Cette offre n’est plus disponible.

Security Engineer SIEM/SOAR F/H

CDI
Issy-les-Moulineaux
Salaire : Non spécifié
Télétravail non autorisé
Expérience : > 3 ans
Éducation : Bac +5 / Master

Capgemini
Capgemini

Cette offre vous tente ?

Questions et réponses sur l'offre

Le poste

Descriptif du poste

 

 

Job Description

Group Cybersecurity operations team helps to protect an organization by employing a range of security tools and technologies and processes to prevent, detect and manage cyber threats.

You will be working within a team primarily responsible for deployment, build, maintenance and administer the security tool chain required to keep the Group Cyber defence operational.

You will work with representatives of other team/business to capture requirement and convert the same into Alerts, Analytics, Playbooks, Correlation & detection rules etc.

Missions

To be a member of the SOC-MRO, a team who deliver specific Cybersecurity Services to the CAPGEMINI GROUP. Focused areas include SIEM/SOAR/UEBA/SIR etc

  1. Experience in security tool management with focus on SIEM & SOAR Integration.
  2. Tool Implementation/ Deployment/ Maintenance/ upgrade/ Patching/ performance monitoring etc.
  3. Support in managing and development of Correlation & Detection rules, Orchestration and Automated response, workflows, functions and to combine to publish response playbook.
  4. Use of Regex, scripting language like Python etc.
  5. Strong knowledge of frameworks such as Cyber Kill Chain and Adversary Tactics, Techniques and Procedures.
  6. Responsible to integrate various log sources, integrations of on-premises / on cloud assets, creation of custom connectors for SOAR/SIEM.
  7. Perform Health check, Continuous monitoring of Infrastructure, License management, capacity management, Tool config/Data backup etc.
  8. Successfully and closely working with OEM’s.

 

 


Profil recherché

Description du profil :

Profile

Knowledge and experience in various components of SOC infrastructure
IP Networking
Experience in the other Security tool chain like UEBA, EDR/NDR etc.
Experience in Supporting SOAR platform
Experience in the use of SIEM platforms, preferably IBM QRadar/Splunk
3+ years of experience managing Security tool chain being used in a Security Operation Center with focus on SIEM & SOAR.

Desirable :

Unix & Microsoft Administration
Vulnerability Awareness / Understanding
Experience with Regex and Scripting Language like Python

 

Soft Skills : 


Client value & Service Excellence
Collaboration
Continuous Learning & Self Development
Diversity
Flexibility



Nous proposons :

What have we prepared for you ?

Personal and professional development:

 

• Development programs, external courses, education & certificates co-funding

• NEXT platform with free access to Pluralsight, TED talks, Coursera materials, and virtual trainings: Excel, VBA, RPA, customer care and more.

 

Capgemini promeut une culture inclusive dans un cadre multiculturel et créateur de valeur, quel que soit votre parcours, genre, origine culturelle, sociale, … notamment au travers de ses réseaux OUTFront et Women@Capgemini . Entreprise handi accueillante , le Groupe développe une politique active d’emploi et d’insertion des personnes en situation d’handicap.

Capgemini s’engage pour un numérique responsable en intégrant l’éco conception et l’accessibilité dans ses projets, et réduira de 90% ses émissions d’ici 2040.

Partenaire de différentes associations, Capgemini accompagne les exclus du numérique vers l’autonomie.

https://www.capgemini.com/fr fr/notre groupe/responsabilite sociale et environnementale/

Envie d’en savoir plus ?

D’autres offres vous correspondent !

Ces entreprises recrutent aussi au poste de “Cybersécurité”.

Voir toutes les offres