01 ago
|
EY (Ernst u0026 Young)
|
Málaga
01 ago
EY (Ernst u0026 Young)
Málaga
Experteer Overview
In this SOC Level 3 role, you will lead high-severity incident responses within a 24/7 security operations team. You’ll work to detect, investigate, and remediate threats, coordinating with cross-functional IT and security teams. You will apply forensics, memory and endpoint analysis, and threat intelligence to drive containment and recovery. This position offers opportunities to shape incident response playbooks, mentor junior responders, and influence security posture at EY GDS Spain. You’ll be part of a fast-paced, general delivery network that values growth, collaboration, and meaningful impact.
Compensaciones / Beneficios
• Lead response to high-severity incidents and coordinate with other teams
• Preserve evidence, collect data, and present forensic findings to stakeholders
• Collaborate with IT and security teams to address incidents
• Investigate root causes of incidents and determine corrective actions
• Analyze network traffic with tools like Wireshark and TCPdump
• Perform endpoint analysis, live response, and memory forensics
• Proactively search for threats and vulnerabilities in the environment
• Update and improve incident response processes and playbooks
• Document incidents, actions, and lessons learned; prepare executive summaries
• Participate in incident response calls and post-incident reviews
• Provide mentorship to lower-level incident responders
Responsabilidades
• Experience with digital forensics tools and techniques
• Proficiency with SIEMs (Splunk, Microsoft Sentinel, LogScale, Google Chronicle, IBM QRadar)
• Experience with EDR/XDR platforms (CrowdStrike, Microsoft Defender, SentinelOne, Cortex XSIAM, Carbon Black)
• Understanding of SANS Top 20 and OWASP Top 10
• Knowledge of network protocols, operating systems, and security technologies
• Proficiency with incident detection and response tooling
• Familiarity with malware analysis and reverse engineering
• Scripting skills (Python, PowerShell)
• 5+ years in security operations, incident response, or forensics
• Willingness to work in a 24/7 operations center
• Excellent verbal and written communication skills
• Bachelor’s degree in IT and related certifications preferred
• Certifications such as CEH, CHFI, Sec+, ITILv3, GCFA, ECIH, GCIH, CySA+ (preferred)
Requisitos principales
• hybrid work model
• career development programs
• well-being initiatives
• volunteering opportunities
• recognition programs
📌 Cyber SOCSenior - EY GDS Spain - Hybrid (Málaga)
🏢 EY (Ernst u0026 Young)
📍 Málaga