Jobs and Careers
NA

SOC Analyst L2

Natixis in Portugal
Portugalfull_timeVerifiedPosted 2 Jun 2023

About the role

Company Description

Natixis in Portugal is fully integrated in the global organization of Natixis, a French multinational financial services firm specialized in Asset & Wealth Management, Corporate & Investment Banking, Insurance and Payments. A subsidiary of Groupe BPCE, Natixis counts nearly 16.000 employees across 38 countries.

Based in Porto, Natixis Centre of Expertise mission is to transform traditional banking by developing innovative solutions for the bank’s business, operations and work culture worldwide, as a key driver of the company’s culture of agility and innovation. Teams of IT and Banking Support Activities work in an integrated, inclusive and transversal way, supporting all the business lines and country platforms.

Natixis in Portugal is the best combination of a “start-up mindset” with a large, solid structure. Its unique culture gives true meaning to a “beyond banking” personality: to be a real entrepreneur, self-challenging, ever striving to excel and go that extra mile.

Job Description

Founded in 2015, BPCE Infogérance & Technologies BPCE Infogérance & Technologies is a subsidiary of Groupe BPCE, dedicated to Infrastructures, End-User Environment, Security and Production. Improving the quality of service for all Groupe BPCE employees and clients, strengthening IT security, in particular Cybersecurity controls and risks, and improving user experience, while contributing to the business growth in a competitive environment are the priorities at the heart of its strategy. Learn more in this 2-minute video

The activities performed in Natixis in Portugal consist of an accelerator of BPCE Infogérance & Technologies strategic ambitions, fully integrated in the global organization model. Driven by growth, expertise, transformation and agility, this project embraces an international mindset and a diverse skill set. You’ll find yourself in a dynamic and enriching workplace or, as we like to name it, a real tech playground, where you’ll be able to explore a huge tech stack. 

We are looking for a SOC Analyst L2 (local contract) to join our BPCE IT business Unit.

Integrated within the Security Operation Center (SOC) BPCE-IT, the Blue Team is the first line of defence, responsible for defending the enterprise's use of information systems by maintaining its security posture against attackers. 

The main activities are the ones below: 

  • Detection, categorization and investigation of infrastructure, applications and security incidents 

  • Vulnerability management on critical vulnerabilities (handling, categorization and follow-up) 

  • Leading incident response plans 

  • Follow-up of remediation plans 

  • Implementation of detection scenarios and treatment of associated alerts 

The L2 SOC Analyst is responsible for monitoring and analyzing the organization’s networks and systems on a daily basis to detect, identify, investigate, and mitigate potential threats. They must be able to identify anomalous behavior, recognize patterns of malicious activity, and take appropriate corrective action. 

In addition to their daily duties, the L2 SOC Analyst will provide recommendations for improving security posture and assist with incident response plans, policies, and procedures. Some additional responsibilities may include recommending tools or solutions, participating in audit activities, providing reporting on security events/incidents and collaborating with other teams across the organization. 

Main Tasks and Responsabilities:

The candidate will have 3 main missions: 

1) Analysis: 

  • Participation in improving correlation and log analysis rules  

  • Conduct investigations and research including statistics  

  • Interpret or perform first level (Sandbox or manual) minimum scans on malicious codes 

  • Improve our Threat Intelligence activity   

2) Handling incidents: 

  • Creating, and managing service requests via our ticketing tools (ServiceSnow / SecOps / TheHive) 

  • Qualify and analyze these elements to determine the cause of the incident, the mode of operation of the attack (vulnerabilities use, tactics, technics), the scope and the perimeter of compromise 

3) Training: 

  • Knowledge transferring in-house and writing documentation  

Apart from these activities the candidate will have to maintain and develop his expertise: 

  • in techniques and tools of digital investigation 

  • methods and tools for analysis (monitoring, training, international conferences, etc.)

Qualifications

Main requirements:

Th

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Natixis in Portugal

View company profile →