drjobs Analyst Cybersecurity Operations Detection Response L3

Analyst Cybersecurity Operations Detection Response L3

Employer Active

1 Vacancy
The job posting is outdated and position may be filled
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

London - UK

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

As a L3 Response Analyst within the Security Operations Center (SOC) your responsibilities include using defensive measures and information gathered from various sources to identify analyse and report cybersecurity events ensuring the protection of McDonalds information assets. You play a crucial role in supporting the Incident Response process responding to crisis situations and mitigating immediate and potential cyber threats. Your expertise in security operations event monitoring eDiscovery forensics and incident response will be key in this role. The role works directly within Global Cyber Security (GCS) the organization responsible for our Cybersecurity Operations & Incident Response program and critical services ensuring our leadership makes informed riskbased decisions. 

Working within the Incident Response team and coordinating with other Cyber Operations teams to identify and report on security incidents as they occur and overseeing endtoend remediation. Activities will include triaging security events network and endpoint analysis malware reverse engineering threat hunting vulnerability escalation and resolving security incidents from detection to remediation. As part of the Security Operations team you will create and implement standard operating procedures playbooks and processes to help streamline response monitoring investigations and analysis research. The role works directly within GCS the organization responsible for our Cybersecurity Operations & Incident Response program and critical services ensuring our leadership makes informed riskbased decisions.

The ideal candidate for this role should possess a solid understanding of cybersecurity practices cloud technologies detection and response frameworks and incident handling procedures (containment eradication recovery and lessons learned). They should excel in adhering to and enforcing the use of established incident response playbooks and practices possess an acute attention to detail and collaborate effectively across global crossfunctional teams.

Required experience:

  • Experience working in a security operations or incident response role.
  • Advanced proficiency in computer networking concepts protocols and network security methodologies.
  • Strong expertise in analysing and mitigating cyber threats and vulnerabilities.
  • Advanced competence in authentication authorization and access control methods.
  • Proficiency in utilizing and developing intrusion detection methodologies and techniques for detecting host and networkbased intrusions.
  • Indepth knowledge of system and application security threats and vulnerabilities with the ability to develop and implement mitigation strategies.
  • Advanced understanding of network attacks their relationship to threats and vulnerabilities and the ability to develop countermeasures.
  • Proficiency in adversarial tactics techniques and procedures with the ability to anticipate and counteract them.
  • Expertise in conducting eDiscovery and forensic investigations including the collection preservation analysis and presentation of digital evidence in support of incident investigations.
  • Comprehensive knowledge of the stages of a cyberattack and the ability to develop and implement defense strategies at each stage.
  • Proficiency with Windows MacOS and/or Linux operating systems with the ability to perform advanced security configurations and troubleshooting.
  • Experience in leading and mentoring junior analysts providing guidance and support to enhance their skills and performance.
  • Ability to develop and implement advanced threat detection and response strategies.
  • Effective communication skills with the ability to provide detailed reports and recommendations to senior management.

Responsibilities:

  • Continuously monitor and analyse system activity using security operations tools to identify malicious activity.
  • Characterize and analyse network traffic and logs to identify potential threats to McDonalds assets.
  • Provide timely detection identification and analysis of possible attacks and intrusions differentiating them from benign activities and reviewing tuning recommendations to improve alert efficacy.
  • Collaborate with key stakeholders to validate security events and provide security response expertise to remediate cyber security incidents.
  • Perform event correlation to gain situational awareness and assess the effectiveness of observed attacks.
  • Conduct security operations and incident response trend analysis and reporting.
  • Conduct eDiscovery and Forensic investigations in support of incident investigations.
  • Mentor analysts to promote their performance and career growth in alignment with department and organizational objectives.
  • Plan and execute protective measures including policy processes and cybersecurity awareness.
  • Develop and implement remediation plans in conjunction with incident response requirements.
  • Support threat hunting efforts across market networks identifying indicators of compromise (IOCs) and evidence of compromise.
  • Lead and mentor junior analysts providing guidance and support to enhance their skills and performance.

Desired Skills:

  • Professional certification such as GIAC GCIH GCIA ITIL.
  • Familiarity with NIST Risk Management Framework and NIST Cybersecurity Framework Cyber Chain.
  • Experience working with case management tools SOAR email security solutions SIEM and EDR technologies.
  • Experience working with complex multinational companies and distributed business models.
  • Experience developing automation through scripting languages such as Python.

Qualifications :

  • Bachelors degree or equivalent experience in Computer Science Cybersecurity Information Technology Software Engineering Information Systems or Computer Engineering.


Additional Information :

McDonalds is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feelgood moments for everyone. McDonalds provides reasonable accommodations to qualified individuals with disabilities as part of the application or hiring process or to perform the essential functions of their job. If you need assistance accessing or reading this job posting or otherwise feel you need an accommodation during the application or hiring process please contact . Reasonable accommodations will be determined on a casebycase basis.

McDonalds provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex sex stereotyping pregnancy (including pregnancy childbirth and medical conditions related to pregnancy childbirth or breastfeeding) race color religion ancestry or national origin age disability status medical condition marital status sexual orientation gender gender identity gender expression transgender status protected military or veteran status citizenship status genetic information or any other characteristic protected by federal state or local laws. This policy applies to all terms and conditions of employment including recruiting hiring placement promotion termination layoff recall transfer leaves of absence compensation and training.

Nothing in this job posting or description should be construed as an offer or guarantee of employment.


Remote Work :

No


Employment Type :

Fulltime

Employment Type

Full-time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.