(H504) - Detection Engineer / Cybersecurity Operations

Detalles de la oferta

Detection Engineer / Cybersecurity Operations Overview: The Detection Engineer will be responsible for assessing and developing threat detection and monitoring capabilities.
The role will also focus on leveraging the current solutions available in Siemens Healthineers, as well as participating in structuring and enhancing the detection team functions.

Tasks and Responsibilities: Develop use cases, use data analytics techniques, and other detection mechanisms on SIEM and other detection tools. Evaluate and prioritize detection capabilities (logs integration, new tools requirements) based on MITRE ATT&CK coverage using threat intelligence feedback. Process, analyze, and plan detection mechanisms to detect red team assessments and detection capabilities testing. Design new mechanisms to detect and respond to new and existing threats. Lead taskforces to provide threats visibility and analysis. Assist and cooperate on incident response tasks. Perform proactive detection leveraging tools capabilities and internal developments. Develop and maintain documentation, playbooks, and procedures for threat triage and response. Coach and train security analysts on triage and response tasks. Perform investigations and tasks automation. Qualifications: Degree in Computer Science, Engineering, or related fields. Experience in threat modelling, specifically using MITRE ATT&CK. Knowledge of the current threat landscape and attack vectors. Experience in SIEM usage and administration. Strong data analytics and exploration skills. Solid usage and management experience of EDR/XDR technologies. Knowledge of Microsoft security solutions suite (Sentinel, 365 Defender, etc.
). Knowledge in leveraging other detection tools such as IDS/IPS, Firewalls, proxies, etc. Knowledge of Public/Hybrid cloud infrastructures. Prior engagement in threat response scenarios. Programming abilities (Python / shell scripting / cloud automations). Additionally: MSc in Cybersecurity or equivalent is desired. 5+ years of experience in SOC/detection and response/Incident Response/technical security departments. Relevant industry certifications or courses such as SANS/GIAC (for example, GCIA, GCIH, GNFA, GCFA), CompTIA Security+, CISSP are desirable. Personality Traits: Communication skills to speak with confidence and ownership mindset to different international stakeholders, e.g., service providers, internal customers & IT groups. Negotiation skills and ability to set and track priorities and deadlines. Able to work on a very tight schedule while keeping track of tasks progress and deadlines. Team player but also able to work on an individual basis. Skills in leading small teams or projects in a security environment. Self-learning and curiosity to keep pace with the ever-evolving cybersecurity developments are highly appreciated. Advanced English and communication skills: clear and concise communication; able to address stakeholders of different backgrounds and technical expertise. Soft Skills SLF Requirements: Collaboration & Customer Orientation (++). Intercultural Sensitivity (+). Team Development (+). Ability to multi-task and handle multiple assignments simultaneously while focusing on delivery quality (++). Ability to use initiative when needed (self-motivation and proactive attitude) (++). Excellent communication skills (both written and verbal) in English (++). Quick learner and aptitude to get into new technologies and architectures (++).
#J-18808-Ljbffr


Salario Nominal: A convenir

Fuente: Jobleads

Requisitos

Programador/A Pl1, Hibrido

Programador/a PL1 Programador PL1 (Cobol) Experiencia mínima de 5 años. Funcionalidades y responsabilidades o Experiencia en desarrollo de PL1 con conocimi...


Cas Training - Barcelona

Publicado 20 days ago

DevSecOps Engineer with English, Barcelona

DevSecOps Engineer with English Are you excited to impact the Digital world of one of the luxury car brands? Our client Porsche is the leading company in th...


Babel Profiles - Barcelona

Publicado 20 days ago

Consultor Híbrido Power Platform, Barcelona

Consultor Híbrido Power Platform Perfil buscado (Hombre/Mujer) Desarrollo y soporte de soluciones basadas en Power Platform. Colaborar en la definición d...


Michael Page - Barcelona

Publicado 20 days ago

Persona instaladora telecomunicaciones, presencial

Persona instaladora telecomunicaciones La empresa ADTEL necesita cubrir un puesto de trabajo de técnico/a instalador/a de forma estable a jornada completa en...


Grup Adtel - Barcelona

Publicado 20 days ago

Built at: 2025-01-02T18:23:08.605Z