Support Cti and SOC Analyst

il y a 6 jours


Luxembourg Business Training Luxembourg SA Temps plein

30 years of experience in high-end training

**Business Training’s experience is built on solid ground**: we have been providing cutting-edge ICT training sessions for about 20 years. Originally, Business Training specialized in IT technical and end-user trainings (Windows, MS Office, etc.). A few years ago, our company widened the range of its training catalogue to also meet the increasing demand for best-of-breed management courses (PRINCE2®, IPMA, ITIL, etc.).

Support junior CTI and SOC analysts in their analysis, especially in case of cases escalation

Coordinate CTI activities, including infrastructure design, under SOC Lead guidance, including documentation drafting, maintenance and improvement of such documents

Run daily checks to report relevant findings to other teams, e.g. new vulnerabilities, 0-days, new exploit patterns (Ioa - Indicator of Attack), particular IoC (Indicator of Compromise)

Configure and maintain a Tip (Threat Intel Platform), including observables ingestion, feeds quality assessment and guaranteeing the following qualities for a set of Hifi observables that are pushed to SIEM for alerting: Accurate, Timely, Complete and Industry-focused.

Contextualize all the above, when context is not enough, to make it actionable for other teams (e.g. mainly for SOC analysis, but also collaborating with engineers to automate such task(s) or with other SOC analysts to tune or develop new Use Cases - Alerts, Reports, Dashboards)

Summarise and report monthly on all the above to SOC Lead, CISO and customers

Support SIEM engineers for intel-based events enrichment (e.g. geolocation, carrier context)

Basic qualifications

Bachelor or Master degree in Computer Science, Software Engineering, Information Security, or similar technical field

4+ years working within the cybersecurity field, with emphasis on Security Operations and Threat Intelligence

Usage, handling and maintenance of a Tip (e.g. Anomali, Threatconnect, Threatq, also MISP), including knowledge of Stix/Taxii standards, F3ead and MITRE ATT&CK Enterprise models

Usage of Splunk as SIEM and thus intermediate SPL query language knowledge and skills

Knowledge of one or more programming/scripting language (e.g. Python)

Passionate about IT and Cybersecurity in particular, with a willingness to stay up to date on hot topics in the field

Ability to reasonably balance best practices and problem solving in practical situations, considering stakeholders' considerations of risks and reasons

Fluent in English, both written and verbal

Preferred qualifications

**One or more of the following certifications**:
Sans/GIAC Gosi "Open Source Intelligence"

Sans/GIAC GCTI "Cyber Threat Intelligence"

Mossé Mtia "Threat Intelligence Analyst"

Splunk Power User

Splunk Enterprise Security Admin

Previous experience in analysis of Threat Actors, including capability to perform attribution of alerts based on context, as well as performing actor/hypothesis-driven Threat Hunting.

Fluent in French and/or Italian



  • Luxembourg Amexio Temps plein

    **AmeXio** is a global digital transformation partner for corporate clients and government institutions. We help businesses with their digital growth in the areas of **Customer Experience, Enterprise Content, Customer Communication, and Structured Content Management.** At **AmeXio**, we believe that work should be more than just a job — it should be an...

  • SOC Analyst

    il y a 2 semaines


    Luxembourg WDS Global Limited Temps plein

    **Job Title: SOC Analyst** **Job Type: Contract** **Job Location: Luxembourg** **Contract Rate: Euro 530 per day** **Contract Length: 12 Months with Multiple extensions** Our Client, one of the world s foremost IT Consultancies, is looking to recruit a Contract SOC Analyst to join their client in Luxembourg Onsite. **Client requires EU...

  • SOC Analyst

    il y a 2 jours


    Luxembourg LMGC Temps plein

    LMGC is an IT services company which specialized in SAP when it was founded in 2006. For over 10 years, LMGC has been providing IT expertise to its Luxembourgish and European customers. Well-known and recognized for its SAP know-how in Europe, LMGC is also a major player in the Greater Region, supporting its customers in the modernization and digitization of...


  • Luxembourg Uni Systems Temps plein

    At Uni Systems, we are working towards turning digital visions into reality. We are continuously growing and we are looking for a professional **Leader Cybersecurity Analyst to join our UniQue team in Luxembourg!** **What will you be bringing to the team?** - You will be aggregating, transforming, analysing, interpreting or enriching cyber threat...

  • C-soc Analyst

    il y a 7 jours


    Luxembourg HIKMA-SOLUTIONS Temps plein

    About the Company Join a dynamic and passionate team where you can flourish, innovate, and create using cutting-edge technologies. Our company prioritizes listening, ensuring you quickly find your place within our organization. We regularly organize workshops and training sessions to enhance your skills and involve you in projects that align with your...

  • C-soc Analyst

    il y a 7 jours


    Luxembourg HIKMA-SOLUTIONS Temps plein

    Hikma-Solutions is looking for one of its clients "C-SOC Analyst (f/m)" Tasks As part of a dynamic and passionate team, you, as C-SOC Analyst, will have the opportunity to fully invest yourself, to innovate and to create using the latest technologies. As listening is at the heart of our company, you will quickly find your place. To understand our business,...

  • C-soc Analyst

    il y a 2 semaines


    Luxembourg Brixio Temps plein

    Are you ready to take your career in cybersecurity to the next level? We have an amazing opportunity for you to join as a C-SOC Analyst at a leading cybersecurity firm, located in the vibrant city of Luxembourg! As a member of CYBER-SOC department, you'll be part of a dynamic team dedicated to anticipating, detecting, and responding to security incidents...

  • Deep - SOC Analyst

    il y a 2 semaines


    Luxembourg POST Group Temps plein

    **DEEP - SOC Analyst**: **Date**:19 déc. 2024 **Lieu**: Luxembourg, Luxembourg **Entreprise**:POST Luxembourg In order to strengthen our teams, DEEP is currently looking for a motivated **SOC Analyst (M/F/n)**full time. **Vos missions**: - Participate in a rotation as L2 monitoring customer infrastructure and responding to alerts - Ensure security...

  • Deep - SOC Analyst

    il y a 2 semaines


    Luxembourg EBRC Temps plein

    In order to strengthen our teams, DEEP is currently looking for a motivated **SOC Analyst (M/F/n)**full time. **Vos missions**: - Participate in a rotation as L2 monitoring customer infrastructure and responding to alerts - Ensure security incident identification, registration, assessment, quantification, escalation, reporting, communication, mitigation,...

  • SOC Analyst

    il y a 1 semaine


    Luxembourg Sogeti Temps plein

    Are you passionate about cybersecurity and willing to learn and grow as part of a dedicated experienced security expert team? SOGETI is looking for a **SOC Analyst** to join our company. **_ Your challenge:_** During 24x7 shifts Cybersecurity Incident monitoring: - Analyze and triage of the alerts from sensitive security devices to identify cybersecurity...