Security Operations Analyst

Security Operations Analyst
Empresa:

Ekkiden


Detalles de la oferta

Responsibilities: In close collaboration, build, adjust and implement analytics and detection rules for SIEM, EDR, and AV. Under guidance, participate in cybersecurity architecture review of new or existing technical solutions and provide recommendations for improvement. Contribute to the preparation of KPIs for cybersecurity operations capabilities RFP Request. Monitor and investigate alerts leveraging Microsoft Security Tools (e.g., M365, Cloud App Security, Azure, Defender for EndPoint, Azure Security, Azure Sentinel, and XDR). Monitor and triage AWS security events and detections. Monitor and investigate alerts leveraging EDR solutions. Work with alerts from the CSOC Analysts, to perform in-depth analysis and triage of network security threat activity based on computer and media events, malicious code analysis, and protocol analysis. Review trouble tickets generated by CSOC Analyst(s). Identify incident root cause and take proactive mitigation steps. Work directly with cyber threat intelligence analysts to convert intelligence into useful detection. Perform lessons learned activities. Leverage emerging threat intelligence (IOCs, updated rules, etc.) to identify affected systems and the scope of the attack. Review and collect asset data (configs, running processes, etc.) on these systems for further investigation. Use strong TCP/IP networking skills to perform network analysis to isolate and diagnose. Document actions in cases to effectively communicate information internally and to the client. Determine and direct remediation and recovery efforts. Provide other ad hoc support as required. What we are looking for: Knowledge of Transmission Control Protocol / (TCP/IP) protocols. Deep knowledge of Microsoft Security Tools (M365, Cloud App Security, Azure, Defender for Endpoints, Azure Security, Azure Sentinel, and XDR). Deep knowledge of Cloud technologies (Azure, AWS, and GCP). Deep knowledge of SIEM tools like Splunk, QRadar, ArcSight, MS Sentinel, ELK Stack. Knowledge of at least one EDR solution (MS Defender for Endpoint, Sentinelone, Crowdstrike). Knowledge of email security, network monitoring, and incident response. Knowledge of Linux/Mac/Windows. Minimum of five (5) years of relevant experience. Proven experience in reviewing raw log files, data correlation, and analysis (firewall, network flow, IDS, system logs). Fluent in English. We offer: Join us at the right time to make your mark in a fast-growing organization. Various missions and projects that will allow you to have a real impact on the company. The ability to work autonomously and to drive new initiatives. A career path adapted to your personality, both in terms of role and location. A strong culture, based on sharing, respect, ambition, and team spirit. The opportunity to manage teams and develop your area of expertise by leading one of our squads. Develop your management and leadership skills because, at Ekkiden, consultants look after the careers of other consultants. Health insurance. Questions? Let's talk!
#J-18808-Ljbffr


Fuente: Jobleads

Requisitos

Security Operations Analyst
Empresa:

Ekkiden


Beca – Pre-Sales Technical Engineer

Date Posted : 2022-12-02 Country : Spain Location : Narciso Monturiol Poligono Industrial Llanos De Jarata S / N, 14550 Montilla, Spain Posición : Beca Pr...


Desde Carrier - Valencia

Publicado a month ago

Software Engineer - Infra Instrumentation

Software Engineer - Infra Instrumentation Location(s): Barcelona, Spain; Madrid, Spain; Málaga, Spain; Oviedo, Spain; Santander, Spain; Sevilla, Spain; Valen...


Desde New Relic, Inc. - Valencia

Publicado a month ago

Devops Engineer

¡Hola! Quiero presentarte excentia , una empresa fundada en 2009 a orillas de la costa valenciana. En excentia, somos especialistas en asegurar y gestionar l...


Desde Excentia - Valencia

Publicado a month ago

Programador Php / Mysql - Valencia

Programador PHP / MySQL - Valencia Si te gustan los retos, Destinia es tu empresa. Quiénes somos : Destinia es una empresa que combina la experiencia onli...


Desde Destinia - Valencia

Publicado a month ago

Built at: 2024-09-18T09:40:50.653Z