Jobs
>
Wiesbaden

    Cyber Incident Handling Analyst - Wiesbaden, Germany, Deutschland - SOS International LLC

    Default job background
    Paid Work
    Beschreibung

    Overview

    SOS International LLC (SOSi) is seeking a Cyber Incident Handling Analyst to support our customer in Weisbaden, Germany . The Cyber Incident Handler will perform analytic analysis of cyber related events to detect and deter malicious actors using SIEM technologies, which correlate multiple security tool alerts and logs.

    Essential Job Duties

    • Work as a member of the Cyber Incident Response Operations Team to increase the security posture of the customers network.
    • Monitor SIEM platforms for alerts, events, and rules providing insight into malicious activities and/or security posture violations.
    • Review intrusion detection system alerts for anomalies that may pose a threat to the customers network.
    • Identify and investigate vulnerabilities, asses exploit potential, and suggest analytics for automation in the SIEM engines.
    • Report events through the incident handling process of creating incident tickets for deeper analysis and triage activities.
    • Coordinates and distributes directives, vulnerability, and threat advisories to identified consumers.
    • Issue triage steps to local touch labor organizations and Army units to mitigate or collect on-site data.
    • Perform post intrusion analysis to determine shortfalls in the incident detection methods.
    • Develop unique queries and rules in the SIEM platforms to further detection for first line cyber defenders.
    • Monitor the status of the intrusion detection system for proper alert reporting and system status.
    • Respond to the higher headquarters on incidents and daily reports.
    • Provide daily updates to Defensive Cyber Operations staff on intrusion detection operation and trends of events causing incidents.
    • Prepare charts and diagrams to assist in metrics analysis and problem evaluation, and submit recommendations for data mining and analytical solutions.
    • Draft reports of vulnerabilities to increase customer situational awareness and improve the customers cyber security posture.
    • Assist all sections of the Defensive Cyber Operations team as required in performing Analysis and other duties as assigned.
    • May perform documentation and vetting of identified vulnerabilities for operational use.
    • May prepare and presents technical reports and briefings.
    • Utilize a solid understanding of networking ports and protocols, their uses, and their potential misuses.

    Minimum Requirements

    • An active in scope Top Secret/SCI clearance is required.
    • Bachelor in related discipline +3, AS +7, major certification +7 or 11+ years specialized experience.
    • Must meet DoD 8140 DCWF 531 requirements (B.S., GCFA, GCIA, CCSP, CEH, CFR, Cloud+, CySA+, GCED, GICSP, or PenTest+).
    • Must meet DoD 8140 DCWF 511 requirements (B.S., GCFA, GCIA, CFR, Cloud+, CySA+, GCED, or orPenTest+).
    • Must have one of the following additionalcertificationswithin 90 days of employment (Cisco CyberOps Professional, GCED, GCFA, GCFE, GCIH, GNFA, DCITA CIRC, FIWE or Offensive Security OSDA).
    • Must have a full, complete, and in-depth understanding of all aspects of Defensive Cyber Operations.
    • Must have a good breadth of knowledge of common ports and protocols of system and network services.
    • Experience in packet captures and analyzing a network packet.
    • Experience with intrusion detection systems such as Snort, Suricata, and/or Zeek.
    • Experience with SIEM systems such as Splunk and/or ArcSight.
    • Must have the demonstrated ability to communicate with a variety of stakeholders in a variety of formats.
    • Must be able to obtain certification as a Technical Expert by the German Government under the Technical Expert Status Accreditation (TESA) process.

    Preferred Qualifications

    • Bachelors degree in Engineering, Computer Science, or Mathematics.
    • Experience with writing Snort or Suricata IDS rules.
    • Experience with writing complex Splunk SPL queries to correlate lookup tables with event logs to identify anomalies.
    • Experience with analyzing packets using Arkime or Wireshark.
    • Experience with Microsoft Windows event IDs.
    • Experience with Linux audit log analysis.
    • Familiarity with Git and VScode.
    • Experience with one or more scripting languages such as PowerShell, Bash, Python.

    Work Environment

    • Normal office conditions.
    • Potential to work on multiple shifts in a rotation schedule covering a 24/7/365 mission.
    • On site in Wiesbaden, Germany.

    SOSi is an equal employment opportunity employer and affirmative action employer. All interested individuals will receive consideration and will not be discriminated against on the basis of race, color, religion, sex, national origin, disability, age, sexual orientation, gender identity, genetic information, or protected veteran status. SOSi takes affirmative action in support of its policy to advance diversity and inclusion of individuals who are minorities, women, protected veterans, and individuals with disabilities.



  • Moody's

    Ratings Associate

    vor 2 Wochen


    Moody's Frankfurt am Main, Deutschland

    Moody's is a global integrated risk assessment firm that empowers organizations to make better decisions. · - Team/Department Description: · - Ratings & Research Support · **The Role** · The Associate Analyst 3 (AA3) will work with lead analysts in assigning and monitoring credit ...


  • S&P Global Frankfurt am Main, Deutschland

    S&P Global Ratings · Associate, Financial Institutions - Frankfurt · We are looking for a highly skilled individual to join our Financial Institutions Ratings team in Frankfurt. · **The Role**: · - Analytical excellence: You will assume responsibility for a portfolio of mostly fi ...


  • S&P Global Frankfurt am Main, Deutschland

    **S&P Global Ratings** · **Associate, Financial Institutions - Frankfurt** · We are looking for a highly skilled individual to join our Financial Institutions Ratings team in Frankfurt. · **The Role**: · - **Analytical excellence**:You will assume responsibility for a portfolio o ...

  • Hyundai

    Web Data Specialist

    vor 1 Woche


    Hyundai Offenbach, Deutschland

    Hyundai Motor Europe HQ invites you to become part of one of the world's leading car manufacturers. Being a member of our international team, you have the chance to form the future of mobility together with experts inside a global company with a unique success story. As a well-or ...


  • Morgan Stanley Frankfurt am Main, Deutschland

    Investment Banking Division - Industrials Associate, Frankfurt' · Job Number: · 3235029 · POSTING DATE: Apr 12, 2023 · PRIMARY LOCATION: Europe, Middle East, Africa-Germany-Germany-Frankfurt am Main · JOB: Investment Banking · EMPLOYMENT TYPE: Full Time · JOB LEVEL: Associate · D ...

  • Cision

    Analysis Assistant

    vor 3 Wochen


    Cision Frankfurt am Main, Deutschland

    Cision Group Ltd. ist ein weltweit führender Anbieter von Earned Media Management Software und unterstützt PR- und Kommunikationsprofis bei ihrer Arbeit. Die Software von Cision ermöglicht es modernen Kommunikatoren, wichtige Einflussfaktoren zu identifizieren, strategische Inhal ...

  • Icertis

    HR Administrator

    vor 3 Wochen


    Icertis Frankfurt am Main, Deutschland Nebenberuflich

    With unmatched technology and category-defining innovation, Icertis pushes the boundaries of what's possible with contract lifecycle management (CLM). The AI-powered, analyst-validated Icertis Contract Intelligence (ICI) platform turns contracts from static documents into strateg ...


  • Hyundai Offenbach, Deutschland

    Hyundai Motor Europe HQ invites you to become part of one of the world's leading car manufacturers. Being a member of our international team, you have the chance to form the future of mobility together with experts inside a global company with a unique success story. As a well-or ...

  • Emma – The Sleep Company

    Data Scientist

    vor 1 Woche


    Emma – The Sleep Company Frankfurt am Main, Deutschland

    **Ready to lead, disrupt and reinvent the sleep industry?** · We are · **Emma - The Sleep Company**. Created in 2013, we are now the world's largest D2C sleep brand, available in over 30 countries and recommended by many consumer associations in EMEA, APAC, and the Americas. We'r ...


  • UBS Frankfurt am Main, Deutschland

    Germany · - Client advisory / Relationship management · - Global Wealth Management · **Job Reference #** · BR · **City** · - Frankfurt am Main · **Type** · - Graduate GTP/Full-Time Analyst · **Your role** · - Do you like to work in a dynamic work environment, to deal with complex ...


  • Moody's Frankfurt am Main, Deutschland

    **Senior Management Team Support** · Provide high level support for the senior management team, to include all aspects of administration with strong focus on calendar/diary management, in-box management, travel and expenses coordination and absorption of administrative tasks; use ...

  • Houlihan Lokey

    Vice President

    vor 2 Wochen


    Houlihan Lokey Frankfurt am Main, Deutschland

    **Business Unit**: · Corporate Finance · **Industry**: · TECH - Technology · **Overview** · Houlihan Lokey, Inc. (NYSE:HLI) is a global investment bank with expertise in mergers and acquisitions, capital markets, financial restructuring, and financial and valuation advisory. Houl ...

  • Houlihan Lokey

    Vice President

    vor 3 Wochen


    Houlihan Lokey Frankfurt am Main, Deutschland

    Business Unit: · Corporate Finance · Industry: · TECH - Technology · Overview · Houlihan Lokey (NYSE:HLI) is a global investment bank with expertise in mergers and acquisitions, capital markets, financial restructuring, and financial and valuation advisory. The firm serves corpor ...


  • Bloomberg Frankfurt am Main, Deutschland

    Our core product, the Bloomberg Terminal, is an independent and unbiased source of information for everyone from C-Suite executives to traders, analysts, government officials, and news professionals. Bloomberg's software processes financial data into meaningful and useful informa ...


  • Deutsche Bank Frankfurt am Main, Deutschland

    **Data Scientist in Model Review - AFC Monitoring & Screening / GRITA**: · **Job ID**:R0323075**Full/Part-Time**:Full-time**Regular/Temporary**:Regular**Listed**: **Location**:Frankfurt**Position Overview**: · Deutsche Bank (DB) benefits from having a highly experienced and dedic ...


  • UPS Germany Frankfurt Am Main, Deutschland

    Entdecke deine nächste Karrierechance bei einem der größten Logistikdienstleister der Welt. Stelle dir die Vielzahl an Möglichkeiten vor, etwas zu bewegen und werde Teil eines großartigen Teams aus ganz unterschiedlichen Kulturen. Bei uns arbeitest du mit talentierten Kolleginnen ...


  • General Dynamics Information Technology Wiesbaden, Deutschland

    GDIT is searching for a Senior Intelligence Systems Mentor/PLEX Architect to support our EMITS Program in Wiesbaden, Germany. The Architect/Mentor Interacts with system users to translate their requirements into a systems architect defining the systems required, data flows, integ ...


  • Huntington Ingalls Industries Wiesbaden, Deutschland Ganztags

    Requisition Number: 18376 · Required Travel: % · Employment Type: Full Time/Salaried/Exempt · Security Clearance: TS/SCI with Poly · Level of Experience: Senior HI · This opportunity resides with Command, Control, Communications, Computers, Cyber, Intelligence, Surveillance an ...


  • Nexi Group Eschborn, Deutschland

    Company Description · Handling billions of transactions annually, Nets is among the top payment processors in Europe. We keep a tight focus on making it even easier and more intuitive for our customers to handle digital payments and related services. This has made us a trusted pa ...


  • Nets Eschborn, Deutschland

    **Date Posted**: · **Industry**: Financial Services · **Job area**: Strategy & Operational Excellence · **Location**: Helfmann-Park, 65760, Eschborn, Germany · **Language**: English (US) · **Type**: Full-time · **Experience**: Mid-Senior Level · Company Description · Handling bi ...