Security Operations Centre Analyst
il y a 3 jours
**Location**:
Brussels, Belgium
**Security Clearance**:
EU Confidential
**Introduction**:
**Skills, knowledge, experience required**:
- At least 1 certification among the following:
- GPEN (GIAC Certified Penetration Tester);
- GCED (GIAC Certified Enterprise Defender);
- GPPA (GIAC Certified Perimeter Protection Analyst);
- GCFE (GIAC Certified Forensic Examiner);
- GCFA (GIAC Certified Forensic Analyst);
- GNFA (GIAC Certified Network Forensic Analyst);
- CFCE (IACIS Certified Forensic Computer Examiner);
- CCFP (Certified Cyber Forensics Professional);
- SCMO (SABSA Certified Security Operations and Service Management Specialist);
- Minimum 3 years’ experience in networking (TCP/IP, SNMP, DNS, Syslog-ng, etc.);
- Minimum 2 years’ experience in using, configuring and tuning a security information and event management (SIEM) tool;
- Knowledge on and minimum 2 years’ experience with the following network security solutions and technologies:
- Firewalls;
- Network intrusion detection systems (IDS) and intrusion prevention systems (IPS);
- Switches and routers;
- Advanced persistent threat (APT) detection solutions such as FireEye;
- DNS, DHCP, VPN;
- Network forensics (full packet capture);
- Traffic baselining analysis;
- Knowledge on and minimum 2 years’ experience with the following host-based security solutions:
- Host-based intrusion prevention systems (HIPS);
- Malware end-point protection;
- Operating system logs;
- Strong knowledge on and minimum 3 years’ experience in:
- MS Windows security events analysis;
- Security analysis of firewall, proxy, and IDS logs;
- Security analysis of applicable or middleware logs (Oracle HTTP Server, Apache HTTP Server, Oracle WebLogic Server);
- Minimum 1 year of experience in writing and optimizing:
- IDS signatures (preferably Snort and/or Suricata);
- YARA rules;
- Minimum 3 years’ experience with:
- SIEM tools such as:
- HP ArcSight Enterprise Security Manager (ESM) 6.x;
- IBM QRadar SIEM;
- At least one of the following log management solutions:
- HP ArcSight Logger;
- IBM QRadar Log Manager;
- Splunk;
- Minimum 2 years’ experience with:
- Snort or Cisco Sourcefire Next-Generation IPS (NGIPS);
- Cisco FireSIGHT;
- Check Point and Juniper firewalls;
- Blue Coat proxies.
**Desirable**:
- Minimum 2 years’ experience with STIX (Structured Threat Information Expression) with a particular focus on the following related standards:
- CybOX (cyber observables);
- CAPEC (attack patterns);
- MAEC (malware);
- TAXII (threat information exchange);
- Minimum 1 year of experience with:
- Suricata or Stamus Networks;
- ELK stack (Elasticsearch, Logstash and Kibana);
- FireEye (EX, NX, AX, FX, HX, IX).
**Duties/role**:
- Providing real-time monitoring of cyber defence and intrusion detection systems;
- Performing automatic-based processing (centralisation, filtering, and correlation) of security events;
- Conducting human-based analysis of automatically correlated events;
- Processing incoming warnings, alerts, and reports;
- Performing triage based on verification, level of exposure and impact assessment;
- Categorizing events, incidents, and vulnerabilities based on relevance, exposure, and impact;
- Opening tickets and ensuring case management;
- Activating initial response plan based on standard playbook entries;
- Maintaining incident response address book;
- Advising affected users on appropriate course of action;
- Monitoring open tickets for incidents and vulnerabilities from start to resolution;
- Escalating unresolved problems to higher levels of support, including the Incident Response and Vulnerability Mitigation teams;
- Configuring the SIEM components for an optimal performance;
- Improving correlation rules to ensure that the monitoring policy allows an efficient detection of potential incidents;
- Analysing risks and security policy requirements, and translating them into technical events targeting the system components;
- Identifying the required logs, files or artefacts to collect from the monitored system and, if necessary, possible complementary devices to deploy;
- Elaborating the relevant detection and correlation rules, and implementing them in the SIEM infrastructure;
- Configuring and tuning cyber-defense solutions;
- Reviewing and improving the monitoring policy on a regular basis;
- Integrating cyber-defence solutions for efficient detection;
- Defining dashboards and reports for reporting on KPIs;
- Producing qualified reports (including recommendations) or alerts to SOC customers and following up on actions;
- Contributing to the design of the overall monitoring architecture, in close relationship with the customers and system owners on one hand, and the Security Operations Engineering team on the other hand, by performing the following tasks:
- Assessing security events detection solutions and developing new solutions;
- Integrating the solutions within the security monitoring scheme (log collection architecture,
-
Security Operations Centre Analyst
il y a 3 jours
Luxembourg Vector Synergy Temps plein**Location**: Luxembourg, Luxembourg **Security Clearance**: EU Confidential **Introduction**: **Skills, knowledge, experience required**: - At least 1 certification among the following: - GPEN (GIAC Certified Penetration Tester); - GCED (GIAC Certified Enterprise Defender); - GPPA (GIAC Certified Perimeter Protection Analyst); - GCFE (GIAC Certified...
-
Security Analyst
il y a 3 jours
Luxembourg Vector Synergy Temps plein**Location**: Brussels, Belgium **Security Clearance**: EU Secret **Introduction**: The Security Analyst aims at identifying areas where information system changes are needed to support business plans and to monitor the impact in terms of change management. This service contributes to the general functional requirements of the business organization in the...
-
Information Security Analyst
il y a 2 semaines
Luxembourg Next Gate Tech Temps plein**About Next Gate Tech**: At Next Gate Tech, we create technologies that reshape the landscape of the fund industry operations. We empower our clients by capturing the full potential of harmonized data to drive intelligent and fully automated operations. Our transformative solutions optimize processes, enhance efficiency, reduce risks, and drive cost...
-
Deep - System Analyst - Security
il y a 5 jours
Luxembourg POST Group Temps plein**DEEP - System Analyst - Security**: **Date**:27 nov. 2024 **Lieu**: Luxembourg, Luxembourg **Entreprise**:POST Luxembourg Afin de renforcer les équipes de DEEP au sein de la Business Line Customer Support and Operations, nous recherchons actuellement un(e) **System Analyst - Security **(M/F/n) **à temps plein. **Vos missions**: - Prendre en charge...
-
Deep - System Analyst - Security
il y a 5 jours
Luxembourg EBRC Temps pleinAfin de renforcer les équipes de DEEP au sein de la Business Line Customer Support and Operations, nous recherchons actuellement un(e) **System Analyst - Security **(M/F/n) **à temps plein. **Vos missions**: - Prendre en charge le déploiement ainsi que la gestion quotidienne des architectures de sécurité de nos clients, notamment: - Firewall, IPS/IDS...
-
SOC Analyst
il y a 2 semaines
Luxembourg WDS Global Limited Temps plein**Job Title: SOC Analyst** **Job Type: Contract** **Job Location: Luxembourg** **Contract Rate: Euro 530 per day** **Contract Length: 12 Months with Multiple extensions** Our Client, one of the world s foremost IT Consultancies, is looking to recruit a Contract SOC Analyst to join their client in Luxembourg Onsite. **Client requires EU...
-
Intern - IT Security Operations
il y a 3 semaines
Luxembourg, Luxembourg Deutsche Börse Group Temps pleinYour area of work The IT Security section is focused on running a digital transformation of the company towards innovations and new technology industry trends by creating and ensuring a protected cybersecurity environment for the business processes of Deutsche Boerse Group and its subsidiaries. Our team is driving innovation in the field of cybersecurity,...
-
Opérateur de Télésurveillance
il y a 2 semaines
Luxembourg ELTRONA SECURITY SYSTEMS S.A. Temps pleinLa société Eltrona Security Systems travaille dans les métiers d’alarme intrusion, vidéo surveillance et télésurveillance (TeleAlarm ®). Elle développe et commercialise des systèmes de sécurité et de transmission afin d’apporter une solution globale à nos clients. Pour développer nos activités**,** nous recherchons, pour notre centre de...
-
Operations Risk Analyst
il y a 4 jours
Luxembourg Redstone Legal, Risk and Compliance Search Temps pleinJob Reference**:RS0990** Job Reference**:RS0990** Job Title**:Operations Risk Analyst** Location**:Europe** Area**:Other, Softs&Agriculture** Role**:Operations&Logistics, Risk Management** Redstone Legal, Risk & Compliance Search focus on offering 360° search solutions across the globe for our prestigious client base. With our competitive coverage of...
-
Senior Operations Risk Analyst
il y a 4 jours
Luxembourg Redstone Legal, Risk and Compliance Search Temps pleinJob Reference**:RS1465** Job Reference**:RS1465** Job Title**:Senior Operations Risk Analyst** Location**:Europe** Area**:Other, Softs&Agriculture** Role**:Operations&Logistics, Risk Management** Redstone Legal, Risk & Compliance Search focus on offering 360° search solutions across the globe for our prestigious client base. With our competitive...
-
Chief Information Security Officer
il y a 4 jours
Luxembourg Université du Luxembourg Temps pleinThe **University of Luxembourg** is an **international research university** with a distinctly **multilingual** and **interdisciplinary** character. The University was founded in 2003 and counts more than 6,700 students and more than 2,000 employees from around the world. The University’s faculties and interdisciplinary centres ;focus on research in the...
-
Finance Operations Analyst
il y a 2 semaines
Luxembourg Schroders Temps plein**Finance Operations Analyst - Asset Management** **Who we’re looking for** We are looking for a motivated individual who will report to the Finance Operations Team Leader within the Finance department. The Finance Operations Analyst is processing the Schroders Group gross revenue earned from client investments into pooled funds in the UK, Europe, APAC...
-
SOC L3 Analyst
il y a 4 jours
Luxembourg Source Group International Temps plein**Senior SOC L3 Analyst** **Luxemburg - On Site** **Daily rate: OPEN LOCAL RATE** **12 Month Contract** **Start date: ASAP** **MUST BE IN LUXEMBURG OR RELOCATE** **Job/Company Description** **What to expect in the role** - Conduct technical analysis and assist clients in understanding what happened during a cybersecurity incident - Setting direction...
-
Junior Operations Analyst
il y a 4 jours
Luxembourg Satispay Temps plein**Simplify payments to improve everyone’s life** More than an app, Satispay is a great group of creative, innovative, curious and enthusiastic people united by a bold mission: to build the future of payments in Europe! We created a mobile payment network to revolutionize how people think about money, by creating a direct connection between consumers and...
-
Finance Operations Analyst
il y a 4 jours
Luxembourg Schroders Temps plein**Finance Operations Analyst - Asset Management** **Who we’re looking for** We are looking for a motivated individual who will report to the Finance Operations Team Leader within the Finance department. The Finance Operations Analyst assists in calculating, accounting and reporting rebates due to intermediaries investing in pooled funds domiciled in...
-
Middle Office Fund Operations Analyst
il y a 3 jours
Luxembourg Tikehau Investment Management - Annonces Temps pleinMiddle Office Fund Operations Analyst MISSIONS: [FR] Vous rejoindrez l'équipe Fund Operations Private Debt. Plusieurs fonds vous seront attribués, pour lesquels vous serez en charge de: **Suivi de la performance**: - Contribution à la modélisation de la performance des fonds et au suivi budgétaire ; - Calcul et contrôle de la valeur liquidative (NAV)...
-
Business Development Operations Analyst
il y a 2 jours
Luxembourg Satispay Temps plein**Our Company** Satispay is an Italian Scale-up operating in the mobile payment industry. Having created a payment system independent from debit and credit cards, Satispay allows users to pay stores or friends from their smartphone. Our offices are in Milan, Luxembourg City and Berlin. If you want to know more about us, give a look here: And if you still...
-
Leader Cybersecurity Analyst, Luxembourg, Onsite
il y a 2 semaines
Luxembourg Ams Human Resources Srl Temps pleinAbout the job Leader Cybersecurity Analyst, Luxembourg, onsite for UE Digital-first. Customer-centered. Startup-inspired. Enterprise-oriented. Our company is an information technology, consulting and business process services company, that develops expertise around the unique technology and challenges facing each of these industries in an increasingly...
-
Information Security Governance Risk and
il y a 6 jours
Luxembourg Schroders Temps plein**Information Security Governance Risk & Compliance,** ***Analyst (EMEA)** **Who we’re looking for** **About Schroders** We’re a global investment manager. We help institutions, intermediaries and individuals around the world invest money to meet their goals, fulfil their ambitions, and prepare for the future. We have around 6,000 people on six...
-
Information Security Officer
il y a 3 semaines
Luxembourg JAO Temps pleinjao.eu Description In the context of reinforcing its operations and the implementation of ISO27001, JAO is in search for an Information Security Officer able to on-board and to develop quickly in a diverse IT eco-system. The person is foreseen to take over a series of duties associated with the ISMS management and to deliver support in the projects design...