
Security Operations Center Analyst
1 day ago
The Cyber Security Analyst will report to the SOC Manager who will coordinate his activities with the rest of the SOC team. He/she will perform and participate to security events investigations, follow standardized SOC processes and provide security event analyses for incident remediation activities.
Key responsibilities
- Work as a member of the SOC team to identify, prioritize and respond to security incidents.
- Actively monitor and support internal and external systems cybersecurity platforms, liaising with colleagues as necessary
- Compile standardized incident notification reports identifying potential risks / threats
- Adhere to pre-defined KPIs regarding incident analysis and notification
- Follow specific information security controls and policies
- Undergo security platform trainings, internal procedures and industry certification trainings as part of the onboarding process
- Perform enrichment activities using different Threat Intelligence platforms, sandboxes and other additional relevant security tools.
- Work with customers/partners to guide them through different detections and alerts.
- Work with customers/partners during the incident response process.
- Provide customers/partners guidance on best practices and remediation.
- Conduct analysis on the output of ProActive Hunt platform including host and network-based detections.
- Proactively search for signs of malicious activities within th monitored infrastructure
Requirements
- Willingness to work in shifts (24/7/365)
- The candidate should have the ability to perform host and network-based security event analysis that includes reviewing running processes, network connections, file system activity, system logs etc.
- The candidate should have a good understanding of TTP in use by attackers, such as the MITRE Att&ck framework or equivalent.
- Good understanding of Windows and Linux server environments including commonly configured roles and related technologies, such as web, database, domain services, etc.
- The candidate should have basic knowledge about SIEM, EDR and XDR security platforms, and a some understanding of different detections, rules and correlations.
- The candidate should be able to perform multiple tasks, quickly react and adapt in complex uncertain environments and manage multiple cases simultaneously.
- The candidate should have good communication and presentation skills.
- The candidate must be able to determine the severity of security alert notifications and required escalation / investigation flows
- The candidate is expected to determine the root cause of potential cybersecurity incidents, based on security alerts starting points
- The candidate must be able to triage false positive detections regarding security events
- The candidate is expected to document (in brief or in full) the result of work performed, based on the type of task
- The candidate is expected to stay up to date with changes in technology and trends in cybersecurity attacks to be able to detect and/or prevent them
Education and Experience:
- Bachelor's Degree in Computer Science or Information Security, or a related field (or equivalent professional experience)
- One year or more experience with SIEM, EDR or XDR platforms operation – or alternate fields of Security Monitoring, Security Operations and similar domains
- Certifications: CompTIA Security+, Analyst+, Blue Team Level 1, CySa+, CEH, or similar certifications are advantageous, but not mandatory.
- Technical experience: basic exposure to SIEM, IPS/IDS, EDR/XDR, firewalls and/or other security controls technology
- Basic or higher understanding about identifying and investigating security incidents and understanding current threat landscapes and attack techniques.
- Excellent attention and focus on cybersecurity relevant details, such as artifacts, indicators of compromise and alert investigation / pivoting and drill down
- Strong cross-functional collaboration skills
- Good knowledge and understanding of cybersecurity risk concepts and principles, as a means of relating business needs to security controls.
- Good knowledge of mainstream operating systems: Windows and Linux, and security technologies including host-based security tools.
- Knowledge of core network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts as well as network traffic analysis tools.
- Communication Skills: Strong communication skills and the ability to work effectively within a team.
- Language Skills: Very good English skills are required.
-
Security Analyst
2 weeks ago
Bucharest Metropolitan Area, Romania REI Development Services Full time 40,000 - 60,000 per yearAre you looking for the challenge of being part of a creative and dedicated technology team?If so, you've found yourself in the right place at the right time.At REI Development Services, we are seeking a talentedSecurity Analystwho is enthusiastic, creative, responsible and eager to grow with us. We value our employees as our most important asset and the key...
-
Security Controls Operations Analyst
1 day ago
Bucharest, Bucureşti, Romania Orange Full time 40,000 - 60,000 per yearHow would you like to work in IT & Communication, toying with cutting edge technologies and enjoying your life? Come closer to .What We're Looking ForWe are seeking a Security Controls Operations Analyst to join our Information Security department. The ideal candidate is proactive, detail-oriented, and passionate about information security, with a strong...
-
Security Incident Operations Analyst
1 day ago
Bucharest, Bucureşti, Romania Orange Full time 30,000 - 60,000 per yearLocul de muncă: BucharestHow would you like to work in IT & Communication, toying with cutting edge technologies and enjoying your life? Come closer to #LifeAtOrange.What we're looking forWe are looking for a Security Incident Operations Analyst to join our Information Security department. The right candidate is analytical, responsive, and committed to...
-
Cyber Security Business Analyst
1 week ago
Bucharest, Bucureşti, Romania Luxoft Full time 30,000 - 60,000 per yearProject description Join our Development Centre in Bucharest and become a member of our open-minded, progressive and professional team. In this role you will be working for one of our world-famous clients. The Chief Security Office (CSO) of our client comprises the Chief Information Security Office (CISO) and the Corporate Security unit. The CISO...
-
Business Analyst
2 weeks ago
Bucharest, Bucureşti, Romania Computas Development Center (Romania) Full time 40,000 - 60,000 per yearComputas is a Norwegian provider of IT solutions and consulting services in technological innovation, present in Oslo, Copenhagen, and Bucharest. Creative Enthusiasm, Integrity, Usability, and Cooperation are the core values that accompany us in our desire to create technological innovation that brings human progress. Computas is passionate about delivering...
-
Bucharest, Bucureşti, Romania Oracle Full time €40,000 - €80,000 per yearThe Global Physical Security (GPS) System Team manages physical security technology across the corporation. Oracle is seeking a highly experienced and multi-talented member of the physical security systems leadership team.The role is to Implement, develop, and manage the Global Data Center security systems service desk function, providing repair and...
-
Application Security Engineer
1 week ago
Bucharest, Bucureşti, Romania Nord Security Full time 40,000 - 80,000 per yearThe world's most advanced VPN, and a whole lot more. If you're a curious problem-solver who carves their own path, join the team behind Threat Protection Pro, the NordLynx protocol, and the fastest VPN on the planet—tools that put privacy, security, and control back in people's hands.Your impact? Helping millions take back control of their online...
-
SOC Cyber Security Engineer
1 day ago
Bucharest Metropolitan Area, Romania BIT SENTINEL Full timeShort Company DescriptionBIT SENTINEL is one of the largest cybersecurity providers in Central and Eastern Europe, trusted by organizations across all major industries. Our Security Operations Center (BSS-CERT) delivers comprehensive Managed Security Services, from advanced threat detection and response to robust compliance solutions.Our strength is forged...
-
Senior Accounting Analyst
1 day ago
Bucharest Metropolitan Area, Romania HN Services Romania Full time 60,000 - 80,000 per yearWith 42 years of experience in the international market and 19 years in Romania, HN Services means:Digital transformation and IT professionals;Diversity of technical roles;Wide IT market exposure in different domains of activity;A dedicated internal training center for software development We, at HN Services Romania, are expanding our team in Bucharest, and...
-
Bucharest, Bucureşti, Romania Booking Holdings Full time 30,000 - 60,000 per yearBooking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...