SOC Cyber Threat Intelligence Expert

il y a 1 semaine


Luxembourg Amexio Temps plein

**AmeXio** is a global digital transformation partner for corporate clients and government institutions. We help businesses with their digital growth in the areas of **Customer Experience, Enterprise Content, Customer Communication, and Structured Content Management.**

At **AmeXio**, we believe that work should be more than just a job — it should be an adventure. We’re a company that thrives on teamwork, innovation, and most importantly, having fun while we do it. We are always there for each other and safeguard our pleasant and approachable atmosphere. If you are looking for a place where you can develop yourself further and where you are inspired, you have come to the right place

In this role, you will:

- Support junior CTI and SOC analysts in their analysis, especially in case of cases escalation
- Coordinate CTI activities, including infrastructure design, under SOC Lead guidance, including documentation drafting, maintenance and improvement of such documents
- Run daily checks to report relevant findings to other teams, e.g. new vulnerabilities, 0-days, new exploit patterns (IoA - Indicator of Attack), particular IoC (Indicator of Compromise)
- Configure and maintain a TIP (Threat Intel Platform), including observables ingestion, feeds quality assessment and guaranteeing the following qualities for a set of HiFi observables that are pushed to SIEM for alerting: Accurate, Timely, Complete and Industry-focused.
- Contextualize all the above, when context is not enough, to make it actionable for other teams (e.g. mainly for SOC analysis, but also collaborating with engineers to automate such task(s) or with other SOC analysts to tune or develop new Use Cases - Alerts, Reports, Dashboards)
- Summarise and report monthly on all the above to SOC Lead, CISO and customers
- Support SIEM engineers for intel-based events enrichment (e.g. geolocation, carrier context)

**Requirements**:

- Bachelor or Master degree in Computer Science, Software Engineering, Information Security, or similar technical field
- **4+ years working within the cybersecurity field**, with emphasis on Security Operations and Threat Intelligence
- Usage, handling and maintenance of a TIP (e.g. Anomali, ThreatConnect, ThreatQ, also MISP), including knowledge of STIX/TAXII standards, F3EAD and MITRE ATT&CK Enterprise models
- Usage of Splunk as SIEM and thus intermediate SPL query language knowledge and skills
- Knowledge of one or more programming/scripting language (e.g. Python)
- Passionate about IT and Cybersecurity in particular, with a willingness to stay up to date on hot topics in the field
- Ability to reasonably balance best practices and problem solving in practical situations, considering stakeholders' considerations of risks and reasons
- **Fluent in English, both written and verbal**

**Preferred qualifications**:

- One or more of the following certifications:

- SANS/GIAC GOSI "Open Source Intelligence"
- SANS/GIAC GCTI "Cyber Threat Intelligence"
- Mossé MTIA "Threat Intelligence Analyst"
- Splunk Power User
- Splunk Enterprise Security Admin
- Previous experience in analysis of Threat Actors, including capability to perform attribution of alerts based on context, as well as performing actor/hypothesis-driven Threat Hunting
- Fluent in French and/or Italian



  • Luxembourg Uni Systems Temps plein

    At Uni Systems, we are working towards turning digital visions into reality. We are continuously growing and we are looking for a professional **Leader Cybersecurity Analyst to join our UniQue team in Luxembourg!** **What will you be bringing to the team?** - You will be aggregating, transforming, analysing, interpreting or enriching cyber threat...

  • Threat Intelligence Analyst

    il y a 1 semaine


    Luxembourg RTL Group BCE Temps plein

    RTL is Europe’s leading entertainment brand standing for entertainment, independent journalism, inspiration, energy and attitude. With our TV channels, streaming services, radio stations and online platforms in Germany, the Netherlands, France, Hungary and Luxembourg, we reach millions of people across Europe every day. Do you value team spirit and a...

  • Threat Intelligence Analyst

    il y a 2 semaines


    Luxembourg CLT-UFA S.A. Temps plein

    . **Your tasks**: - Manage and maintain the threat-intelligence platform, ensuring its effectiveness and efficiency (T1776, T1798) - Curate, integrate, and manage third-party threat intelligence feeds (T0569, T0751) - Analyze threat actor tools, tactics, and procedures (TTPs) to understand their methods and potential impact (T0845, T1766) - Provide...

  • Threat Intelligence Analyst

    il y a 2 semaines


    Luxembourg RTL Group BCE Temps plein

    RTL is Europe's leading entertainment brand standing for entertainment, independent journalism, inspiration, energy and attitude. With our TV channels, streaming services, radio stations and online platforms in Germany, the Netherlands, France, Hungary and Luxembourg, we reach millions of people across Europe every day. Do you value team spirit and a...

  • SOC Analyst L1

    il y a 6 jours


    Luxembourg KGR Temps plein

    Nous recrutons pour un cabinet de conseil en IT à rayonnement international un Security Operations Center Analyst au Luxembourg. Au sein d'une équipe pluridisciplinaire, vous travaillerez dans le département CYBER-SOC afin d'anticiper, de détecter et de répondre correctement aux incidents de sécurité affectant l'information et les systèmes...

  • SOC Threat Hunter

    il y a 2 semaines


    Luxembourg Contracts Recruitment Consulting Temps plein

    **SOC Threat Hunter - Brussels or Luxembourg** English speaking only. EU citizen only for EU Security clearance purposes. Our client are looking for 2 experienced SOC Threat Hunters. - To reinforce the hunting field, an experience hunter - Good experience as security analyst with Splunk platform (or other platform allowing to search on big data) - good...

  • Support Cti and SOC Analyst

    il y a 1 semaine


    Luxembourg Business Training Luxembourg SA Temps plein

    30 years of experience in high-end training **Business Training’s experience is built on solid ground**: we have been providing cutting-edge ICT training sessions for about 20 years. Originally, Business Training specialized in IT technical and end-user trainings (Windows, MS Office, etc.). A few years ago, our company widened the range of its training...

  • C-soc Analyst

    il y a 1 semaine


    Luxembourg HIKMA-SOLUTIONS Temps plein

    About the Company Join a dynamic and passionate team where you can flourish, innovate, and create using cutting-edge technologies. Our company prioritizes listening, ensuring you quickly find your place within our organization. We regularly organize workshops and training sessions to enhance your skills and involve you in projects that align with your...

  • C-soc Analyst

    il y a 1 semaine


    Luxembourg HIKMA-SOLUTIONS Temps plein

    Hikma-Solutions is looking for one of its clients "C-SOC Analyst (f/m)" Tasks As part of a dynamic and passionate team, you, as C-SOC Analyst, will have the opportunity to fully invest yourself, to innovate and to create using the latest technologies. As listening is at the heart of our company, you will quickly find your place. To understand our business,...

  • SOC Analyst

    il y a 2 jours


    Luxembourg IKE Temps plein

    Entreprise innovante à dimension humaine. **Growing**together**: Évoluez avec iKe. l'ESN qui redéfinit l'excellence. Misez sur la formation continue, profitez d'un suivi personnalisé et contribuez au succès de nos projets tout en façonnant votre carrière. Ambition, transparence, excellence: nous grandissons ensemble. Chez iKe. la technologie n'est...