Associate - Senior Security Operations Analyst
Deutsche Börse Group
Job Description
Your area of work: DBG CERT is looking for a highly motivated Security Engineer whose responsibility will be to perform the initial triage, analysis and escalation (if required) to SOC Incident Manager of cyber threats, reported by our SIEM solution, in a timely fashion and in accordance with DBG quality standards and pre-defined runbooks as well as with regulators requirements and contractual agreements (e.g. SLA response/resolution time) with our internal customers. Your responsibilities: Perform initial triage of security alert triggered by DBG SIEM solution in accordance with steps defined in Use Case-based documented runbooks Properly document investigations and triage outcome in corresponding ticketing tool, maintaining also detailed records of stakeholder communication If required and in accordance with investigation steps detailed in runbooks, escalate the alerts to SOC Incident manager in line with pre-defined alert priority and corresponding SLAs Work as part of a 24/7 operation (3 shifts pattern), following required handover procedures to ensure seamless service continuity during shift changes.
Flexibility to work night shifts is also expected In-office presence strictly required due to the criticality of assignments and sensitivity of data handled Ensure adherence with DBG line of conduct, quality standards and corporate values Your profile: University degree in Computer Science or similar Previous experience in a CERT or SOC team (1-2 years) with security SIEM alerts handling via a ticketing tool and 24/7 operation Basic knowledge of cyber threats and vulnerabilities: how to properly identify, triage, and remediate threats based on threat intelligence as well as on analysis of security events, log data and network traffic. Deliverable-oriented, with good report-writing skills and adaptation on complex and highly regulated environment Good analytical and logical thinking skills Team player, willing to cooperate with multiple colleagues across office locations in a cross-cultural environment Fluent in spoken and written English, including security terminology