Cybersecurity Analyst SOC L2
1 week ago
**About Capgemini**
A global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of 270,000 team members in nearly 50 countries. With its strong 50 year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fueled by the fast evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms. The Group reported in 2020 global revenues of EUR 16 billion.
Group Cybersecurity creates and manages global security policies, tracks compliance from Business Units and Global Business Lines, provides strong communications, training and awareness campaigns to employees, designs global security architecture based on threats and market evolution, and manages Group Cybersecurity Projects and Operations.
In order to keep building the team, Group Cybersecurity is looking for a Security Analyst SOC L2.
Professionals help to protect an organization by employing a range of security tools and technologies and processes to prevent, detect and manage cyber threats.
You will be working within a team composed of 12 people located internationally as Group Cybersecurity Operations SOC. Your primary role would be to support all activities undertaken by the Threat Intelligence pillar.
You will work with the wider team to prioritize and schedule work within your pillar. You will work with various members of the team to develop and input into technical projects, report, and oversee progress to make sure goals are met.
**What you’ll be tasked with**:
To be a member of the Security Operations Centre (SOC), a team who deliver specific Cybersecurity Services to the CAPGEMINI GROUP. The role is focused on delivering Intrusion Detection / Prevention services and assisting with Investigations as a result of escalated problems and security alerts from client security information & event management systems (SIEM). Additional activities include periodic and ad-hoc host Vulnerability Assessments and Application security assessments. Security policy enforcement is also key, and is achieved through various assurance activities such as auditing Firewalls, and conducting privilege account reviews etc.
You will be responsible for ensuring the integrity of client IT infrastructures and protecting the information systems residing upon them from external and internal attack / compromise.
L2 provide support to L1 services and will analyse security events that have been triaged by L1 services or where further assistance is needed. This will involve responding to incidents and determining the appropriate next steps for the investigation and any remediation action.
Analysts will operate as Subject Matter Experts and will provide the relevant assistance to the L1 SIEM analyst to support them. They will also initiate security incidents, creating tickets, and where appropriate, initiating the process leading to declaration of a major incident.
L2 Analysts will perform slow time analysis of data to identify trends or other suspicious behavior that is not captured by use cases.
They are also responsible for creation and maintenance of playbooks and other processes used by the team along with some basic SIEM administration; including improvements such as Use Case creation and onboarding of devices already supported by the platform.
- Analytics and rule authoring
- Fine tuning of alerting
- Level 2 support for security incidents
- Validate, suggest or create knowledge base articles
- Reviews and updates SIEM security incidents, suspicious events and analyses recommendation
- Work with L1 to decrease false positives
- Creates/maintains dashboards, correlation rules, thresholds etc.
- Report review
**What you’ll need to excel in the role**:
- Knowledge and experience in IT Network Security
- IP Networking
- Experience in the use of Intrusion Detection systems, management and responding to and the tuning of alerts
- Experience in conducting host vulnerability assessments
- Experience in the use of SIEM platforms, preferably IBM QRadar.
- Unix & Microsoft Administration
Vulnerability Awareness / Understanding
- Experience using tools such as IBM Resilient, Falcon Crowdsike, FireEye HX, VirusTotal Enterprise, Onyphe, ThreatQuotient, Shodan, etc
-
SOC Analyst
4 days ago
Singapore OX Consultancy Full timejob Title:SOC Analyst L2: (10+ Yrs of exp) Location:Singapore/Onsite job Title :SOC Analyst L2: (10+ Yrs of exp) The primary function of an L2 Analyst is to ensure that the SOC team is performing its Items functions as required and to trouble shoot problematic incidents and events. In summary, the L2 Analyst shall also act as the technical...
-
Cybersecurity Analyst SOC L1
1 week ago
Singapore Capgemini Full time**About Capgemini** A global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of 270,000 team members in nearly 50...
-
SOC Analyst
2 weeks ago
Singapore INFINITE COMPUTER SOLUTIONS PTE LTD Full time**Job Summary**: We are looking for a Level 1 SOC Analyst to monitor and respond to security alerts. You will be the first point of contact for identifying potential security incidents and escalating them as needed. This is a great role for someone starting their career in cybersecurity. **Key Responsibilities**: - Monitor security alerts using tools like...
-
SOC Analyst
1 week ago
Singapore infinite Computer Solution Full time $80,000 - $120,000 per yearJob Summary:We are looking for a Level 1 SOC Analyst to monitor and respond to security alerts. You will be the first point of contact for identifying potential security incidents and escalating them as needed. This is a great role for someone starting their career in cybersecurity.Key Responsibilities:Monitor security alerts using tools like SIEM,...
-
IT Security Specialist
4 days ago
Singapore Housing and Development Board Full time**What the role is** - As an IT Security Specialist, you will be part of the Cybersecurity Operations & Governance Department in HDB’s IT Group. **What you will be working on** - You will be part of the Security Operations Centre (SOC) Team who will be responsible for the following areas: - Tier 2 SOC Analyst responsible for investigating alerts and...
-
SOC Analyst
2 weeks ago
Singapore NCS Full time**SOC Analyst**: **Date**:17 Dec 2024 **Location**: Singapore, Singapore **Company**:Singtel Group NCS is a leading technology services firm that operates across the Asia Pacific region in over 20 cities, providing consulting, digital services, technology solutions, and more. We believe in harnessing the power of technology to achieve extraordinary...
-
Security Analyst
1 week ago
Singapore ENSIGN INFOSECURITY (CYBERSECURITY) PTE. LTD. Full time**Responsibilities** - Produce intelligence outputs to provide an accurate depiction of the current threat landscape and associated risk through the use of customer, community, and open source reporting - Produce actionable intelligence information for delivery to colleagues and customers in the form of technical reports, briefings, and data feeds -...
-
SOC Analyst
2 weeks ago
Singapore ITCAN Full time**SOC** **Analyst** To perform threat monitoring, advance triage, incident response, and follow up on customer query - Monitor, review and profile the events. - Assess each event based on factual information and wider contextual information available - Produce reports to provide an accurate depiction of the current threat landscape and associated risk. -...
-
SOC Analyst
3 days ago
Singapore UST Global Full time1 Opening - Singapore **Role description**: - At least 1 year of experience as a security analyst - Proficient in investigating s related to phishing, malware, and similar threats. - Solid understanding of computer security and networking concepts - Experience with SIEM or similar security tools. - Knowledgeable about endpoint protection tools - Skilled in...
-
L1 Cyber Security SOC Analyst
2 weeks ago
Singapore YY SMART TECH PTE. LTD. Full timeJob Overview We are seeking for a vigilant L1 Security Operations Center (SOC) Analyst to join our 24/7 cybersecurity team. Operating on 12-hour rotational shifts, you will perform real-time monitoring, threat detection, and initial incident response using SIEM/XDR platforms. The role requires foundational knowledge of network security, log analysis, and...