Introduction
The IBM CISO SOC in Amsterdam is expanding into a multi-disciplinary team that protects the IBM organization around the clock against threats both internal and external, with a focus on EU-located assets and networks. To do this, we perform security event detection, response and remediation. We work closely together with other teams such as forensic analysts, threat hunters, threat intelligence and platform engineers. As time is our most valuable resource, we'd rather not look at the same false positive more than once so automation and tuning is key.
Your role and responsibilities
IBM is seeking an experienced SOC Analyst to join the Cybersecurity Operations team in Amsterdam. This position requires a motivated fast learner who is able to identify, analyze, and remediate potential threats to the environment. The candidate will require security industry knowledge that evolves with current and emerging threats, as well as an ongoing understanding of key business and technological processes.
Want more jobs like this?
Get jobs in Amsterdam, Netherlands delivered to your inbox every week.
The SOC Analyst will perform security monitoring, investigations and perform analysis of events in order to thwart internal and external threats to the environment. Additionally, the SOC Analyst will collaborate on an ongoing basis with the Cyber Security Incident Response Team to support detection, triage, incident analysis, containment, remediation and reporting of incidents.
Security Monitoring
• Analyze detections and alerts and respond to security threats from Firewall (FW), Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Antivirus (AV), Endpoint Detection and Response (EDR) and other security threat data sources.
• Conduct Security Monitoring activities to provide Security in Depth visibility into potential known and unknown threats that may pose risk to the IBM environment.
• Document actions in cases to effectively communicate information to internal stakeholders as well has for historical retrieval.
• Resolve problems independently and understand escalation procedures.
• Participate in security incidents and act as the technical Subject Matter Expert during significant security incidents.
• Conduct operations surrounding cyber security incident response technologies including network logging and forensics, security information and event management tools, security analytics platforms, log search technologies, and host based forensics as applicable.
• Act as an internal information security consultant to the business and technology units, advising on risks, threats and control practices related to Rapid Response.
• Assist in development and knowledge sharing within the team.
• Assist in security console tuning.
• Assist in establishing Global Security Monitoring discipline to support enterprise• Identify and share threat intelligence that impacts IBM and their customers or products
Required education
Bachelor's Degree
Preferred education
Master's Degree
Required technical and professional expertise
• Minimum 3+ years of experience working within a SOC, Threat Hunt, or Threat Intel team• Experience with Linux, Windows and MacOS systems
• Critical thinking and problem solving skills
• Passion for information security and data security
• Strong written/verbal communication skills• Strong interpersonal and organization skills"
Preferred technical and professional experience
• At least 2 years' experience in Incident Response in a global corporate enterprise • Experience in fast-paced investigations
• Experience with programming or scripting languages• Familiarity with IBM QRadar SIEM, Windows Defender ATP and EDR platforms is a plus
ABOUT BUSINESS UNIT
IBM Systems helps IT leaders think differently about their infrastructure. IBM servers and storage are no longer inanimate - they can understand, reason, and learn so our clients can innovate while avoiding IT issues. Our systems power the world's most important industries and our clients are the architects of the future. Join us to help build our leading-edge technology portfolio designed for cognitive business and optimized for cloud computing.
YOUR LIFE @ IBM
In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.
Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.
Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.
Are you ready to be an IBMer?
ABOUT IBM
IBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.
Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business.
At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.
OTHER RELEVANT JOB DETAILS
For additional information about location requirements, please discuss with the recruiter following submission of your application.