The opportunity In your role at EY, you’ll be inspired by a team of the brightest business and technical minds in cyber security. We are...
The opportunity
In your role at EY, you’ll be inspired by a team of the brightest business and technical minds in cyber security. We are passionate champions for our clients and know from experience that the best solutions for our clients’ needs come from working hard together. As part of our team, your voice matters, and you will do important work that has impact, on people, businesses and nations. Our industry and our company move fast, and you can be sure that you will always have room to learn and grow. We’re proud of our team and the important work we do to build confidence for a more connected world.
Your key responsibilities
The Security Operations Center Senior Analyst manages multiple Security technologies and produces enhancements that allow SOC team members to work collaboratively and efficiently while responding to threats. The individual in this role will work as part of a cybersecurity operations team responsible for carrying out 24x7 onsite security treat detection and response operations.
Skills and attributes for success
- Ability to manage multiple priorities simultaneously
- Experience in networking fundamentals (TCP/IP, Network Layers, etc.)
- Experience in malware operation and indicators
- Moderate knowledge of current threat landscape (threat actors, APT, cyber-crime, etc.)
- Moderate khnowledge of security related technologies and their functions (IDS, IPS, EDR, IRP, FW, WAF, SIEM, etc.)
- Basic programming skills in various disciplines including scripting language
To qualify for the role, you must have
- Bachelor’s degree relevant to Information Technology / Engineering
- Ideal candidate will have minimum of 4+ years of security operation center experience in areas such as
- Intrusion detection
- Incident response
- Incident investigation and handling
- Firewall administration, etc. Solid understanding of core security and infrastructure technologies, such as: firewall, VPN, IDS/IPS/SIEM, Anti-virus, E-mail, DNS, Microsoft OS, & Linux OS
- Experience with command line interface and some level of exposure to administering systems and services for various operating systems (Windows PowerShell and Unix).
- Knowledge of security incident and event management, log analysis, network traffic analysis, malware investigation/remediation, SIEM correlation logic and alert generation
- Demonstrated ability to analyse, triage and remediate security incidents
- Understanding of Security principles, techniques and technologies such as OWASP Top 10
- Knowledge of SIEM solution such as Splunk, RSA Security Analytics, ArcSight, LogRhythm, QRadar, Splunk or similar
- Experience in doing use cases on SIEM
Ideally, you’ll also have
- Can work under pressure
- Related Certification: Example: Sec+, CHFI, CIH, CEH, CCNA Security, Splunk related Certification
- Supervisory Experience on the current role
What working at EY offers
- Support, coaching and feedback from some of the most engaging colleagues around
- Opportunities to develop new skills and progress your career
- The freedom and flexibility to handle your role in a way that’s right for you
About EY
As a global leader in assurance, tax, transaction and advisory services, we’re using the finance products, expertise and systems we’ve developed to build a better working world. That starts with a culture that believes in giving you the training, opportunities and creative freedom to make things better. Whenever you join, however long you stay, the exceptional EY experience lasts a lifetime. And with a commitment to hiring and developing the most passionate people, we’ll make our ambition to be the best employer by 2020 a reality.
If you can confidently demonstrate that you meet the criteria above, please
contact us as soon as possible.
Make your mark.
Join us in building a better working world.
Apply now.
COMMENTS