Now hiring

Senior Security Analyst (COL: BOGOTA, Bogotá D.C., CO, 110221) @ B. Braun Melsungen AG

COL: BOGOTA, Bogotá D.C., CO, 110221OnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<p>You’re an important part of our future. Hopefully, we&apos;re also a part of yours! At B. Braun, we protect and improve the health of people worldwide. This is also our vision for IT. You see technology as an opportunity, and you develop solutions that secure our business in the long term, we would like to implement the digital transformation of B. Braun with you. With fresh ideas, drive and team spirit, we are working to launch the medical technology of tomorrow and safeguard the healthcare of the future. Together.</p> <p>That&apos;s Sharing Expertise.</p> <p style="line-height:normal;margin:0.0in 0.0in 8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:18.0pt">Job Description</span></strong></p> <p style="line-height:normal;margin:0.0in 0.0in 8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">As a Security Analyst in our CDC (Cyber Defense Center) Department, you will play a crucial role in safeguarding our organization’s digital assets. Your responsibilities will span various aspects of cybersecurity, including threat detection, incident response, and vulnerability management. You’ll collaborate with cross-functional teams to enhance B.Braun’s security posture and ensure compliance with industry standards.</span></p> <p style="line-height:normal;margin:0.0in 0.0in 8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:18.0pt">Key Tasks and Responsibilities</span></strong></p> <p style="margin:0.0in 0.0in 8.0pt 0.5in;line-height:normal;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:12.0pt">Security Monitoring</span></strong></p> <ol style="margin-bottom:0.0in;margin-top:0.0px" start="1" type="1"> <ul style="margin-bottom:0.0in;margin-top:0.0px" type="circle"> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Monitor security alerts and events across SIEM, IDS/IPS, firewalls, and endpoint protection platforms.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Investigate and analyze suspicious activities, anomalies, and potential threats.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Continuously improve detection rules.</span></li> </ul> </ol> <p style="margin:0.0in 0.0in 8.0pt 0.5in;line-height:normal;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:12.0pt">Incident Response</span></strong></p> <ol style="margin-bottom:0.0in;margin-top:0.0px" start="1" type="1"> <ul style="margin-bottom:0.0in;margin-top:0.0px" type="circle"> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Triage and investigate security incidents to determine root cause and impact.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Respond to security incidents promptly and effectively.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Automated and/or coordinate incident handling, containment, eradication, and recovery efforts.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Document incident details and lessons learned for continuous improvement.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Develop and maintain incident response playbooks and procedures.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Work closely with other teams (network, IT-Security, system administrators, etc.) during incident resolution.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Experience in tabletop exercises and real-time incident simulations.</span></li> </ul> </ol> <p style="margin:0.0in 0.0in 8.0pt 0.5in;line-height:normal;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:12.0pt">Threat Hunting / Purple Team</span></strong></p> <ol style="margin-bottom:0.0in;margin-top:0.0px" start="1" type="1"> <ul style="margin-bottom:0.0in;margin-top:0.0px" type="circle"> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Conduct proactive threat hunting exercises to identify potential vulnerabilities and attack vectors.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Lead red team (offensive security) exercises to simulate real-world attacks and assess our defenses.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Provide actionable insights to improve our security controls based on purple team findings.</span></li> </ul> </ol> <p style="margin:0.0in 0.0in 8.0pt 0.5in;line-height:normal;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:12.0pt">Vulnerability Management</span></strong></p> <ol style="margin-bottom:0.0in;margin-top:0.0px" start="1" type="1"> <ul style="margin-bottom:0.0in;margin-top:0.0px" type="circle"> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Regularly assess and prioritize vulnerabilities across our environment.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Coordinate vulnerability scanning and patch management efforts.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Ensure timely remediation of critical vulnerabilities.</span></li> </ul> </ol> <p style="margin:0.0in 0.0in 8.0pt 0.5in;line-height:normal;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:12.0pt">Penetration Testing</span></strong></p> <ol style="margin-bottom:0.0in;margin-top:0.0px" start="1" type="1"> <ul style="margin-bottom:0.0in;margin-top:0.0px" type="circle"> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Collaborate with external penetration testers and conduct internal penetration tests.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Identify vulnerabilities in our systems, applications, and network infrastructure.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Provide actionable recommendations to remediate identified weaknesses.</span></li> </ul> </ol> <p style="margin:0.0in 0.0in 8.0pt 0.5in;line-height:normal;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:12.0pt">KPI / Compliance Monitoring</span></strong></p> <ol style="margin-bottom:0.0in;margin-top:0.0px" start="1" type="1"> <ul style="margin-bottom:0.0in;margin-top:0.0px" type="circle"> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Define and track key performance indicators (KPIs) related to security operations.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Monitor compliance with security policies, standards, and regulations.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Generate reports and metrics for management and stakeholders.</span></li> </ul> </ol> <p style="line-height:normal;margin:0.0in 0.0in 8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><strong><span style="font-size:18.0pt">Qualifications and Skills</span></strong></p> <ul style="margin-bottom:0.0in;margin-top:0.0px" type="disc"> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Relevant certifications (e.g., CISSP, CEH, CompTIA Security+, etc.) are highly desirable.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Strong analytical skills and attention to detail.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Experience with security tools, such as EDR, vulnerability scanning, SOAR, mail security, SIEM platforms, vulnerability scanners, and penetration testing frameworks.</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">Knowledge of industry standards (ISO 27001, NIST, CIS Controls, etc.)</span></li> <li style="line-height:normal;margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;font-size:11.0pt;font-family:Calibri, sans-serif"><span style="font-size:12.0pt">English level B2 or C1 to efficiently work in a multi-national environment</span></li> </ul> <p> </p><p> </p> <p>Become part of a corporate culture that actively promotes constructive exchanges between colleagues, customers and partners. Work with us to improve people&apos;s lives around the world. </p>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores