Euroclear

Security Operations Center Tier 2 Analyst

Posted: 1 minutes ago

Job Description

Job DescriptionDivision: Chief Information Security Office (CISO) As a global critical financial infrastructure, the protection of Euroclear information andassets is fundamental to the company’s business. Information Security is at the core of our services, firmly embedded in the management systems and processes of the company. You will be joining our Chief Information Security Office in charge of putting in place the required controls to adequately and effectively protect our information assets.Please note that this is a permanent position, and we do not offer freelance or contract arrangements for this role.Your roleCandidates in this role will respond to events or conduct incident response operations according to documented procedures and industry’s best practices. Candidates in this role must have excellent communication skills.Candidates will be required to participate in multiple intelligence communities and be able to disseminate pertinent information throughout the SOC.Ideal candidates should have extensive experience in Linux and/or Windows operating systems as well as multiple security areas such as SIEM, IDS, EDR, and WAF while having a deep knowledge of networking and attack methods. Must display enthusiasm and interest in Information Security.Your Responsibilities & DutiesFirst point of escalation for the Tier 1.Hunting for suspicious anomalous activity based on data alerts or data outputs from various toolsets.Review and build new operational processes and procedures. Review the automated process workflows and provide feedback for updates/enhancements. Triage and investigation of advanced vector attacks such as botnets and advanced persistent threats (APTs).Advice on the tuning of IDS, proxy policy, in-line malware tools based on threat feeds, trust and reputation data, incidents, or vulnerabilities and exploits of downstream systems.Provide use case creation/tuning recommendations to the Security Intelligence Analyst based on findings during investigations or threat information reviews.Lead response actions for incidents where CIRT is not required to intervene (low/medium priority).Works directly with data asset owners and business response plan owners during low and medium severity incidents.Performing administrative tasks per management request (ad-hoc reports / trainings).Support the creation and maintenance of a knowledge base.Provide training, knowledge sharing sessions to the SOC team.Mentor the Tier 1 team.Support the Service Delivery Manager with reporting.Your Qualifications Required3+ year prior experience in a similar positionExperience of network security zones, Firewall configurations, IDS policiesIn depth knowledge TCP/IPKnowledge of systems communications from OSI Layer 1 to 7Experience with Systems Administration, Middleware, and Application AdministrationExperience with Network and Network Security tools administrationKnowledge of log formats and ability to aggregate and parse log data for syslog, http logs, DB logs for investigation purposesAbility to define a containment strategy and execute Experience with Security Assessment tools (NMAP, Nessus, Metasploit, Netcat)Good knowledge of threat areas and common attack vectors (MITRE ATT&CK) Nice to have:Splunk and XSOAR experienceExperience with log search tools such as Splunk, usage of regular expressions and natural language queriesKnowledge of common security frameworks (ISO 27001, COBIT, NIST)Knowledge of encryption and cryptographyPrevious experience in the financial industryScripting (automation) and familiarity with Cloud (AWS/Azure)About UsWhy join usEmbark on your new adventure at Euroclear, and work at the heart of the global capital markets. We connect over 2,000 financial institutions across the globe. As an open and resilient infrastructure, we contribute to the stability of the financial markets. We help clients cut through complexity, lower costs, and mitigate risks of financial transactions. At Euroclear, we have the clear ambition to use our key role to facilitate and accelerate a sustainable global financial system.What We OfferWork closely with inspiring, supportive and engaged colleagues from more than 80 different countries. Practice your talents in a highly professional international environment. Join a learning and development environment with an emphasis on knowledge sharing and training.Competitive salary and comprehensive benefits.New ways of workingFind your own optimal balance within our hybrid working model, where you can connect at the office and also benefit from remote working.Great Place to Work for AllWe are committed to creating an inclusive culture that celebrates diversity and strives to be a Great Place to Work for All. All qualified applicants will be considered for employment, regardless of any aspect that makes them unique (including race, religion, national origin, gender, sexual orientation, age, marital status, pregnancy, disability, ...). If you need any specific accommodation due to disability or any other reason, you can let the recruiter know during your application process.About The TeamAs a global critical financial infrastructure, the protection of Euroclear information and assets is fundamental to the companys' business. Security is at the core of our services, firmly embedded in the management systems and processes of the company. You will be joining our Chief Information Security Office (CISO) in charge of putting in place the required controls to adequately and effectively protect our information assets.

Job Application Tips

  • Tailor your resume to highlight relevant experience for this position
  • Write a compelling cover letter that addresses the specific requirements
  • Research the company culture and values before applying
  • Prepare examples of your work that demonstrate your skills
  • Follow up on your application after a reasonable time period

You May Also Be Interested In