
Cybersecurity Analyst SOC L2
5 days ago
**About Capgemini**
A global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of 270,000 team members in nearly 50 countries. With its strong 50 year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fueled by the fast evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms. The Group reported in 2020 global revenues of EUR 16 billion.
Group Cybersecurity creates and manages global security policies, tracks compliance from Business Units and Global Business Lines, provides strong communications, training and awareness campaigns to employees, designs global security architecture based on threats and market evolution, and manages Group Cybersecurity Projects and Operations.
In order to keep building the team, Group Cybersecurity is looking for a Security Analyst SOC L2.
Professionals help to protect an organization by employing a range of security tools and technologies and processes to prevent, detect and manage cyber threats.
You will be working within a team composed of 12 people located internationally as Group Cybersecurity Operations SOC. Your primary role would be to support all activities undertaken by the Threat Intelligence pillar.
You will work with the wider team to prioritize and schedule work within your pillar. You will work with various members of the team to develop and input into technical projects, report, and oversee progress to make sure goals are met.
**What you’ll be tasked with**:
To be a member of the Security Operations Centre (SOC), a team who deliver specific Cybersecurity Services to the CAPGEMINI GROUP. The role is focused on delivering Intrusion Detection / Prevention services and assisting with Investigations as a result of escalated problems and security alerts from client security information & event management systems (SIEM). Additional activities include periodic and ad-hoc host Vulnerability Assessments and Application security assessments. Security policy enforcement is also key, and is achieved through various assurance activities such as auditing Firewalls, and conducting privilege account reviews etc.
You will be responsible for ensuring the integrity of client IT infrastructures and protecting the information systems residing upon them from external and internal attack / compromise.
L2 provide support to L1 services and will analyse security events that have been triaged by L1 services or where further assistance is needed. This will involve responding to incidents and determining the appropriate next steps for the investigation and any remediation action.
Analysts will operate as Subject Matter Experts and will provide the relevant assistance to the L1 SIEM analyst to support them. They will also initiate security incidents, creating tickets, and where appropriate, initiating the process leading to declaration of a major incident.
L2 Analysts will perform slow time analysis of data to identify trends or other suspicious behavior that is not captured by use cases.
They are also responsible for creation and maintenance of playbooks and other processes used by the team along with some basic SIEM administration; including improvements such as Use Case creation and onboarding of devices already supported by the platform.
- Analytics and rule authoring
- Fine tuning of alerting
- Level 2 support for security incidents
- Validate, suggest or create knowledge base articles
- Reviews and updates SIEM security incidents, suspicious events and analyses recommendation
- Work with L1 to decrease false positives
- Creates/maintains dashboards, correlation rules, thresholds etc.
- Report review
**What you’ll need to excel in the role**:
- Knowledge and experience in IT Network Security
- IP Networking
- Experience in the use of Intrusion Detection systems, management and responding to and the tuning of alerts
- Experience in conducting host vulnerability assessments
- Experience in the use of SIEM platforms, preferably IBM QRadar.
- Unix & Microsoft Administration
Vulnerability Awareness / Understanding
- Experience using tools such as IBM Resilient, Falcon Crowdsike, FireEye HX, VirusTotal Enterprise, Onyphe, ThreatQuotient, Shodan, etc
-
SOC Analyst
2 days ago
Singapore OX Consultancy Full timejob Title:SOC Analyst L2: (10+ Yrs of exp) Location:Singapore/Onsite job Title :SOC Analyst L2: (10+ Yrs of exp) The primary function of an L2 Analyst is to ensure that the SOC team is performing its Items functions as required and to trouble shoot problematic incidents and events. In summary, the L2 Analyst shall also act as the technical...
-
Cybersecurity Analyst SOC L1
5 days ago
Singapore Capgemini Full time**About Capgemini** A global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of 270,000 team members in nearly 50...
-
L2 SOC Analyst
1 week ago
Singapore INSYGHTS SECURITY PTE. LTD. Full timeAbout the Role We are seeking a skilled and self-motivated Level 2 SOC Analyst to take a leading role in cyber threat operations within our MSSP SOC environment. This role also involves operating as a Subject Matter Expert (SME) and mentoring junior L1 analysts. As a key member of our Security Operations Center, you will play a critical role in...
-
SOC L1 Engineer
1 week ago
Singapore Yoda Technologies Pty Ltd Full timeAbout the Role We are seeking a proactive and detail-oriented SOC (Security Operations Center) L1 Engineer to join our cybersecurity team. As the first line of defense, you will be responsible for monitoring, detecting, and responding to security alerts and incidents in real time. This role requires strong analytical skills, attention to detail, and a...
-
SOC Analyst
1 week ago
Singapore INFINITE COMPUTER SOLUTIONS PTE LTD Full time**Job Summary**: We are looking for a Level 1 SOC Analyst to monitor and respond to security alerts. You will be the first point of contact for identifying potential security incidents and escalating them as needed. This is a great role for someone starting their career in cybersecurity. **Key Responsibilities**: - Monitor security alerts using tools like...
-
L2 SOC Analyst
2 weeks ago
Singapore INSYGHTS SECURITY PTE. LTD. Full timeAbout the Role We are seeking a skilled and self-motivated Level 2 SOC Analyst to take a leading role in cyber threat operations within our MSSP SOC environment. This role also involves operating as a Subject Matter Expert (SME)and mentoring junior L1 analysts. As a key member of our Security Operations Center, you will play a critical role in monitoring,...
-
L2 SOC Analyst
2 weeks ago
Singapore INSYGHTS SECURITY PTE. LTD. Full timeAbout the Role We are seeking a skilled and self-motivated Level 2 SOC Analyst to take a leading role in cyber threat operations within our MSSP SOC environment. This role also involves operating as a Subject Matter Expert (SME) and mentoring junior L1 analysts. As a key member of our Security Operations Center, you will play a critical role in monitoring,...
-
SOC Analyst
2 days ago
Singapore Flare Consulting Full time $90,000 - $120,000 per yearJob Description – SOC AnalystPosition OverviewWe are seeking a SOC Analyst to join our cybersecurity operations team. The ideal candidate will be responsible for monitoring, detecting, investigating, and escalating security threats across our enterprise environment. This role requires strong analytical skills, hands-on technical expertise in SIEM and...
-
SOC Analyst
2 weeks ago
Singapore Snow Software Full time**Job Description**: The SOC Analyst is responsible for monitoring and responding to the security events and risks of the business and documenting their research, triage, and mitigation efforts. They are expected to assess the effectiveness of detections, risk management controls, and policies used to prevent security threats. They are involved in the...
-
SOC Analyst L1
1 week ago
Singapore Xcellink Pte Ltd Full timeSOC Analyst L1 role is for fresh grads/ experienced, minimally some knowledge or certification in cybersecurity foundations. Their background should have relevant IT knowledge, certifications or education. This program will include a 3 day full-day intensive training in Level 1 Basics of Cybersecurity foundations such as Introduction to Cybersecurity,...