Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailCybersecurity Threat Detection AssociateRole requirements:
▪ Understanding of SIEM technologies (e.g., Splunk, Azure Sentinel, QRadar,
LogRhythm etc.) is desirable.
▪ Strong understanding of Microsoft Sentinel and KQL
▪ Extensive experience and proven record of success in integrating custom
connectors with Sentinel.
▪ Maintain a keen understanding of evolving threats and vulnerabilities.
▪ Understanding of Threat Hunting & Intelligence as well as Vulnerability
Management is preferred.
▪ Understanding of MITRE Att&ck and NIST Frameworks is preferred.
▪ Understanding of building SIEM use cases is a plus.
▪ Creation of reports and content decks for client projects & engagement
proposals
▪ Experience with Cyber Security managed services is a plus.
▪ At least 3 years of relevant work experience
▪ Open minded seeking innovative solutions
▪ Ability to work within a fast-paced & unstructured environment.
▪ Ability to interact efficiently with senior members of the firm across
multiple time zones.
▪ Self-Starter Attitude
Essential skills & attributes:
● Experience in Consulting or in working within multinational environments.
● Good communication and presentation skills
● Ability and willingness to learn new subject areas.
● Ability to work within a fast-paced & unstructured environment. Must be able
to multi-task and effectively and continually prioritise.
● Excellent oral and written English skills. German language proficiency is a
significant plus.
Education
● University Degree, ideally in the fields of Computer and Information Science,
Computer Applications, Computer Engineering, Information CyberSecurity,
Information Technology, Management Information Systems
● Cybersecurity certifications are a plus.
● The following Microsoft certifications are a significant plus:
o Azure Security Engineer Associate (AZ-500)
o Azure Solutions Architect Expert (AZ-303 or AZ-304 or AZ-405)
o Cybersecurity Architect Expert (SC-100)
o Security Operations Analyst Associated (SC-200)
o Identity and Access Administrator Associate (SC-300)
o Information Protection Administrator Associate (SC-400) Required Skills
Full Time