Jobs and Careers
FO

Senior SOC Analyst

Fortum
Finlandfull_timeVerifiedPosted 22 Nov 2024

About the role

<p><span><span><span><span><span>Fortum IT Security Operations Centre delivers cyber security service to mitigate cyber risks and increase collective cyber resiliency across Fortum ecosystems. We are an international team composed of people with an enormous passion for cybersecurity. We prevent the risks and threats associated with everyday work on the web of all our employees and partners. Does this sound interesting to you? Keep on reading!</span></span></span></span></span></p> <p><br/> <span><span><span><b><span><span>About the role</span></span></b></span></span></span></p> <p><span><span><span><span><span>A Level 3 Analyst (Senior SOC Analyst) is a subject matter expert responsible for managing threats, disseminating information, handling, and responding to, as well as investigating all incident escalations from the Security Operations Centre (SOC). Level 3 team members are responsible for coordinating the CSIRT (Computer Security Incident Response Team) process when necessary and managing incidents throughout the event life cycle. Senior SOC Analyst team members will further an investigation and ensure root cause and resolution for metrics, tracking and lessons learned are compiled, documented, and disseminated.</span></span></span></span></span></p> <p><br/> <span><span><span><b><span><span>Main responsibilities include</span></span></b></span></span></span></p> <ul> <li><span><span><span><span><span><span>Conduct forensics analysis on systems and ensure root cause and resolution for metrics, tracking and lessons learned are compiled, documented, and disseminated.</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Writing technical reports detailing how the computer evidence was discovered and all the steps taken during the retrieval process (timeline).</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Analyse and review escalated cases until closure; this includes investigating and recommending appropriate corrective actions for data security incidents which includes communicating with the implementation staff responsible.</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Research, develop, and keep abreast of testing tools, techniques, and process improvements in support of security event detection and incident response.</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Participate with onboarding new log sources and provide expertise about needed sources, develop, and maintain detection rules.</span></span></span></span></span></span></li> </ul> <p> </p> <p><span><span><span><b><span><span>About you</span></span></b></span></span></span></p> <ul> <li><span><span><span><span><span><span>Degree in computer science or closely related area with 5+ years of IT security experience. </span></span></span></span></span></span></li> <li><span><span><span><span><span><span>One relevant certificate (like CISSP, OSCP, GCFA etc.) is strongly preferred.</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Hands on experience in SOC or CERT.</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Hands on experience in the creation of use cases/detection rules for SIEM systems.</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Hands on experience in analysing SIEM/EDR data sets.</span></span></span></span></span></span></li> </ul> <p> </p> <p><span><span><span><b><span><span>We offer you</span></span></b></span></span></span></p> <ul> <li><span><span><span><span><span><span>Possibility to work with the cloud technology of the future and future-oriented products</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Modern tools and possibility to improve processes</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Focus on cybersecurity as a mandatory thing looking after critical infrastructure </span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Internal and external trainings</span></span></span></span></span></span></li> <li><span><span><span><span><span><span>Holistic view on wellbeing as part of our culture</span></span></span></span></span></span></li> </ul> <p> </p> <p><span><span><span><b><span><span>Interested?</span></span></b></span></span></span></p> <p><span><span><span><span><span>Please send your application with salary request latest by<b> 31st December 2024</b> via our online recruitment tool. </span></span><span><span>We work with an ongoing selection and will close the recruitment process as soon as the right candidate is found. </span></span><span><span>For further information, please contact Marcin Poslad, Senior Manager, Security Ops Center, </span></span><a href="mailto:marcin.poslad@fortum.com"><span><span>marcin.poslad@fortum.com</span></span

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Fortum

View company profile →