L2 Computer Security Incident Response

Detalhes da Vaga

Job Title: L2 Computer Security Incident Response Location: Porto, Portugal
Work regime: Hybrid (3 times a week in the office) Job description: As member of CIB EMEA Cyberdefense (domain of Cybersecurity), the L2 Computer Security Incident Response (CSIRT) Analyst plays an essential role, focusing on the response and investigation of cybersecurity incidents, including DLP. This role is crucial for quicky addressing alerts, conducting analysis and escalating to L3 CSIRT analyst the sensitive/most critical cases.
Main Tasks: Handling of cyber-investigations provided by CyberSOC use-cases and DLP detection systems Analyze the effectiveness of existing DLP controls and continuously seek improvement in technical/functional and process Contribute to CyberSOC use-case development and optimization Monitor DLP related events, conduct investigations and respond to data leakage incidents according to internal procedures (including interviews with key contributors, i.e. HR, Procurement, DPO, ) Develop and enhance data protection policies and rules across the various systems, manage exceptions Respond to and facilitating eDiscovery requests from IT S Maintain accurate and detailed records of incidents in the group GRC toolecurity, HR, Legal and Compliance Assist in governance by delivering the details reports and KPIs Contribute to cybersecurity governance, including the delivering reports and KPI related to the activity, including PCC Quick escalate complex incident to Level 3 CSIRT Analysts, ensuring that all relevant data and preliminary findings are accurately communicated to facilitate further analysis Contribute to industrialization/formalization of Cyber Defense processes and effectiveness Provide analysis and expertise on cyber-incidents, including root-cause by identifying preventive measures Technical Skills: Event & Incident monitoring and response (identify, alert and contain) Cybersecurity (general knowledge in logs analysis, general knowledge regarding endpoints security (e.g.: EDR solution)) Scripting language (Python) Protocol knowledge (HTTP, SMTP) SIEM (Security Information Event Monitoring) SOAR (Security Orchestration, Automation and Response) DLP (Data Loss Prevention) Language Skills English: N4 - Mastery Soft Skills: Proactivity / Critical thinking Decision making Resilience Ability to collaborate / teamwork Creativity & innovation / Problem solving


Salário Nominal: A acordar

Fonte: Grabsjobs_Co

Função de trabalho:

Requisitos

Senior Qa Engineer (Mobile)

Devexperts works with respected financial institutions, delivering products and tailor-made solutions for retail and brokerage houses, exchanges, and buy-sid...


Devexperts Llc - Porto

Publicado a month ago

Tech Lead

Universo is a financial institution leader in the issuance of credit cards in Portugal ("Cartão Universo") with more than 1 million customers. It has the goa...


Sonae - Porto

Publicado a month ago

It Service Desk Technician

We are seeking a skilled and proactive Service Desk Technician to provide exceptional technical support to our team. The ideal candidate will have experience...


Salt Services - Porto

Publicado a month ago

Scrum Master

The payments market is the most exciting technology market in the world today for good reason. McKinsey values it globally at over $2 trillion and it's growi...


Planet - Porto

Publicado a month ago

Built at: 2024-11-14T22:28:47.259Z