HC : 1 Detect, Analyze and classify cyber security incidents threats via different logs sources across multiple security solutions Identify source, target of attack and block access to existing target, applications and infrastructure assets etc Provide security hardening advice to different local IT Teams across the globe, for workstation, servers and Network to secure their environment Commit oneself to the teams target in terms of managing the backlogs / joining the shift rotations as well as conducting internal sharings whenever needed and appropriate Ensure a close coordination with various IT Sec internal teams as well as InfoSec teams for projects / initiatives that will improve the security posture for the whole group Participate in CyberSecurity Attack Crisis War Room and support our L3 analyst for follow up remediations needed Assist with the implementation of security systems including review of logs and reports from various tools such as firewall, IDS / IPS, NGAV, SIEM, EDR and event log monitoring.Manage and run cyber security solutions tools Have a permanent cyber security watch, for malware, web-based attacks, injections attacks, phishing...Follow what is mentioned in the internal SOPs closely and provide insights to optimize the SOP accordingly whenever possibleWork in a Global Cyber Security Team, not only for one region but for the whole EssilorLuxottica group as well as all its relevant entities including but not limited to also Joint VenturesSECONDARY RESPONSIBILITIES :
Vulnerability assessment Prepare Reports Produce Documentation (SOP) Create Network Security Policies Build and maintain Dashboard and KPI IT Security -GSOC L2 Job Description for Cyber Security Analyst_Linux wise Report to : ISS Status : Regular-Full Time Location : Alabang, Philippines Hours : Shifting (weekends nights) Dept : Infra Shared Services
TECHNICAL REQIUREMENTS :
HC : 1 Strong capabilities to analyze complex security attacks and perform efficient incident triage.
- Solid knowledge on Windows and security hardening Solid knowledge on Linux systems including but not limited to system configuration, maintenance, administration; capable of various command lines for trouble shooting when needed Solid knowledge on network security.
- IT Security / Cybersecurity certifications a plus.
- Capabilities to run and operate solutions like Palo Alto firewalls, cortex XDR, XSOAR, Splunk, AD audit+, Microsoft Defender, Microsoft 365.
- Knowledge of the MITRE ATTCK framework and its related tactics, techniques and procedures (TTPs).
- Good knowledge of other major security solutions on the market is also a plus
OTHER REQIUREMENTS :
- Soft skills : Language : English (mandatory in read / write / speak / listen), other foreign language is a plus.
- Strong communication skills that apply in a global Team (interpersonal savvy) Results and customer oriented Capabilities to work in a stressful environment and able to keep up good results under pressure Confidentiality and loyalty Ability to work shifting schedule including but not limited to being at work during weekends and nights when requested Has interest for innovation and self-learning in his / her security domain
Skills Required
Network Security, Palo Alto Firewall, Windows, Microsoft, Cybersecurity