Serve as the first line of defense within the Cybersecurity Operations Center (CSOC) by monitoring, triaging, and responding to cybersecurity alerts and incidents.
Manage the complete incident lifecycle, including analysis, prioritization, containment, escalation, and remediation in collaboration with the Incident Response team.
Conduct technical investigations on security incidents, including evidence collection and forensic analysis.
...
Manage the entire incident lifecycle, including identification, analysis, containment, eradication, recovery, and post-incident tasks, ensuring a rapid and effective response to security events
Operate, refine, and maintain incident response playbooks and runbooks while helping to improve the CSIRT’s internal toolset for greater operational efficiency and effectiveness
Triage and investigate security alerts originating from SIEM and EDR platforms, driving rapid containment actions and supporting thorough remediation efforts to mitigate risks
...
Lead digital transformation initiatives for physical security operations.
Manage the integration of physical security systems with enterprise platforms such as Incident Tracking System, Security Information Event Management (SIEM) systems.
Develop digital dashboards, reports, and analytics to improve security operations and decision-making.
...
Continuous improvement of overall Product Security Vulnerability Handling services within the scope of PSIRT.
Provide Product Vulnerability Discovery activities related to Vulnerability Intake, continuous scanning and evaluation.
Support Product Vulnerability Discovery activities related to monitoring and security testing activities via assessing potential initial impact and course of action.
...
Manage the entire incident lifecycle, including identification, analysis, containment, eradication, recovery, and post-incident tasks, ensuring a rapid and effective response to security events
Operate, refine, and maintain incident response playbooks and runbooks while helping to improve the CSIRT’s internal toolset for greater operational efficiency and effectiveness
Triage and investigate security alerts originating from SIEM and EDR platforms, driving rapid containment actions and supporting thorough remediation efforts to mitigate risks
...
Lead digital transformation initiatives for physical security operations.
Manage the integration of physical security systems with enterprise platforms such as Incident Tracking System, Security Information Event Management (SIEM) systems.
Develop digital dashboards, reports, and analytics to improve security operations and decision-making.
...
Working across a portfolio of cyber engagements with our clients, reporting to a Manager or Senior Manager, responsible for the day to day completion of engagements and projects
Working with team members you will create high quality reports, ready for review by a Manager or Senior Manager
Where possible, you will identify opportunities for EY to assist our clients further and escalate these potential areas to the engagement manager
...
Continuous improvement of overall Product Security Vulnerability Handling services within the scope of PSIRT.
Provide Product Vulnerability Discovery activities related to Vulnerability Intake, continuous scanning and evaluation.
Support Product Vulnerability Discovery activities related to monitoring and security testing activities via assessing potential initial impact and course of action.
...