drjobs Devoteam Cyber Trust | SOC Analyst | Banking Sector

Devoteam Cyber Trust | SOC Analyst | Banking Sector

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Porto - Portugal

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

We are currently looking for a SOC Analyst for a project in the Banking area.

  • Be operational on the security tools used in the client and master the architectures in place.
  • Solid knowledge in most of the following technical areas is required keeping in mind that no one is an expert in every topic.
  • Have advanced problem-solving skills and a background in cybersecurity engineering.

The candidate will play a key role in threat analysis incident response and knowledge transfer within the Security Operations Center (SOC) acting as a reference point for technical expertise and incident investigation.

 

  1. Analysis

  • Improve and optimize correlation and log analysis rules using Splunk.

  • Investigate alerts across various Tactics Techniques and Procedures (TTPs).

  • Prioritize incidents conduct compromise assessments and implement blocking actions.

  • Perform first-level scans of malicious code using sandbox or manual analysis.

  1. Incident Response

  • Communicate and escalate confirmed incidents to senior management.

  • Lead technical investigations during incidents supporting junior SOC analysts.

  • Conduct retro-hunting qualifying and analyzing findings to determine cause attack methodology exploited vulnerabilities and scope of compromise.

  1. Knowledge Transfer

  • Document investigation processes findings and best practices.

  • Provide training and mentoring to less experienced SOC analysts.


Qualifications :

  • Knowledge of the operating principles of Information Monitoring and Security Event Solutions (SIEM).
  • Good experience of Splunk and Regex search syntax.
  • Good experience of the Hive
  • Good knowledge of network and system architectures
  • Knowledge of the operation of intrusion detection probes and event log correlation tools
  • Good knowledge of Mitre Attack framework and counter measures link to the technics and tactics
  • Good knowledge of Information monitoring and analysis tools and methods.
  • Good knowledge of the security standards for different technologies (web servers messaging database DNS proxy firewall etc.)
  • Web application vulnerabilities
  • Malware types (rootkit ransomware botnet etc.)
  • Obfuscation and persistence technics (cryptography packing etc.).
  • Digital investigation/analysis tools
  • SandBox behavioral
  • Good level of English


Additional Information :

The Devoteam Group works for equal opportunities promoting its employees based on merit and actively fights against all forms of discrimination. We are convinced that diversity contributes to the creativity dynamism and excellence of our organization. All of our vacancies are open to people with disabilities.


Remote Work :

No


Employment Type :

Full-time

Employment Type

Full-time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.