools used.
Key Responsibilities - Information Security

In common with all roles in OCD-GOPS, this role must comply with the Information Security policies and procedures in place at the time, as specified in the OCD-GOPS-ISMS Space.

Key Responsibilities - Data Protection

In common with all roles in OCD-GOPS, this role must comply with the Data Protection policies and procedures in place at the time, as specified in the Group Data Protection Space.

Location, Travel and Working Hours

This role is hybrid and will be based in a GOPS CyberSOC hub in Malmo, Sweden.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst specializing in Operational Technology (OT)
Security Analyst specializing in Operational Technology (OT)

Orange Cyberdefense Sweden AB • Stockholms kommun

On-site
SEK 550,000 - 750,000
Security Analyst specializing in Operational Technology (OT)
Security Analyst specializing in Operational Technology (OT)

Orange Cyberdefense • Sweden

On-site
SEK 650,000 - 950,000
CyberSOC Analyst: Threat Detection & Response
CyberSOC Analyst: Threat Detection & Response

Orange Cyberdefense • Malmö kommun

Hybrid
SEK 550,000 - 750,000
SOC Analyst
SOC Analyst

Telia Company • Solna kommun

Hybrid
SEK 600,000 - 800,000
Comprehensive benefits package
Opportunities for remote work
Performance-based bonus
SOC Analyst
SOC Analyst

Telia Sverige AB • Göteborgs kommun

Hybrid
SEK 497,000 - 720,000
Comprehensive benefits package
Opportunities for remote work
Performance-based bonus
Senior Cyber Incident Response Analyst
Senior Cyber Incident Response Analyst

Integrity360 • Stockholms kommun

Hybrid
SEK 900,000 - 1,200,000
Operational Threat Intelligence Analyst to CSIRT | SEB, Solna
Operational Threat Intelligence Analyst to CSIRT | SEB, Solna

SEB • Solna kommun

On-site
SEK 500,000 - 700,000
Technology Consultant – SOC Analyst
Technology Consultant – SOC Analyst

SIL Botswana • Västra Götalands län

On-site
SEK 8,200 - 14,000
Cyber Security Specialist (Expert)
Cyber Security Specialist (Expert)

Swediumglobal • Lunds kommun

On-site
SEK 660,000 - 881,000
OT Cybersecurity Analyst | SIEM/XDR Defender
OT Cybersecurity Analyst | SIEM/XDR Defender

Orange Cyberdefense • Sweden

On-site
SEK 650,000 - 950,000