freehire launches on Product Hunt on 26 August.

Follow →

Junior SOC Analyst

Open 40d posting dated 2 days ago · reposted 2×

Summary

Junior SOC Analyst in Bucharest monitors and responds to cyber threats, using SIEM, EDR, and SOAR tools to investigate alerts and incidents in Worldline's IT infrastructure.

The opportunity

Join the Cyber Defense Center (CDC) division which is in charge of protecting Worldline IT systems, workstations and production assets, against Cyber Threats.

Within the Security Operations Center (SOC) and in close collaboration with the other teams that make up the CDC, namely Incident Response - Cyber Threat Intelligence - Assessments - Vulnerabilities Operations Center - Engineering - Continuous Improvement, we would like you to contribute to the delivery and ongoing development of our core services which are triage, investigation and response to security alerts and incidents.

As a Security Analyst, you will also be expected to support your teammates and to help them grow, while continuously improving the industrialization, automation, efficiency and quality of our SOC services.

Day-to-day responsibilities

Detection /Monitoring

  • Investigate all suspicious activities.
  • Monitoring security access and reporting potential malicious activities.
  • Investigate breaches, preliminary investigation by scoring, merging, scoping, triage ranking.
  • Investigate threat actors TTP investigation.
  • Monitor vulnerability and risk.

Analysis

  • Analyse security gaps in our global and multifaceted IT infrastructure.
  • Identify root causes.
  • Provide insights into attacks details.

Perform

  • Perform security tests both regularly and on demand using methods and frameworks.
  • Manage security incidents, quarantine and remediate threats.
  • Update and Share threats information.
  • Organize threat landscape monitoring.
  • Defense strategy adviser.
  • IOCs management.
  • Share technical intelligence content.
  • Prevent and advisory against threat actors and potential attacks.

Continuous Improvement

  • Improve continuously our test methods, strategies and tools.
  • Develop and maintain incident response plan.
  • Develop and maintain threat scenarios.
  • Contribute to the enhancement of the incident detection.
  • Suggest and showcase security improvement measures to the security board.
  • Support colleagues in adjacent areas like incident response, forensics or ISO configuration audits.

Who are we looking for

We look for big thinkers. People who can drive positive change, step up and show what’s next – people with passion, can-do attitude and a hunger to learn and grow. In practice this means:

  • 2 years+ of experience in similar role as part of a SOC or equivalent.
  • Familiarity with SIEM (preferably Splunk), EDR (preferably MS Defender / SentinelOne) and SOAR (preferably SwimLane).
  • Understanding the methods and tactics used by the Threat Actors.
  • Knowledge of security frameworks like MITRE Att&ck and Cyber Kill Chain.
  • Knowledge of OS (Windows / Linux), Network Technologies (VPN, FW, GW, Proxies) and Applications Security.
  • Strong team spirit and excellent communication skills.
  • Rigorous approach to work, organization, structured and analytical mindset, strong commitment, and eagerness to learn.
  • Academic degree in Information Technology or Security (Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field). Security Certification (e.g. CEH) would be an advantage.
  • Fluency in spoken and written English is mandatory as we are international teams.

Perks & Benefits

  • Hybrid Working Policy
  • Gift vouchers on the occasion of Christmas/Easter Holidays
  • Private medical services
  • 21 vacation days/year
  • Referral bonuses for new hires recommended by you
  • WFH & Flexible Working Hours
  • Full access to the “Learning” platform

See also