L2 Csirt Analyst

Detalhes da Vaga

Alter SolutionsIT and Cybersecurity consulting services in Europe, America, and Africa. Discover our expertise in Software development and Cloud computing.Alter Solutions Portugal is an IT Consultancy Company, promoter of Digital Transformation, part of the Alter Solutions Group, created in 2006, in Paris.In Portugal, we partner with over 120 clients and a team of over 500 people, working in projects for industries as diverse as banking, insurance, transportation, aviation, energy, and telecom.Headquarters of the Nearshore IT center, Alter Solutions Portugal has a dedicated team of around 30 specialized professionals, integrated into projects with several internationally renowned clients.Job DescriptionMain Tasks:Handling of cyber-investigations provided by CyberSOC use-cases and DLP detection systems / Analyze the effectiveness of existing DLP controls and continuously seek improvement in technical/functional and process.Contribute to CyberSOC use-case development and optimization.Monitor DLP related events, conduct investigations and respond to data leakage incidents according to internal procedures (including interviews with key contributors, i.e. HR, Procurement, DPO, …).Develop and enhance data protection policies and rules across the various systems, manage exceptions.Respond to and facilitate eDiscovery requests from IT Security, HR, Legal, and Compliance.Maintain accurate and detailed records of incidents in the group GRC tool.Assist in governance by delivering detailed reports and KPIs.Contribute to cybersecurity governance, including delivering reports and KPIs related to the activity, including PCC.Quickly escalate complex incidents to Level 3 CSIRT Analysts, ensuring that all relevant data and preliminary findings are accurately communicated to facilitate further analysis.Contribute to industrialization/formalization of Cyber Defense processes and effectiveness.Provide analysis and expertise on cyber-incidents, including root-cause by identifying preventive measures.QualificationsTechnical Skills:Event & Incident monitoring and response (identify, alert and contain).Cybersecurity (general knowledge in logs analysis, general knowledge regarding endpoints security (e.g., EDR solution)).Scripting language (Python).SIEM (Security Information Event Monitoring) / SOAR (Security Orchestration, Automation and Response) / DLP (Data Loss Prevention).
#J-18808-Ljbffr


Salário Nominal: A acordar

Fonte: Whatjobs_Ppc

Função de trabalho:

Requisitos

Net Consultant

Join as a visionary .net Consultant, leading transformative development with integrated solutions across back-end, bridging the technology-business gap and s...


Avanade - Porto

Publicado 15 days ago

Senior Application Support Engineer

This project is part of the business investment banking and financial services area, and currently has its technological hub in Porto and is working on the d...


Dellent Consulting - Porto

Publicado 12 days ago

Kotlin Developer

Devexperts works with respected financial institutions, delivering products and tailor-made solutions for retail and brokerage houses, exchanges, and buy-sid...


Devexperts Llc - Porto

Publicado 12 days ago

Big Data Engineer

As an Azure Senior Data Engineer specialized in Microsoft Azure tools, you will support the implementation of projects focused on collecting, aggregating, st...


Avanade - Porto

Publicado 12 days ago

Built at: 2024-12-22T16:30:41.189Z