About this role
Eurofins is expanding its Security Operations Centre (SOC) and is looking to strengthen the SOC Consultant (SOC IR L3) Incident Response team. In this role, you will handle the most complex security incidents, leading deep investigations and driving effective remediation actions.
As a SOC IR L3 Consultant, you will play a key role in the Security Incident Management process—leading resolution efforts, collaborating with cross-functional teams, and applying your expertise to continuously improve the organization’s overall security posture.
Required
Perform triage and in-depth investigation of cybersecurity events using SIEM, IDS, EDR, antivirus, internet footprint, proxy tools, FWs.Correlate security events from SOC and other sources to assess business riskIdentify and analyze intrusion attempts (successful or unsuccessful) through detailed event reviewKnowledge from appropriate forensic data acquisitionConduct host-based and network-based forensic analysisAbility to conduct memory investigation and malicious code investigationDevelop and maintain SOC procedures and processesLead and manage security incidents across the full IR lifecycleEnsure confidentiality and protection of sensitive dataCollaborate with other Security and IT teams on remediation and mitigationWillingness to work overtime and adjust to reasonable demands from management in case of critical incidents being escalated to L3 for immediate handlingStrong working knowledge of different attack vectors and attack types.Experience with leading security incident responseAble to multitask and give equal and/or required attention to a variety of functionsAbility to work independently and take ownership of projects and initiativesStrong troubleshooting, reasoning, and analytical problem-solving skillsAbility to communicate technical details effectively in writing and verbally to IT personnel and managementTeam player with the ability to work autonomously Minimum of 5 years of professional experience as a SOC Analyst, threat researcher or hunter or a similar comparable role dealing with incident handling, alert tracking, cybersecurity case management
What do we offer?
Good working environment.Opportunities for further growing and development.Lunch and transportation included.And more...