Cette offre n'affiche pas de salaire. D'après 10 offres pour ce poste (Mid, Île-de-France), le marché se situe autour de 50k€ (48k€–55k€).
Main activities
- Build on and continuously improve SOC analytics
- Ensure effective operation of SIEM content (filters, rules, expressions, ...) used within the SOC
- Mentor and guide the First Level Security Analysts
- Provides professional data analysis within the SOC processes and to SOC customers to drive further security measures and risk mitigation activities
- Perform and maintain SOC related analytical processes and tasks
- Service closely with other Information Security teams and entities to ensure effective intrusion detection and incident response
- Handle potential high severity incidents autonomously during non-working hours (on rotational on-call basis)
- Professional communications and reporting to SOC stakeholders and customers
- Continually maintain and improve technical capabilities through individual development activities, accreditations and certifications to remain constantly prepared to challenge the ever-evolving cyber threat
Profil recherché
Certifications
SEC555 (GCDA) or FOR572 (GNFA) or FOR508 (GCFA) or CISSP is a plus but not mandatory
Overall expertise in the field
- 3-5 years of expertise in a security operations or incident response service
- Expertise in information security domain ? 3 years
- Expertise in security analysis and SIEM content development ? 3 years
- Expertise in a global organization ? 3 years
Technical Expertise
- Expertise in security monitoring and analysis tools (e.g., Sentinel, Splunk, QRadar, ArcSight, Google SecOps)
- Overview of network technologies, Windows and Unix administration
- Overview of typical security devices such as firewalls, intrusion detection systems, AV and End Point security, Web Application Firewalls, antispam systems, event correlation systems, etc.
- Overview of security threats, attack scenarios; analysis and intrusion detection skills
- Hands-on expertise with network security, vulnerability management, and incident response
- Overview of cloud security concepts and tools
Expertise
- English context and environment - mandatory
Un plan personnalisé pour postuler intelligemment à cette offre.
Cliquez sur "Postuler" pour accéder à l'offre.