The Cybersecurity Analyst position is a critical member of the global Cybersecurity team, supporting across IT, OT and Product security with identifying and evaluating cybersecurity risks in relation to incident response and management, including incident identification, investigations, and response. Additionally, this role will entail assisting with operational duties such as data protection, vulnerability management, and acquisition integration across standardized platforms.
- Proficiency in using Security Information and Event Management (SIEM) solutions, such as CrowdStrike NG-SIEM.
- Knowledge in different scripting languages, such as PowerShell and Python.
- Assist with vulnerability management program to mitigate identified security vulnerabilities.
- Conduct threat hunting using system logs and tools to detect anomalies and intrusions.
- Recognize and investigate potential intrusion attempts, including successful and unsuccessful incidents.
- Performs initial Incident Response (IR) and Management activities.
- Creation of incident response playbooks (Ransomware, Denial of Server, Phishing).
- Maintains and updates IR standard operating procedures and other similar documentation.
- Collaborate with the Security Operations Manager as an incident handler when needed.
- Conduct security reviews and manage security alerts from multiple platforms.