The opportunityWe’re looking for Security Analyst with expertise in SIEM, EDR and NSM solutions. As part of our EY-cyber security team, who shall work as Senior analyst who will assist clients in detecting and responding to security incidents with support of their SIEM, EDR and NSM solutions.Your Key ResponsibilitiesOperational support using SIEM solutions (Splunk, Sentinel, CrowdStrike Falcon LogScale), EDR (CrowdStrike, Defender, Carbon Black) and NSM (Fidelis, ExtraHop) for multiple customers.Specialized in second level incident validation and more detailed investigationPerforms incident coordination and communication with client to ensure effective containment, eradication, and recoverySIEM support activities which includes adhoc reporting and basic troubleshootingAdvise customers on best practices and use cases on how to use this solution to achieve customer end state requirements.Provide near real-time analysis, investigating, reporting, remediation,
coordinating and tracking of security-related activities for customerSkills And Attributes For SuccessCustomer Service oriented - Meets commitments to customers; Seeks feedback from customers to identify improvement opportunities.Good knowledge of SIEM technologies such as Splunk, Azure Sentinel, CrowdStrike Falcon LogScale from a Security analyst’s point of viewTroubleshoot issues associated with SIEM solution.Ability to work with minimal levels of supervision or oversight.Exposure to IOT/OT monitoring (Claroty, Nozomi Networks etc.) is a plusGood knowledge and experience in Security MonitoringGood knowledge and experience in Cyber Incident ResponseKnowledge in ELK StackKnowledge in Network monitoring technology platforms such as Fidelis XPS, ExtraHopKnowledge in endpoint protection tools, techniques, and platforms such as Carbon Black, Tanium, CrowdStrike, Defender etcTo qualify for the role, you must haveB. Tech./ B.E. with sound technical skillsAbility to work in 24x7 shiftsStrong command on verbal and written
📌 Cyber SOC (Málaga)
🏢 Ey
📍 Málaga