Technical and Functional Expertise
31 August 2021 - 30 December 2021
Cloud & Infra
Who we are:
We are an international team responsible for SIEM (Security Information Event Management) operation in several Nordic countries. As a SOC SIEM Security Engineer, you are a highly technical, committed security professional with an emphasis on SIEM (Security Information Event Management) platforms, combined with a broad understanding of cybersecurity domains and today’s threats with a few years of experience immersed in General Security, IT, Security Operations culture and Enterprise or Managed Security Services SOC Teams. You will be working closely with our passionate Team of professionals - fellow SOC SIEM Engineers, Security Incident Responders, Threat Detection and Intelligence Experts, Security Architects, Engagement Managers, Software Architects. You will be reporting to the Manager of SOC SIEM Operations, TietoEVRY Cybersecurity Services.
With us you will be responsible for:
Ensuring the quality and value of the SOC SIEM Engineer output across all the activities.
Initiating the SOC SIEM changes with the involved parties and internally interacting with the SOC SIEM Team Members on a daily basis.
Identifying areas to tune detections and enhance security efficacy.
Contributing to creation of the SOC SIEM Standard Operating Procedures (SOP).
Working closely with the SOC Threat Detection team to elevate threat visibility.
Sharing with SOC staff members the new tools, capabilities and processes.
Contributing to the SOC SIEM Platform and Service innovation roadmap.
Cooperation on SOC SIEM Development across platforms to ensure success.
Providing input for Customer Briefings to the SOC Engagement Manager.
We expect you to have:
Fluency in English, both spoken and written.
Proven reporting and presentation skills.
Degree in Information Technology.
1+ years in IT, Cybersecurity and SOC environments.
Strong communication skills.
Good feeling for the SOC environment dynamics and work ethics.
Good organizational skill set and proactive mentality.
Nice to have:
Background in SIEM technologies - correlations, custom parsers and alarm triggers.
General understanding of the security and security analysis.
General experience in threat detection - endpoint, network and cloud.
Expertise with Cloud SaaS SIEM Technologies (MS Sentinel, Elastic, Rapid7) a big plus
Security Technical Certifications (SANS, OSCP, vendor-related) highly desired.
General understanding of the security kill chain and MITRE ATT&CK Matrix.
Knowledge of Atlassian Stack (Confluence, Jira).
Knowledge of ServiceNow / other IT Service Management platforms.
What do we offer:
Reward for on- calls and overtimes /weekends beyond the law
Financial support in long-term sick leave
Annual contribution to the Home office 2 400 CZK (200 CZK per month, proportional amount)
Meal voucher flat rate is calculated according to the number of shifts worked (65 CZK x number of shifts worked - employer's contribution according to valid legislative regulations) and is a part of the employee's salary.
Reward for employee referral (up to 40 000 CZK)
Benefit system CAFETERIA
Home office, extra week of holiday
2 day Sick Days
Free entry to Individual Fitness center in the building TietoEVRY (Ostrava), Multisport card (Brno, office Anywhere)
Education – IT courses, certification, language courses and personal development
Possibility to use a free consultation with a psychologist
Free coffee, tea and fruit in the workplace
Gifts for employees celebrating significant events such as weeding or birth of the child
Unique offer of calling and other telecommunication services O2 for special price
Welcome to an exciting journey. TietoEVRY creates digital advantage for businesses and societies. We are a leading digital services and software company with local presence and global capabilities. Nordic values and heritage are the foundation of TietoEVRY success. Let's build a brighter future. Together.
Read more about us here.