- Identify and analyze complex incidents and support implementation of appropriate countermeasures,
- Conduct incident response activities for identified security breaches,
- Conduct threat hunting activities focusing on adversarial tactics, techniques, procedures, common attack vectors and attack stages,
- Use SOC monitoring tools for in-depth security event and alert analysis,
- Execute, design, and manage incident response playbooks,
- Document, escalate and report on cybersecurity incidents,
- Participate in the design and improvement of SOC capabilities,
- Provide guidance, mentoring and feedback to SOC Analysts,
- Maintain an up-to-date understanding of the latest cybersecurity threats and trends.
- 8+ years of IT related work experience, or 4+ years of work experience in cyber security,
- Advanced knowledge of computer networking concepts and protocols, and network security methodologies,
- Advanced knowledge of cybersecurity and privacy principles, cyber threats and vulnerabilities,
- Advanced knowledge of authentication, authorization, and access control methods,
- Experience with common cyber defense and security tools such as SIEM, anti-virus software, intrusion detection, firewalls, proxies, endpoint security solutions and vulnerability assessment,
- Experience analyzing cyber security relevant log sources, such as operating system, firewall, network traffic, e-mail, web, proxy, dns and dhcp,
- Experience in open-source intelligence (analysis of IOCs, OSINT data collection),
- Experience using forensic tools,
- Strong analytical and problem-solving skills,
- Knowledge of Windows and Linux based operating systems,
- Ability to effectively communicate security incidents to clients, peers and management,
- Fluency in Croatian and English language, spoken and written,
- Ability to meet deadlines whilst maintaining quality.
- Bachelor’s or Master’s degree in Computer Science, Information Technology, or related field,
- Knowledge and practice in operating system and network hardening techniques,
- Knowledge of adversarial tactics, techniques, procedures, common attack vectors and attack stages,
- Knowledge of incident response and handling methodologies,
- Experience planning, researching, and developing security policies, standards and procedures,
- Experience in usage and administration Vulnerability Management tools (any of Rapid7 Nexpose/Insight VM, Qualys, Tenable),
- Experience in Vulnerability Management process, approval, exclusion, and remediation management,
- Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins),
- Experience using Splunk for log analysis and correlation,
- Cybersecurity-related certifications.
- Flexible working hours and cozy work environment,
- Competitive compensation and benefits package (includes health checks, bonuses, gifts for babies, paid Multisport, etc.),
- Permanent contract in the leading company in information security,
- Work in a dynamic and collaborative team of experts,
- Great career advancement opportunities,
- Personal improvement through attending leading conferences, seminars, and educations in the field,
- All the coffee, fruit, soda and tea in the world,
- Team building events and much more…
For any further questions related to the job itself or application process, feel free to contact us via e-mail: posao@infigo.is
We are looking forward to your application.