You’ll be part of the Security Operations & Response team, which is responsible for operational governance and oversight for BAU and strategic Bank projects.
Your responsibilities will also include:
Conducting preliminary log analysis and correlation of security and audit monitoring logs (2nd/3rd level analysis is focus, beyond just 1st level)
Leading in identification, investigation and possible remediation of Security Alerts/Events/Incidents across multiple sources (Splunk, Forcepoint DLP, FireEye/Trellix, DDoS)
Supporting, maintaining and continuously improving, and overall lifecycling of our security tools, alerts, processes and use-cases
Supporting in the areas of Vulnerability Management to review reported vulnerabilities across areas of identification, including DAST, Pen Testing and Infrastructure Scanning
Reviewing and assessing various perimeter systems' requests assigned for security operational approval, with a view to enforcing governance, established best practices and standards
You’ll need to demonstrate:
Fundamental understanding and broad experience in security event monitoring, analysis and investigation and log collection systems (SIEM)
Hands-on experience and fundamental knowledge in Threat and Vulnerability analysis, including topics such as CVSS scoring, triaging of reported advisories for prioritization, and best-practices to track to completion/remediation
Knowledge of IT Security standards like the NIST cybersecurity framework, MITRE Att&ck framework / cyber kill chain, CIS benchmark and OWASP Top10
Outstanding customer service and communication skills, as well as excellent verbal and written communications skills in English; German is a big plus