Jobsuche > Frankfurt > It security engineer

IT Security Engineer (Cyber Incident Response and Threat Hunting) - CERT - Group Security (f/m/d)

Deutsche Börse Prague Branch
Frankfurt am Main
Diese Stelle ist in deinem Land nicht verfügbar.

Area of work :

Cyber Emergency Response Team (CERT) is the central unit for Information Security Incident Response. CERT performs his activities in strict cooperation with the Security Operation Center (SOC) and Cyber Analytics team, responsible for Cyber Threat Detection development, Threat Intel analysis and Threat Hunting.

DBG CERT is looking for a highly motivated and curious Incident Response Engineer with experience in the identification, containment and mitigation of IS incidents.

You will be involved in all stages of IS Incident Response as well as in the Threat Hunting program. You’re also expected to support the SOAR task force to automate detection and remediation and help us build the next generation of security operations and response platform within the Cyber Defense section.

Your responsibilities :

  • Lead cyber security incident response engagements covering incident handling and coordination, in-depth technical analysis, and investigation through to recovery
  • Develop IR initiatives that improve our capabilities to effectively respond and remediate security incidents (e.g. defining SIEM use-cases, identifying threat hunting hypothesis, promoting red-teaming activities, etc.)
  • Perform analysis of logs from a variety of sources (on-premises and cloud-based) identifying potential threats
  • Perform root cause analysis and drive implementation of containment and mitigation strategies
  • Perform post incident lessons learned, root cause analysis and incident reporting
  • Participate in Blue / Red teams exercise to test and improve our monitoring and response capabilities.
  • Build automation for response and remediation of malicious activity
  • Recommend security measures to address cyber threats identified in a proactive-based approach
  • Help to improve the CERT process excellence by maintaining information security documentation in line with regulatory requirements

Your profile :

  • Previous experience in a CERT or SOC team as well as involvement in IS Incident investigations
  • Knowledge of cyber threats and vulnerabilities : how to properly identify, triage, and remediate threats based on threat intelligence as well as on analysis of security events, log data and network traffic
  • Expert working knowledge of technical and organizational aspects of information security, e.g., through prior defensive or offensive work experience
  • Solid understanding of cyber threats and MITRE ATT&CK framework
  • Deliverable-oriented, with strong problem-solving skills and adaptation on complex and highly regulated environment
  • Team player willing to cooperate with multiple colleagues across office locations in a cross-cultural environment
  • Good report-writing skills to present the findings of investigations
  • Available during the working hours (Mo-Fr) + on-call duty
  • Fluent in spoken and written English, including security terminology; proficiency in German is a plus

Nice to have :

  • Background in Malware Analysis, Digital Forensics and / or Cyber Threat Intelligence
  • Experience in Threat Hunting including the ability to leverage intelligence data to proactively identify and iteratively investigates suspicious behaviour across networks and systems
  • Development of automation of various CERT / SOC processes via SOAR solution
  • Development (e.g. Python, Shell scripting)
  • Cloud Security expertise (primarily GCP and Azure)
  • Vulnerability Handling / Management
  • Relevant Industry Certifications such as SANS / GIAC (e.g., GCIA, GCIH, GNFA, GCFA), CompTIA (Security+, Cloud+, PenTest+), OSCP, eLearnSecurity are desirable

Why Deutsche Börse Group?

We are committed to providing a work environment where everyone feels welcome and can reach their full potential. Our standards go far beyond simply matching candidates with the right position.

Mobility

We enable you to move freely with our job tickets, job (e-)bikes and free parking opportunities.

Work environment

Collaboration, communication, or deep focus in our modern office buildings you will find the perfect work environment. Free drinks and food and meal allowances included.

Health and wellbeing

We care for your health and wellbeing and besides various health promotion measures we offer you a group accident insurance and additional insurance offers at discounted rates.

Financial stability

We provide financial stability by offering attractive salaries, company pension schemes, participation in our Group Share Plan, as well as bonuses, subsidies and discounts.

Hybrid work

Collaborate and exchange on-site or work remotely several days a week in line with business needs and local regulations.

Our hybrid working model combines the best of both worlds.

Flexible working hours

We want your job to fit your life situation and offer flexible working time models, childcare allowance, or the possibility to study alongside your job.

Internationality

Our market infrastructures are globally connected. Working with us means collaborating with like-minded colleagues across over 60 locations from more than 100 nations.

Development

We promote individual development by offering internal development programmes, mentoring, further education and training budgets.

Vor 18 Tagen
Ähnliche Stellenangebote
Gesponsert
ING Deutschland
Frankfurt, Hessen

Mit messerscharfen Analysen und konkreten IT-Security-Lösungen bereitest Du uns nicht nur auf potenzielle Bedrohungen und Sicherheitsrisiken vor, sondern ergreifst bei komplexen Angriffen und Cybercrime auch selbst direkt Gegenmaßnahmen und bereitest sie im Anschluss forensisch auf. Deine Aufgaben ...

Gesponsert
Coforge
Germany

Monitor security logs and alerts, and respond to security incidents. Perform regular security assessments and penetration testing to identify and mitigate vulnerabilities. Stay up-to-date with security threats and best practices, and implement necessary measures to protect the CDP infrastructure. Co...

Gesponsert
NXT Hero
Frankfurt, Hessen
Homeoffice

Willst du die IT-Welt sicherer machen und dabei eine wahre Heldenkarriere hinlegen? Dann schnapp dir deinen Cape und deinen IT-Werkzeugkoffer! Hier hast du die Chance, als One-(Wo)Man-Armee zu starten und ein eigenes Team zu formen – die ultimative Liga der IT Security. Wenn Du bereit bist, als IT S...

EDAG Engineering Group
Remote, DE

Weiter­entwicklung Hybrides Arbeiten* Ticket Plus Karte Gesundheits­management Flexible Arbeitszeiten Betriebliche Alters­vorsorge. JobPosting", "title" : "Experte* / Senior Engineer* Cyber Security Automotive", "description" : "Hohe Kompetenz und die Leidenschaft für neue Herausforderungen machen u...

cosnova GmbH
Sulzbach, Hessen

Du übernimmst technisches Ownership von on-premises Softwarelösungen, sowie SaaS (Software-as-a-Service) und deren Schnittstellen zu anderen Systemen bei cosnova - dabei entwickelst du diese stetig weiter und optimierst Workloads in Absprache mit dem Business oder im Rahmen unserer IT Strategie. Ass...

Infotree Global Solutions
Germany

Own relationship with assigned clients and ensure satisfaction of all assigned clients, and aid clients in achieving their goals and success criteria defined. We have a team of dedicated recruiters and consultant care representatives that are committed to your success and well-being. We are seeking ...

Bosch
Frankfurt, Hessen

Mit über Mitarbeitern ist die ITK Engineering GmbH ein inter­na­tional anerkanntes Tech­no­lo­gie­unter­neh­men mit ausgeprägter Expertise in der Digitalisierung, Elektrifizierung, Automatisierung und Vernetzung von Systemen. Gestalte auch Du mit starker Inno­vationskraft, hohem Quali­täts­anspruch...

KPMG
Frankfurt, Hessen

Mitarbeiterinnen und Mitarbeiter an 26 Standorten in Deutschland. Arbeite begleitend zum Studium mit KPMG an den unterschiedlichsten Themen der Wirtschaftswelt mit und baue Dein Netzwerk auf. Deine bereits gesammelten Kenntnisse im Bereich IT-Security sind bei dieser Position von Vorteil. Du begleit...

Lufthansa Group Security Operations GmbH
Frankfurt, Hessen

Urlaubs- / Weihnachtsgeld, Kostenloses Parken, Flugvergünstigungen, Kantine (bezuschusst vom Arbeitgeber), Jobticket / Zuschuss ÖPNV, Rabatte / Einkaufsmöglichkeiten, Mitarbeiter Events (Sommerfeste, Teilnahme an Sportwettkämpfen etc), Arbeitskleidung wird gestellt, Betriebsarzt, 13. Ausgeprägte Tea...

Q_PERIOR
Deutschland

Tagsüber am Schreibtisch, abends am Strand? Oder mit Blick auf die Berge in den nächsten Teams-Termin? Mit „Mobile Work Abroad“ kannst Du unter bestimmten Voraussetzungen bis zu 50 Tage im Jahr im EU-Ausland (sowie UK, NOR, ISL, LIE & CHE) arbeiten. Idealerweise hast du auch Erfahrungen in den Berei...