Alter Solutions Portugal is an IT Consultancy Company, promoter of Digital Transformation, part of the Alter Solutions Group, created in 2006, in Paris.
In Portugal, we partner with over 120 clients and a team of over 500 people, working in projects for industries as diverse as banking, insurance, transportation, aviation, energy, and telecom.
Headquarters of the Nearshore IT center, Alter Solutions Portugal has a dedicated team of around 30 specialized professionals, integrated into projects with several internationally renowned clients.
Job Description Main Tasks:
Handling of cyber-investigations provided by CyberSOC use-cases and DLP detection systems; analyze the effectiveness of existing DLP controls and continuously seek improvement in technical/functional and process.
Contribute to CyberSOC use-case development and optimization.
Monitor DLP related events, conduct investigations, and respond to data leakage incidents according to internal procedures (including interviews with key contributors, i.e. HR, Procurement, DPO, etc.).
Develop and enhance data protection policies and rules across the various systems; manage exceptions.
Respond to and facilitate eDiscovery requests from IT Security, HR, Legal, and Compliance; assist in governance by delivering detailed reports and KPIs.
Contribute to cybersecurity governance, including delivering reports and KPIs related to the activity, including PCC.
Quickly escalate complex incidents to Level 3 CSIRT Analysts, ensuring that all relevant data and preliminary findings are accurately communicated to facilitate further analysis.
Contribute to the industrialization/formalization of Cyber Defense processes and effectiveness.
Provide analysis and expertise on cyber-incidents, including root-cause analysis and identifying preventive measures.
Qualifications Technical Skills:
Event & Incident monitoring and response (identify, alert, and contain).
Cybersecurity (general knowledge in logs analysis and endpoints security, e.g., EDR solution).
Scripting language (Python).
SIEM (Security Information Event Monitoring) / SOAR (Security Orchestration, Automation and Response) / DLP (Data Loss Prevention).
#J-18808-Ljbffr