Senior Soc Engineer

Senior Soc Engineer
Empresa:

Tn Portugal



Função de trabalho:

Tecnologia da informação

Detalhes da Vaga

Job Description:We are looking for a SOC Analyst L2 (local contract) to join our BPCE IT business Unit.Integrated within the Security Operation Center (SOC) BPCE-IT, the Blue Team is the first line of defense, responsible for defending the enterprise's use of information systems by maintaining its security posture against attackers.The main activities are the ones below:Detection, categorization, and investigation of infrastructure, applications, and security incidents.Vulnerability management on critical vulnerabilities (handling, categorization, and follow-up).Leading incident response plans.Follow-up of remediation plans.Implementation of detection scenarios and treatment of associated alerts.The L2 SOC Analyst is responsible for monitoring and analyzing the organization's networks and systems daily to detect, identify, investigate, and mitigate potential threats. They must be able to identify anomalous behavior, recognize patterns of malicious activity, and take appropriate corrective action.In addition to their daily duties, the L2 SOC Analyst will provide recommendations for improving security posture and assist with incident response plans, policies, and procedures. Some additional responsibilities may include recommending tools or solutions, participating in audit activities, providing reporting on security events/incidents, and collaborating with other teams across the organization.Main Tasks and Responsibilities:The candidate will have 3 main missions:Analysis:Participation in improving correlation and log analysis rules.Conduct investigations and research including statistics.Interpret or perform first level (Sandbox or manual) minimum scans on malicious codes.Improve our Threat Intelligence activity.Handling incidents:Creating and managing service requests via our ticketing tools (Service Snow / Sec Ops / The Hive).Qualify and analyze these elements to determine the cause of the incident, the mode of operation of the attack (vulnerabilities use, tactics, techniques), the scope, and the perimeter of compromise.Training:Knowledge transferring, writing documentation.Apart from these activities, the candidate will have to maintain and develop their expertise in techniques and tools of digital investigation and methods and tools for analysis (monitoring, training, international conferences, etc.).Qualifications:The candidate must be operational on the security tools used in the BPCE IS and master the architectures in place. Solid knowledge in most of the following technical areas is required, keeping in mind that no one is an expert in every topic. The ideal candidate should have advanced problem-solving skills and a background in cybersecurity engineering.SIEM/SOAR:Knowledge of the operating principles of Information Monitoring and Security Event Solutions (SIEM).Good experience of Splunk and Regex search syntax.Good experience of The Hive.SYSTEM/NETWORK:Good knowledge of network and system architectures.Knowledge of the operation of intrusion detection probes and event log correlation tools.SECURITY:Good knowledge of Mitre Attack framework and countermeasures linked to the techniques and tactics.Good knowledge of Information monitoring and analysis tools and methods.Good knowledge of the security standards for different technologies (web servers, messaging, database, DNS, proxy, firewall, etc.).Have a good knowledge of one or more of the following topics:Web application vulnerabilities.Malware types (rootkit, ransomware, botnet, etc.).Obfuscation and persistence techniques (cryptography, packing, etc.).Digital investigation/analysis tools.Sandbox behavioral.Other requirements:Good level of English – minimum B2 level;Good level of French - minimum B1 level;Ability to keep up with a demanding and fast-paced environment;Good communication skills;Good priority definition skills;Know-how on implementing pedagogy methods;Ability to work in a team.Additional Information:At Natixis, we are committed to fostering a working environment where each and every one of our people is treated with dignity and respect and where every voice is heard. Our differences make us collectively stronger and are a source of fulfillment, innovation, and performance.In the framework of its Diversity, Equity & Inclusion policy, Natixis in Portugal has implemented a Blind CV Screening process, with the purpose of reducing hiring bias. A blind CV excludes any personal details which refer to the applicant's gender, age, or ethnicity. When applying for our positions, please submit a blind CV, that is, with no picture, name, gender, age, nationality, ethnicity, and address. Your personal statement, work experience, courses and certifications, education, skills, and contact information is what matters to us.
#J-18808-Ljbffr


Fonte: Whatjobs_Ppc

Função de trabalho:

Requisitos

Senior Soc Engineer
Empresa:

Tn Portugal



Função de trabalho:

Tecnologia da informação

Orçamentista - Sistemas De Caixilharia De Alumínio E Aço (Serralharia)

O que procura nos candidatos O que precisamos de si Experiência mínima de 1 ano em função semelhante; Conhecimentos de caixilharia, alumínio e aço; Conhec...


Desde - Porto

Publicado a month ago

System Integration Specialist (Genesys)

A empresa que o irá contratar: Multinacional líder no seu sector de actividade. O que é importante para ter sucesso: Experiência comprovada em operações...


Desde Intelcia Shared Services - Porto

Publicado a month ago

Qa Automation Engineer

Build your future with Sovos. If you're seeking a career where innovation meets impact, you've come to the right place. As a global leader, Sovos is transfor...


Desde Sovos Compliance - Porto

Publicado a month ago

Web Developer

Muito Gosto! Somos o Grupo DATA! O nosso propósito é simplificar a vida dos nossos clientes e fazemos isso em todo o mundo, através das nossas soluções de TI...


Desde Grupo Data - Porto

Publicado a month ago

Built at: 2024-09-20T01:20:38.093Z