Team Lead - Cyber Security Incident Response @MMCTech
Description:
We are seeking a talented individual to join our Global Cyber Defense team.
This role will be based in our Security Operations Center (SOC) as part of Cluj-Napoca Tech Hub.
As a Team Lead - Cyber Security Incident Response you will play a crucial role in analyzing security event data and managing a team of analysts while contributing to the overall security posture of the organization.
What can you expect?
We are looking for someone to join and grow in our Security Operations Center (SOC) in a technical analyst role and a management role.
As an Analyst, you will be responsible for analyzing security event data, assessing the potential impact of events, and creating recommendations to defend against emerging threats. You will follow security events through the triage and response lifecycle and document all processes in a centralized knowledgebase.
In this role, you will participate in ongoing security incidents and continuous SOC initiatives, such as new content development and enrichment as well as collaborate across multiple teams on various efforts to continue to strengthen the security posture of Marsh & Mc
Lennan Companies.
Additionally, you will serve as the reporting manager for the SOC Analysts in your geographic region.
What is in it for you?
Be able to work with a global team with a company with a strong brand and strong results to match.
Be part of an organization with a culture of internal mobility, collaboration, valued partnership from the business and drive for innovation in data & analytics, including the latest AI technology
Grow your career with direct exposure to Senior Technologists, Business Leaders, and Employee Resource Groups which provide access relevant volunteer and mentoring opportunities and interactions with counterparts in industry groups and client organizations.
We will count on you to:
Act as the reporting manager for the Tier1 and Tier2 analysts in your geographic region
Provide technical and professional guidance for analysts on your team
Analyzing network traffic, endpoint security events, and other various log sources to identify threats, assess potential impact, and recommend mitigations
Supporting other security functions and teams to ensure the holistic implementation of security controls, technologies, practices, and programs
Contributing to the development and improvement of response processes, documentation, tool configurations, and detection logic
Assisting in additional Security Operation Center initiatives, including playbook development and documentation, new rule creation, and tool evaluations
Maintaining an operational knowledge of global threat trends, known threat actors, common tactics, techniques, and procedures (TTPs), and emerging security technologies
Collaborating on Security Operation Center team training opportunities and other cross training opportunities as well as operating as a subject matter expert on various security topics across multiple domains
Supporting 24x7 operations by participating in an
- call rotation and assisting in ongoing incidents during
- standard hours
What you need to have?
2+ years of information security experience and/or 2-4 years of experience in security analysis in a
- security focused role
Undergraduate degree in Computer Science (CS), Computer Information Systems (CIS), other related degrees, or equivalent experience;
Excellent critical thinking skills, with proven analytical expertise and the ability to learn adaptively
Demonstrated leadership ability of technical teams.
Demonstrated effective verbal, written and interpersonal communication skills with the ability to communicate security concepts to both technical and
- technical audiences
Demonstrated experience with security technologies and alerts, such as intrusion prevention and detection systems, web proxies, SIEM, SOAR, EDR, firewalls, web application scanner, vulnerability scanners, forensics tools,
- source tools, or other security technologies
Knowledge in one or more of the following domains: Network Operations and Architecture, Operating Systems, Identity and Access Management, Programming, Cloud Computing, Databases, or Cryptography
What makes you stand out
Ability to operate independently in a dynamic, evolving environment with multiple inputs and tasks simultaneously
Knowledge of common attacks, current threats, threat actors, and industry trends
Familiarity with common security frameworks and models, such as MITRE ATT&CK, Lockheed Martin Cyber Kill Chain, The Diamond Model of Intrusion Analysis and NIST Cybersecurity Framework
Professional or technical certifications, such as Security+, GIAC Certified Incident Handler (GCIH), Certified Ethical Hacker (CEH), or other related certifications
Why join our team :
We help you be your best through professional development opportunities, interesting work, and supportive leaders;
We foster a vibrant and inclusive culture where you can work with talented colleagues to create new solutions and have an impact for colleagues, clients, and communities;
Our scale enables us to provide a range of career opportunities, as well as benefits and rewards to enhance your
- being;
A yearly budget and the opportunity to build your flexible benefits package (up to 20% of your annual salary);
30+ days off (25 legal days off, 1 extra day off on your birthday, public holiday replacement days, extra buy/sell from your benefits budget);
Performance Bonus scheme;
Matching charity contributions, charity days off, and the Pay it Forward charity challenge;
Core benefits - Pension, Life and Medical Insurance, Meal Vouchers, Travel Insurance;
We champion flexible working, and our mission is to help you find YOUR
- life balance, whether that is standard working, flextime working, or working from home;
As a company we are committed to hybrid work, which includes the flexibility of working remotely and the collaboration, connections and professional development benefits of working together in the office. Our teams will jointly identify at least one “anchor day” per week on which the full team will be together in person. This unwavering policy is carefully crafted to enhance team unity, inspire creativity, and foster meaningful interactions between our colleagues, to help build our culture and local communities.
Founded over 20 years ago, Darwin's main ambition was to change the world of benefits. Fast forward to the present day and it is leading the way as a cornerstone benefits technology product in the Marsh Mc
Lennan, (MMC), Tech portfolio. MMC are now building out their EMEA Technology Hub in Cluj, Romania.
MMC is a global professional services firm, headquartered in New York City with businesses in insurance brokerage, risk management, reinsurance services, talent management, investment advisory, and management consulting. It comprises the businesses of Marsh, Mercer, Guy Carpenter, JLT, Oliver Wyman and Darwin.
The regional hub will contain teams of Application Developers, Business Analysts, Project/Program Managers and other technology roles that require time zone overlap with clients in EMEA. As a regional hub we are equipped to scale our vast technical expertise through a variety of outputs, while helping to unleash our potential as one company, to effectively meet today's emerging challenges through the brilliant technology we build and deliver together.
At Marsh Mc
Lennan, we understand the complexity, and the reality, of the modern career path. If your experience looks a little different from what we’ve identified and you think you would be a great fit for the role, we would love to hear from you.
#MMCTech #Darwin
People
Lennan (NYSE: MMC) is a global leader in risk, strategy and people, advising clients in 130 countries across four businesses: Marsh, Guy Carpenter, Mercer and Oliver Wyman. With annual revenue of $23 billion and more than 85, 000 colleagues, Marsh Mc
Lennan helps build the confidence to thrive through the power of perspective. For more information, visit marshmclennan.com , or follow on Linked
In and X. Marsh Mc
Lennan is committed to creating a diverse, inclusive and flexible work environment. We aim to attract and retain the best people and embrace diversity of age, background, disability, ethnic origin, family duties, gender orientation or expression, marital status, nationality, parental status, personal or social status, political affiliation, race, religion and beliefs, sex/gender, sexual orientation or expression, skin color, or any other characteristic protected by applicable law. Marsh Mc
Lennan is committed to hybrid work, which includes the flexibility of working remotely and the collaboration, connections and professional development benefits of working together in the office. All Marsh Mc
Lennan colleagues are expected to be in their local office or working onsite with clients at least three days per week. Office-based teams will identify at least one “anchor day” per week on which their full team will be together in person.
Fii primul, care se va înregistra la oferta de muncă respectivă!
-
De ce să cauți de muncă pe Lucrezi.ro?
În fiecare zi oferte noi de muncă Puteți alege dintr-o gamă largă de locuri de muncă: Scopul nostru este de a oferi o gamă cât mai largă de opțiuni Lasă să-ți fie trimise noile oferte prin e-mail Fii primul care răspunde la noile oferte de muncă Toate ofertele de muncă într-un singur loc (de la angajatori, agenții și alte portaluri) Toate serviciile pentru persoanele aflate în căutarea unui loc de muncă sunt gratuite Vă vom ajuta să găsiți un nou loc de muncă