IT Security Analyst

IT Security Analyst

We are looking for an IT Security Operation Center analyst that has experience in working for SOC team to join our security unit. As an IT Security Analyst you will be a part of a team which is responsible for monitoring, analysing, and investigating of suspicious and potentially malicious activity within the networks and company systems and respond to them. You will cooperate with global IT teams and business units while remediating recognized threats and gaps according to procedures and playbooks.


Main job tasks and responsibilities:
  • Monitoring of implemented Microsoft Advanced Threat Protection (ATP) systems and triaging alerts within business hours
  • Investigating and resolving of ATP incidents within business hours
  • Following procedures and playbooks while remediating of recognized threats
  • You will operate for Security Operation Center within business hours (regular daily shifts) and non-business hours on call (on call support – no regular night shifts)
  • Taking part in enhancements of implemented ATP solutions
  • Searching for latest security threats, providing input for analyses of current situation. Providing already know solution or workaround
  • Contribute to the development of new documentation (incl. security playbooks) and processes to continually improve and optimise SOC services
Education and Skills:
  • A Bachelor in computer science or similar
  • At least 1-2 years of experience in IT required
  • At least 1 year of experience in IT SOC (preferably 2nd line or other SOC lines that handle advanced and complicated, non-routine incidents)
  • Good Polish and English written/verbal communication skills
  • Good knowledge in Windows 10 (Registry, Processes & Services, CMD & PowerShell basics)
  • Basic skills in IT forensic (analyse email message headers, basic analyse of malware files, recognize phishing emails)
  • Knowledge in Microsoft ATP, Office ATP, Azure AD, MCAS products will be a great advantage (working with alerts & incidents, machine details: timeline, software inventory, recognizing false positives, reporting, advanced hunting)
  • Knowledge in Azure Sentinel and Azure Security Center will be an asset
  • Certifications in security will be an advantage
  • Quick learner and interest in new technologies
  • Structured, goal-oriented, ability to work in groups
  • Good team skills, open for other cultures
  • Ability to work autonomously and to lead tasks assigned from the beginning to the end
  • Good presentation skills to provide clear and supportive information to non-technical audience
We offer you:
  • Working in a highly experienced and dedicated team
  • Competitive salary and extra benefit package that can be tailored to your personal needs (private medical coverage, sport & recreation package, lunch subsidy, life insurance, etc.)
  • Permanent contract after 3 months` probation
  • On-line training and certifications fit for career path
  • Free on-line foreign languages lessons
  • Regular social events (as health of our employees is our priority all events are conducted online at the moment)
  • Access to e-learning platform
  • Ergonomic and functional working space with 2 monitors
Prosimy o dopisanie klauzuli: Wyrażam zgodę na przetwarzanie moich danych osobowych dla potrzeb niezbędnych w procesie rekrutacji.

Zobacz podobne ogłoszenia o pracę

Inter Cars S.A.

Lokalizacja: mazowieckie/Warszawa

You will be responsible for improving the security of Inter Cars infrastructure including on-premises server infrastructure, IT infrastructure, networks and other core components of Inter Cars stack....


eService Sp. z o.o

Lokalizacja: mazowieckie/Warszawa

What Youll Do: Act as an advisor and consultant to all employees on the established Information Security program, regulations impacting our industry and security awareness programs. Understand...


Polpharma Biologics

Lokalizacja: mazowieckie/Duchnice

Your responsibilities: Development and implementation of information security strategies, controls, standards, processes, procedures and systems for managing information and cybersecurity risks,...