Если вы раньше входили через Google, сбросьте пароль для своей Gmail-почты через кнопку «Забыли пароль?» на экране входа. Затем войдите по email и новому паролю.
Если аккаунта ещё нет, зарегистрируйтесь с Gmail-почтой, после подтверждения почты мы предложим задать пароль.
Что нового
Загружаю обновления...
Что нового
Загружаю обновления...
Работа найдется быстрее с подпискойКандидат найдётся быстрее с подпиской
Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме
описание
iCapital provides security operations coverage across global time zones and strengthens the firm’s cyber resiliency through its Global Information Security team.
задачи
Manage the day-to-day operations of the Security Operations Center, ensuring monitoring, alerting, triage, and incident response run effectively across the operating day
Lead, mentor, and develop a team of SOC analysts, including scheduling, shift and on-call coverage, performance management, hiring, and onboarding
Establish and maintain runbooks, playbooks, incident-handling procedures, and daily, weekly, and monthly security checklists
Operate, tune, and manage the SIEM and SOAR platforms; maintain alerts and dashboards that surface key security events and provide security assurance
Triage and escalate incidents, set priorities for the SOC team, and coordinate responses with other teams across the firm
Partner with the Cyber Case Manager to ensure incidents flow into case management, are tracked to closure, and align with case-driven priorities
Work with Threat Detection Engineering, Cloud Security, Incident Response, and other Information Security teams to improve the firm’s security posture
Measure and report on the state of the firm’s cyber security defenses, including operational metrics and regular reporting to leadership
Serve as an escalation point for high-severity incidents, including outside standard business hours as needed
Drive the evaluation, selection, and configuration of key security tools to enhance Cyber Security Operations
требования
5–8 Years of experience in security operations, including 1–3 years leading or managing a SOC or security operations team
Demonstrated people-management experience leading, mentoring, scheduling, and developing analysts
Hands-on experience setting up and managing a SIEM, preferably Splunk
Experience with SOAR and a strong understanding of the incident-response lifecycle and frameworks such as NIST and MITRE ATT&CK
Knowledge of Linux, Windows, and macOS operating systems
Experience with cloud infrastructure
Strong coordination and stakeholder-management skills, including liaising across teams and reporting to leadership
Professional fluency in English
Attentive, organized, and detail-oriented, with solid problem-solving and analytical skills
Excellent written and verbal communication skills
Будет плюсом: AWS experience
условия
Competitive salary, annual performance bonus, and equity for full-time employees