drjobs L2 Computer Security Incident Response

L2 Computer Security Incident Response

Employer Active

drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Porto - Portugal

Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Job Description

Job Title: L2 Computer Security Incident Response

Location: Porto Portugal

Work regime: Hybrid (3 times a week in the office)


Job description:

As member of CIB EMEA Cyberdefense (domain of Cybersecurity) the L2 Computer Security Incident Response (CSIRT) Analyst plays an essential role focusing on the response and investigation of cybersecurity incidents including DLP. This role is crucial for quicky addressing alerts conducting analysis and escalating to L3 CSIRT analyst the sensitive/most critical cases.


Main Tasks:

  • Handling of cyberinvestigations provided by CyberSOC usecases and DLP detection systems
  • Analyze the effectiveness of existing DLP controls and continuously seek improvement in technical/functional and process
  • Contribute to CyberSOC usecase development and optimization
  • Monitor DLP related events conduct investigations and respond to data leakage incidents according to internal procedures (including interviews with key contributors i.e. HR Procurement DPO )
  • Develop and enhance data protection policies and rules across the various systems manage exceptions
  • Respond to and facilitating eDiscovery requests from IT S
  • Maintain accurate and detailed records of incidents in the group GRC toolecurity HR Legal and Compliance
  • Assist in governance by delivering the details reports and KPIs
  • Contribute to cybersecurity governance including the delivering reports and KPI related to the activity including PCC
  • Quick escalate complex incident to Level 3 CSIRT Analysts ensuring that all relevant data and preliminary findings are accurately communicated to facilitate further analysis
  • Contribute to industrialization/formalization of Cyber Defense processes and effectiveness
  • Provide analysis and expertise on cyberincidents including rootcause by identifying preventive measures

Technical Skills:

  • Event & Incident monitoring and response (identify alert and contain)
  • Cybersecurity (general knowledge in logs analysis general knowledge regarding endpoints security (e.g.: EDR solution))
  • Scripting language (Python)
  • Protocol knowledge (HTTP SMTP)
  • SIEM (Security Information Event Monitoring)
  • SOAR (Security Orchestration Automation and Response)
  • DLP (Data Loss Prevention)

Language Skills

  • English: N4 Mastery

Soft Skills:

  • Proactivity / Critical thinking
  • Decision making
  • Resilience
  • Ability to collaborate / teamwork
  • Creativity & innovation / Problem solving

Remote Work :

No

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.