Information Security Specialist–Cloud Security Monitoring - Assistant Vice President
Deutsche BankAbout the role
Job Description:
Job Title Information Security Specialist–Cloud Security Monitoring
Corporate Title Assistant Vice President
Location Jacksonville, FL
Overview
Integrated in Deutsche Bank’s Chief Security Office (CSO), the Information Security Threat Operations team is responsible for mitigating these risks. The Information Security Threat Operations team enables the Business of Deutsche Bank by providing agile security operational capabilities. You will be responsible for the full range of tasks associated with the detection of cyber threats in a fastpaced environment for Deutsche Bank’s cloud workloads, using cloud based SIEM/SOAR solutions. Our Cloud Operations team is focused on helping develop Deutsche Bank’s new cloud architecture, platforms/systems, organizational and operational processes to allow for the detection of cyber threats, Once established the focus will shift stronger into the development to detect new threats and perform threat hunting while incorporating change in an evergreen cloud environment. This will involve maintaining a close dialogue with various units and stakeholders for the purpose of detecting and assessing potential risks to critical business infrastructure and services.
What We Offer You
A diverse and inclusive environment that embraces change, innovation, and collaboration
A hybrid working model, allowing for in-office / work from home flexibility, generous vacation, personal and volunteer days
Employee Resource Groups support an inclusive workplace for everyone and promote community engagement
Competitive compensation packages including health and wellbeing benefits, retirement savings plans, parental leave, and family building benefit
Educational resources, matching gift and volunteer programs
What You’ll Do
You will be expected to be able to identify areas for improvement and take accountability to drive security topics forward within and outside the team
In this role, you will also contribute to the development of Security Information and Event Management (SIEM) content, focusing on the Cloud Platform, including detection use cases, reports, network and asset model management, dashboards, rules/logic, documentation, and process establishment
Collaborate with other security specialists and experts to support the architecture, design and implementation of services and processes to support our mission of detecting cyber threats
Work in close cooperation with Cyber Intelligence, Incident Response, and the Security Operations Centre for the purpose of extending and strengthening the division’s capabilities relating to threat analytics for cloud service
This will include managing and overseeing a range of sophisticated tools and services aimed at detecting cyber threats/incidents and responding to them in a determined manner
Skills You’ll Need
Proficient Hands-on experience with Global Control Programme (GCP) Cloud
Moderate experience in developing, modifying, enhancing, and fine-tuning detection and alerting/threat hunting use-cases in any type of SIEM solution (Splunk, LogRhythm, QRadar) or experience of working with cloud based SIEM solutions (Splunk, Chronicle, Sentinel), Experience with industry known detection query languages: YARA, YARA-l, KQL, SPL, etc
Familiarity with Cyber Security Incident Response or computer forensic processes, or a strong interest and capability to learn the fundamentals of security operations within a short time, Experience of automating smaller tasks in a short amount of time, e.g., with scripting languages such as GCP CLI, PowerShell, Go, Python, etc. For internal use only
Experience with assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes (secure software development /Application Security, data protection, cryptography, key management, identity and access management, network security) within SaaS, IaaS, PaaS, and other cloud environments
Professional experience in the fields of either: Encryption; IAM (Identity & Access Management), Security Monitoring & Incident Response, Network Security, Pen Testing, Security Operation, Application Security Education and Certifications, Bachelor’s or master’s degree in MS, IS, Information Technology (IT), or Computer Science with a focus on cloud and network technology, software development, or IT security
Skills to Help You Excel
Certifications as CompTIA Security +, Google Cloud, Azure platforms can be considered a plus but they’re not mandatory
Any relevan
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s