Talent.com
Ta oferta pracy nie jest dostępna w Twoim kraju.
Cyber Incident & Response Team

Cyber Incident & Response Team

EuroclearPoland
16 dni temu
Opis pracy

Division

Cyber Defense Center (CDC) is part of the Chief Information Security Officer Office. The main responsibility of the team is to reduce the risk of Euroclear cyber threat surface by monitoring for malicious intent targeted at Euroclear’s services, its supporting assets, and people. We do this through the Security Operations Centre (SOC), Cyber Incident & Response Team (CIRT), Detection & Response Engineering Team (D&R Eng), and Cyber Threat Management (CTM) capabilities. This includes security incident and event monitoring, cyber analytics, incident management and forensic analysis, cyber threat intelligence, vulnerability management, penetration testing, brand, and digital footprint monitoring.

The CDC supports capabilities within the security domain and acts as subject matter expert across all divisions in the company as well as interacts with external stake holders, including customers, oversight bodies, threat intelligence providers, and third parties.

CIRT establishes and executes the security incident response framework to ensure a consistent and effective approach to security incident management. Performs in-depth incident reviews, impact assessments, root-cause analysis and manage stakeholder engagement. Executes forensic analysis / investigations and supports Fraud and Personnel related incident investigations.

Role

In your role as CIRT Analyst you support the incident response capabilities and forensic technologies, understand the impact of potential security incidents on complex corporate environments, support and assess incident remediation to a conclusion. You will also assist with reporting and stakeholder management activities.

Your primary duties will be :

  • Independently handles investigations within framework of procedures.
  • Owns the incident and leads the resolution, even the most complex, critical and sensitive cases.
  • Identify any incident / request that requires increased focus and actions necessary to meet committed service levels.
  • Collaborate and work with Threat Intelligence and the SOC personnel to develop automated and integrated incident management processes.
  • Execute / manage the Cyber Security Incident Management process to ensure timely mitigation and escalate to appropriate incident resolver groups leaders. Execute third-tier incident handling including incident remediation in collaboration with the IT resolver team.
  • Execute / assist in the delivery of the organisation’s security incident management including coordination and communication with the wider security organisation, the business, IT and external stakeholders where required.
  • Validate and report deviation of incident response playbooks for various scenarios involving SOC and CIRT personnel.
  • Lead major cyber security incidentsand provide support to the organization whenever cyber incidents occur. Independently handles investigations within framework of procedures.
  • Manage incident response and forensic technologies, understand potential security incident impact on complex corporate environments and the ability to assess and manage incidents to a conclusion.
  • Manage reporting and internal / external stakeholder management activities. Requires deep understanding of the business and infrastructure to enable choosing the most efficient and effective proposal to deal with an incident / threat.
  • Oversee root cause analysis for major cyber security incidents ensuring that the suitable problem management, issue management or risk management processes are followed as well as tracking issues through to resolution.
  • Forensics : technical expertise to gather and preserve digital evidence; investigative skills to think outside the box to build up a picture by combing through various sources of information; integrity to deal with sensitive and confidential matters.
  • Execute & Assist in forensic investigations into potential or confirmed incidents in alignment with company guidelines.
  • Ensure preservation of digital evidence throughout investigations; escalate exceptions to experienced team members.
  • Expert interface for legal cases related to Euroclear - how to build case from cyber perspective.
  • Engage in industry wide cyber exercises.
  • May provide evidence in court and act as representative in fraud forum.
  • Developingand implementing of supporting processes, exercising and acceptance of the framework and processes before it goes live.
  • Support engagement with Threat Intelligence and the CDC personnel to develop integrated incident management processes.
  • Develop and maintain close working relationships with centrally and locally-based device owners, business stakeholders, business / application / solution architecture, application, IT & operational teams.

Technical skills

  • Information Security related experience
  • 3+ years expertise in incident response
  • Good knowledge of at least of these Operating Systems : Windows, Unix / Linux
  • Good knowledge of networking (TCP / IP)
  • Good knowledge of forensic technique and process
  • Good knowledge of evidence collection, including chain of custody
  • Good knowledge of cloud evidence collection and forensics capabilities
  • Good knowledge of both live and offline acquisition techniques
  • Good knowledge of memory analysis
  • Knowledge of Python or PowerShell Scripting
  • Excellent English communication skills (written and oral)
  • Assets

  • Certifications GIAC Certified Incident Handler (GCIH), Forensic Analyst (GCFA), Forensic Examiner (GCFE), GIAC Reverse Engineering Malware (GREM) or other equivalent technical certifications.
  • Knowledge of network traffic analysis and forensics
  • Knowledge of the following technologies : firewalls, IDS, proxy, WAF, Active Directory, EDR, antivirus, ...
  • Experience with vulnerability management & threat management, vulnerability scanning, Data Loss Prevention (tools and processes)
  • Knowledge of IDA or other decompilation tools
  • Knowledge of network traffic analysis and forensics
  • Knowledge of zOS, Tandem
  • Soft skills

  • Good security mindset.
  • Able to work autonomously.
  • Sense of urgency and able to apply a risk-based approach to prioritize work.
  • A problem solver : you recognize underlying issues and problems; you analyze root causes and define solutions accordingly.
  • Eager to work with challenging and technical concepts; You are ready to dive into modern technologies and extend your own expertise.
  • Reporting and continuous improvement mindset.
  • You have good influencing / persuasion skills, obtaining approval of others with good arguments, appropriate influencing methods and a certain “natural authority” (persuasion);
  • You examine matters from a distance and put them in a broader context and time perspective (vision);
  • A team-focused mentality with ability to work & collaborate effectively in a team environment.
  • Good leadership and communication skills, whether on the field, in the team or with management : you are a keen team player and coordinate work amongst people from different areas or divisions. A good relationship builder with strong diplomacy skills.
  • Capability to ensure confidentiality and discretion in performing sensitive tasks.
  • At ease in a fast-changing environment, with a flexible and pragmatic mindset.
  • Accurate, acting with attention to details
  • Can express well-founded opinions and positions and understanding their consequences (judgement)
  • You examine matters from a distance and putting them in a broader context and time perspective (vision)
  • Good leadership and communication skills, whether on the field, in the team or with management : you are a keen team player and coordinate work amongst people from different areas or divisions. A good relationship builder with strong diplomacy skills
  • At ease in a fast changing environment, flexible and pragmatic, open-minded
  • Project Management appetite
  • Client focus and delivery oriented
  • Capability to ensure confidentiality and discretion in performing sensitive tasks
  • Reporting and continuous improvement mindset
  • LI-NS1

    Utwórz powiadomienie o ofertach pracy dla tego wyszukiwania

    Incident Response • Poland

    Podobne oferty
    Senior Incident Response Analyst

    Senior Incident Response Analyst

    Mondelēz InternationalPoland
    Are You Ready to Make It Happen at Mondelēz International?.Join our Mission to Lead the Future of Snacking.You work in the Cybersecurity Response Center at MDLZ as a Senior Information Security and...Pokaż więcejOstatnia aktualizacja: 11 dni temu
    Cyber GRC Consultant

    Cyber GRC Consultant

    InfosysPoland
    Consultant-Senior Consultant level.Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients' most important challenges? We are grow...Pokaż więcejOstatnia aktualizacja: 16 dni temu
    Cyber Security Engineer

    Cyber Security Engineer

    VerifonePoland
    For more than 30 years Verifone has established a remarkable record of leadership in the electronic payment technology industry. Verifone has one of the leading electronic payment solutions brands a...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    Principal Cloud Security Lead (remote 100%) @ Crestt

    Principal Cloud Security Lead (remote 100%) @ Crestt

    CresttRemote, Poland
    Join a large-scale digital transformation project for an international bank! We’re looking for a seasoned.As part of a cross-functional team working with a lead integrator and third-party vendors, ...Pokaż więcejOstatnia aktualizacja: 26 dni temu
    Lead Software Engineer - SRE @ Kontakt.io

    Lead Software Engineer - SRE @ Kontakt.io

    Kontakt.ioRemote, Poland
    We reduce waste, cut costs, and improve revenue by improving throughput, asset utilization and staff productivity.Our platform uses AI, RTLS, and EHR data to enable self-learning agents to automate...Pokaż więcejOstatnia aktualizacja: 4 dni temu
    Security Analyst, Cyber Readiness

    Security Analyst, Cyber Readiness

    AutodeskPoland
    As a Security Analyst - Cyber Readiness, you will be a key player in establishing and shaping the Cyber Readiness function at Autodesk. This net-new role involves creating and implementing processes...Pokaż więcejOstatnia aktualizacja: 16 dni temu
    Payroll Incident / Risk Specialist

    Payroll Incident / Risk Specialist

    RemotePoland
    All of our positions are fully remote.You do not have to relocate to join us!.This is an exciting time to join Remote and make a personal difference in the global employment space as a.Payroll Inci...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    Cyber GRC Consultant

    Cyber GRC Consultant

    Infosys Consulting - EuropePL
    Zdalna
    Quick Apply
    Consultant-Senior Consultant level.Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients' most important challenges? We are grow...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    Security Analyst @ Devire

    Security Analyst @ Devire

    DevireRemote, Poland
    The company helps companies of all sizes transform how people connect, communicate, and collaborate.Currently, for our Client, we are looking for a . Benefits : Private Medical Care, Multisport card,...Pokaż więcejOstatnia aktualizacja: 10 dni temu
    Security Operations Senior Engineer

    Security Operations Senior Engineer

    ASSA ABLOY Entrance SystemsPL
    Security Operations Senior Engineer.Do you want to be part of a winning Team providing one of the most successful engineering access control solutions to the market? Join our team in Krakow and enj...Pokaż więcejOstatnia aktualizacja: 2 dni temu
    Detection Engineer - Security (SIEM, Go or Python) B2B

    Detection Engineer - Security (SIEM, Go or Python) B2B

    OpendoorPoland
    Hybrid on site 3 days per week.This is a B2B contract position.Opendoor focuses on identifying and protecting assets, detecting anomalies and attacks, responding to compromise, and recovering from ...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    Global Security GRC Analyst (Governance, Risk, and Compliance)

    Global Security GRC Analyst (Governance, Risk, and Compliance)

    DentonsPoland
    We are driven to always be the firm of the future, to challenge the status quo, and to provide holistic business solutions to our clients in new and innovative ways. We are the world's largest globa...Pokaż więcejOstatnia aktualizacja: 16 dni temu
    Senior Detection and Response Engineer

    Senior Detection and Response Engineer

    IntellectsoftPoland
    Intellectsoft is a software development company delivering innovative solutions since 2007.We operate across North America, Latin America, the Nordic region, the UK, and specialize in industries l...Pokaż więcejOstatnia aktualizacja: 16 dni temu
    IT Security Engineer

    IT Security Engineer

    Panasonic Automotive Systems EuropePoland
    Panasonic Information Systems Company | tbc.Are you looking for a new opportunity that offers meaningful work with true purpose? We would love to welcome you to our multinational team!.We invest in...Pokaż więcejOstatnia aktualizacja: 16 dni temu
    Security Engineer - Remote (Poland)

    Security Engineer - Remote (Poland)

    OLXPoland, Poland
    Security Engineer - Remote (Poland).Remote Poland, PolandOLX – Engineering / Full-time / Remote.At OLX, we work together to build a more sustainable world through trade. We make it safe, smart, and co...Pokaż więcejOstatnia aktualizacja: 13 dni temu
    Senior Cyber Security Analyst

    Senior Cyber Security Analyst

    Sigma SoftwarePoland
    SQL / strong Cybersecurity / strong Data analysis / good BI tools / good.We are seeking a Senior Cyber Security Analyst to work with a highly dynamic AdTech ecosystem, aiming to protect the digital...Pokaż więcejOstatnia aktualizacja: 16 dni temu
    GSC : DLP Ops Analyst

    GSC : DLP Ops Analyst

    HSBCPologne
    Some careers shine brighter than others.If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, o...Pokaż więcejOstatnia aktualizacja: 27 dni temu
    Cloud Security Architect AWS

    Cloud Security Architect AWS

    Infotree Global SolutionsPoland, Poland
    About this position : We are looking for talented cyber security architects to down full stack security architecture and implementation for the industry-leading cloud-native DevOps and edge deployme...Pokaż więcejOstatnia aktualizacja: 24 dni temu