Senior Detection & Response Analyst

Job not on LinkedIn

🔥 33 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Toyota Tsusho Europe

Toyota Tsusho Europe

1001 - 5000 employees

Founded 1968

🏢 Enterprise

☁️ SaaS

🔒 Cybersecurity

Enterprise • SaaS • Cybersecurity

Toyota Tsusho Europe is a branch of Toyota Tsusho Systems (TTS) that specializes in providing customized IT solutions designed to enhance business growth and operational efficiency. The company focuses on creating innovative IT strategies and technologies that support the global operations of the Toyota Group across various sectors. In addition to cloud services and security solutions, TTS offers employee benefit outsourcing and integrated solutions for manufacturing industries.

📋 Description

• The Senior Detection and Response Analyst role will provide ongoing support to the Regional Security Operations program. • Maintain effective 24x7 monitoring and detection services to internal and external clients. • Act as the point of escalation for all security incidents; provide expert level feedback regarding current monitoring and ways to improve it. • Assume the role of shift lead as needed, and fulfil this responsibility through leadership and guidance of ID team members, proactively prioritizing, identifying, analyzing and remediating threats. • Ensure that the ID Analysts’ daily work activity is completed to the required quality levels and timelines, by verifying that their responsibilities are executed, in accordance with the expectations set by the ID Team Lead. • Triage security incidents and perform in-depth analysis using Cyber Threat Intelligence, intrusion detection systems, firewalls and other boundary protection devices. • Maintain an understanding of the overall threat landscape (cyber, malware, botnets, phishing, DDoS, physical). • Provide 24x7 coverage to support the RSOC services; Participate in an on-call rotation. • Support Agentic SOC development through providing expert level feedback, tuning, and feature requests for our engineering team to support accurate machine speed response. • Train and mentor team members within the Incident Detection Team. • Improve the effectiveness and efficiency of day-to-day operations. • Assist with service requests from customers and internal teams. • Assist with containment and remediation of threats during incidents. Use an internal ticketing system to track investigated incidents and capture relevant details. • Support Incident Response efforts as needed, including providing counsel, working with the IR team, as well as other involved stakeholders within the organization and customers to drive forward remediation activities. • Conduct threat hunting activities based on internal and external threat intelligence. • Provide expert level feedback regarding current monitoring and ways to improve it. • Create and update daily and monthly reports. • Contributes to the creation of documentation to standardize processes and procedures, including playbooks to improve internal processes and procedures. • Use investigation findings to identify gaps and recommend security posture improvements. • Identify, recommend, coordinate, and deliver timely knowledge to support teams.

🎯 Requirements

• 4+ years of experience in Security Operations monitoring. • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field __*(preferred)*__ • Experience with Security Operations processes, procedures, and services. • Experience working with cyber security tools and software such as Sentinel, Splunk, ATP, Symantec End Point, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, __Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets.__ • Advanced knowledge of network monitoring and network exploitation techniques. • Strong technical background in security, network, infrastructure, cloud, applications. • Knowledge of risk assessment tools, technologies and methods. • Experience with common attack vectors, including advanced adversaries (nation state/financial motivation). • Knowledge around common web application attacks including SQL injection, cross-site scripting, invalid inputs, and forceful browsing. • Knowledge of how common protocols and applications work at the network level, including DNS, HTTP, and SMB. • Experience working with cyber security tools and software such as Splunk, ATP, Symantec Endpoint, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets. • Technical certifications such as GCIA, GCFA, GCIH or CASP is a plus. • Tines (or other automation) experience is highly valued • Proficient with Microsoft Office & documentation skills (Word, Excel, PowerPoint)

Apply Now

Similar Jobs

🔥 34 minutes ago

CVS Health

10,000+ employees

⚕️ Healthcare Insurance

🛒 Retail

🧘 Wellness

Analyst, Outreach Coordinator at CVS Health utilizing tools to improve healthcare outcomes. Engage with stakeholders to close care gaps and support HEDIS initiatives.

🔥 36 minutes ago

Stewart Title

5001 - 10000

🏠 Real Estate

HCM Analyst providing functional support for Workday HCM at Stewart. Responsible for accurate and compliant HR operations and process improvements.

🔥 36 minutes ago

Sentara Health

10,000+ employees

⚕️ Healthcare Insurance

IT Specialty Analyst providing support and optimization for Epic Inpatient clinical applications remotely. Collaborating with clinical leadership and operational stakeholders to enhance workflows and patient care.

🔥 37 minutes ago

PNC

10,000+ employees

💸 Finance

🏦 Banking

👥 HR Tech

Treasury /Funds Transfer Analyst executing various funds transfers for PNC's Wire Administration organization. Ensuring compliance and financial reconciliation in a remote role.

🔥 42 minutes ago

Risk Strategies Company

5001 - 10000

🏢 Enterprise

💸 Finance

Senior Employee Benefits Analyst managing complex benefit programs and delivering strategic insights for public sector clients. Leading renewal analyses and supporting financial decisions for long-term benefits management.