Global Security Ops Centre

Há 1 mês


Lisboa, Portugal Wtw Tempo inteiro

The Company
WTW is an award-winning advisory, broking and solutions company that helps clients around the world turn risk into a path for growth.
From the Titanic ship in 1912 to The Moon Buggy in 1971, WTW has a richness in insurance history dating back to 1828.
Our WTW Regional Delivery Hub based in the heart of Lisbon encompasses a +175 strong global team who deliver operational excellence through innovation and streamlined solutions every single day.
The Role
Technical:

Oversee the monitoring, investigation, containment, and eradication of cyber security threats against our business.
Lead the GSOC team in seeking out potential security issues through log analysis and use of tools such as SIEM, UEBA, EDR, etc.
Responsible for determining the response that should be put into action to mitigate damage and prevent the spread of security threats.
Escalate high priority or high severity alerts/incidents to the escalations team and ensure they are monitored and handled according to prescribed processes.
Ensure that there is a timely response to any cyber incidents to minimize the impact on the business, including interacting with different technical teams and business areas where needed.
Represent GSOC in incident stand-up calls to assist the GSOC Manager.
Use the latest threat intelligence to adapt your approach to detect the latest threats.
Ensure the team is working efficiently by identifying tuning opportunities, creating automation playbooks, and optimal use of technology.
Review and provide technical advice on tuning recommendations submitted by Level 1s and Level 2s to improve the business's security posture against attackers and threats through fine-tuning and rule creation.
Act as an escalation point to provide process and/or technical advice for Level 1 and Level 2 analysts.
Perform quality audits for tickets handled by Level 2s to ensure incidents were managed according to prescribed processes.
Attend handover calls to support Level 1s and Level 2s, providing advice (process/technical) on alerts/incidents for consultation.
May also be asked to lead teams/sub-teams within the GSOC as needed.
Provide on-call support (in rotation with other L3 Analysts) for high priority or high severity alerts/incidents.

Non-Technical:

Ensure there is a balanced capacity and workforce to maintain delivery of a 24 x 7 SOC service.
Create and produce required regular reports for the leadership team and meaningful reports to articulate security posture, trends, and patterns.
Assist L3 Manager in generating raw data for KPIs, submitting calculations, recording results, and recommending measures to maintain quality performance.
Line management responsibilities for Level 1s and Level 2s, including mentoring, coaching, and corrective actions.
Help Level 2 analysts deliver training to mature skills of new joiners or colleagues.
Conduct regular reviews of knowledge bases, processes, and runbooks to ensure they are up to date.
Regularly contribute to the SOC playbooks and knowledge base with findings from investigations on different attacker tools, tactics, and procedures applicable to future investigations.

The Requirements
What you will need:

Experience working as part of a 24/7 SOC across different locations; must be a team player with the ability and desire to engage with different internal stakeholders and colleagues.
6+ years of experience working in a mature cyber defense center or security operations center.
Great troubleshooting skills, research ability, and effective communication during stressful times, maintaining a calm and friendly approach.
Solid time management skills and dependability.
Hands-on experience using SIEM, UEBA, and EDR as a Level 3 security analyst.
Experience leading investigations and comfortable communicating with stakeholders on technical and non-technical levels.
Excellent verbal and written communication skills, with the ability to write structured reports.
MSc in a security field or equivalent experience in a security-related function.
Inquisitive nature with a strong sense of personal responsibility for learning and self-development.
Ability to identify common attack techniques within specific technologies.
Working knowledge of networking protocols/technologies (e.g., TCP, IP, HTTP/HTTPS).
Working knowledge of Unix, Linux, and Windows operating systems.
Exposure to attack and penetration methods and tools.
Ability to build scripts, tools, or methodologies to enhance incident investigations and processes (e.g., Python, PowerShell, Wireshark).
Experience with advanced investigation techniques, demonstrating 1 or 2 of the following:

Network forensic acquisition and analysis (using tools such as Deep Packet Analysis, Wireshark, NetWitness)
End-point forensic acquisition and analysis (using tools such as EnCase, X-Ways, Axiom, IEF, FTK)
Memory Analysis
Analysis of various security logs (endpoint, security appliances, SIEM)
Reverse Malware Engineering

Beneficial:

Any relevant security certifications (CISSP, CISM, SSCP, OCSP, Security+, CySA+, CASP+, GREM, GCIA, etc.).
Any relevant network certifications (Network +, CCNA, etc.).
Knowledge of other key IT fields (such as Web Applications, databases, Active Directory, network security systems such as web proxies, firewalls & data loss protection).

What's in it for you?
In WTW, you'll find a professional yet friendly environment in an office based in a fast-growing European capital. Join a team of dynamic and motivating colleagues
In addition to our attractive remuneration package, we offer:

Work-life balance: Mobile working or in the office? Flexible working hours? Sure, no problem. Hybrid working is more than just a buzzword for us.
Monetary benefit: An attractive, performance-related remuneration system.
Internationality: An international management consultancy and the security of a global corporation with renowned customers.
Development opportunities: A steep learning curve and sufficient freedom for individual career development: You will dive deep into a variety of topics, both on-the-job and in intensive specialist training.
Cooperation: Learning from each other and making decisions together, collegial, appreciative, and dynamic.
Customer contact: Quickly take responsibility.
Corporate events: Together we celebrate our successes and our community.

Willis Towers Watson is an equal opportunity employer.

#J-18808-Ljbffr


  • Global Security Ops Centre

    3 semanas atrás


    Lisboa, Portugal Wtw Tempo inteiro

    .The CompanyWTW is an award-winning advisory, broking and solutions company that helps clients around the world turn risk into a path for growth.From the Titanic ship in 1912 to The Moon Buggy in 1971, WTW has a richness in insurance history dating back to 1828.Our WTW Regional Delivery Hub based in the heart of Lisbon encompasses a +175 strong global team...


  • Lisboa, Portugal Wtw Tempo inteiro

    .The Company WTW is an award-winning advisory, broking and solutions company that helps clients around the world turn risk into a path for growth. From the Titanic ship in 1912 to The Moon Buggy in 1971, WTW has a richness in insurance history dating back to 1828. Our WTW Regional Delivery Hub based in the heart of Lisbon encompasses a +175 strong global...

  • Global Security Ops Center

    3 semanas atrás


    Lisboa, Portugal Wtw Tempo inteiro

    .The CompanyWTW is an award-winning advisory, broking and solutions company that helps clients around the world turn risk into a path for growth.From the Titanic ship in 1912 to The Moon Buggy in 1971, WTW has a richness in insurance history dating back to 1828.Our WTW Regional Delivery Hub based in the heart of Lisbon encompasses a +175 strong global team...


  • Lisboa, Portugal Wtw Tempo inteiro

    The Company WTW is an award-winning advisory, broking and solutions company that helps clients around the world turn risk into a path for growth.From the Titanic ship in 1912 to The Moon Buggy in 1971, WTW has a richness in insurance history dating back to 1828.Our WTW Regional Delivery Hub based in the heart of Lisbon encompasses a +175 strong global team...


  • Lisboa, Portugal Wtw Tempo inteiro

    .The Company WTW is an award-winning advisory, broking and solutions company that helps clients around the world turn risk into a path for growth. From the Titanic ship in 1912 to The Moon Buggy in 1971, WTW has a richness in insurance history dating back to 1828. Our WTW Regional Delivery Hub based in the heart of Lisbon encompasses a +175 strong global...


  • Lisboa, Portugal Capgemini Tempo inteiro

    .Platform Ops Engineer - Lisbon Capgemini Portugal is currently looking for a Platform Ops Engineer to join one of the world's most prestigious and innovative companies in the luxury industry. Our Client is the owner of prestigious Maisons distinguished by their craftsmanship, creativity, and technological innovation. Our Client's ambition is to nurture the...


  • Lisboa, Portugal Capgemini Tempo inteiro

    .Platform Ops Engineer - LisbonCapgemini Portugal is currently looking for a Platform Ops Engineer to join one of the world's most prestigious and innovative companies in the luxury industry.Our Client is the owner of prestigious Maisons distinguished by their craftsmanship, creativity, and technological innovation. Our Client's ambition is to nurture the...

  • Security Consultant/lead

    4 meses atrás


    Lisboa, Portugal Expleo Group Tempo inteiro

    Overview: Expleo is a trusted partner for your innovation journey. As a global engineering, technology and consulting service provider, we are ideally positioned to help you achieve your ambitions and future-proof your business. With a smart blend of bold thinking and reliable execution, we’re able to fast-track innovation through each step of your value...

  • People Ops

    3 semanas atrás


    Lisboa, Portugal Glintt Tempo inteiro

    Somos a Glintt Global, uma empresa de referência na Península Ibéria em Consultoria e Serviços Tecnológicos, com mais de 30 anos de experiência. Pretendemos impactar a qualidade de vida das pessoas, através da inovação, tecnologia, do conhecimento e da ambição que nos acompanham. Este é o nosso compromisso! Para tal, precisamos de ti! Procuramos...


  • Lisboa, Portugal EDP PT Tempo inteiro

    Country/Region: PT- City: Lisbon- Business Unit: EDP ENERGIAS DE PORTUGAL**EDP** is a global energy company that leads based on the values of Innovation, Sustainability and Humanization. Using the technology of the future we create solutions highly focused on the needs of our people and our customers, never neglecting our role and contribution to...


  • Lisboa, Portugal Bose Tempo inteiro

    Job Description Are you looking for a challenging opportunity with a lot of variety, in a shifting environment? Then this opportunity is right for you! The Business Service Center at Bose Portugal is delivering global business services for all levels of the company with high quality standards. Bose is an international company with thousands of employees,...


  • Lisboa, Portugal Capgemini Tempo inteiro

    . Platform Ops Engineer - Lisbon Capgemini Portugal is currently looking for a Platform Ops Engineer to join one of the world's most prestigious and innovative companies in the luxury industry. Our Client is the owner of prestigious Maisons distinguished by their craftsmanship, creativity, and technological innovation. Our Client's ambition is to nurture the...


  • Lisboa, Portugal Capgemini Tempo inteiro

    Platform Ops Engineer - LisbonCapgemini Portugal is currently looking for a Platform Ops Engineer to join one of the world's most prestigious and innovative companies in the luxury industry.Our Client is the owner of prestigious Maisons distinguished by their craftsmanship, creativity, and technological innovation. Our Client's ambition is to nurture the...


  • Lisboa, Portugal Capgemini Tempo inteiro

    .Platform Ops Engineer - Lisbon  Capgemini Portugal is currently looking for a Platform Ops Engineer to join one of the world's most prestigious and innovative companies in the luxury industry.Our Client is the owner of prestigious Maisons distinguished by their craftsmanship, creativity, and technological innovation.Our Client's ambition is to nurture the...

  • IT Ops

    4 meses atrás


    Lisboa, Portugal Capgemini Tempo inteiro

    At Capgemini Portugal we are looking for an IT Ops to join one of our clients in the Banking Sector. If you are looking for new challenges in Lisbon to help you evolve as a professional, Capgemini Portugal is the place for you. Main Responsabilities: - Contribute to the definition and implementation of production monitoring and alerting system in private...

  • Live Ops Manager

    3 meses atrás


    Lisboa, Portugal FRVR Tempo inteiro

    **About FRVR** FRVR is a growth stage games platform and publishing company building an expansive, cross-channel ecosystem that connects billions through amazing games instantly. FRVR’s proprietary technology and global reach represent a sea change for players and game developers. By democratising game distribution & discovery, eliminating downloads, and...


  • Lisboa, Portugal Devoteam Tempo inteiro

    At Devoteam, we believe that technology with strong human values can actively drive change for the better. Discover how Tech for People unlocks the future, creating a positive impact on the people and the world around us. We are a global leading player in Digital Transformation for leading organisations across EMEA, with a revenue of €1B. We believe in...


  • Lisboa, Portugal Devoteam Tempo inteiro

    At Devoteam, we believe that technology with strong human values can actively drive change for the better. Discover how Tech for People unlocks the future, creating a positive impact on the people and the world around us. We are a global leading player in Digital Transformation for leading organisations across EMEA, with a revenue of €1B. We believe in...


  • Lisboa, Portugal Logicalis Tempo inteiro

    Acerca da Logicalis A Logicalis é um Global IT Solutions & Digital Services Provider que acelera a transformação digital dos seus clientes em todo o mundo, através de uma rede internacional dotada de centros de especialização, equipas líderes do sector e parcerias estratégicas (que incluem Cisco, Microsoft, Dell Technologies, Citrix, HPE, IBM,...


  • Lisboa, Portugal Amgen Tempo inteiro

    **The Amgen Capability Center in Lisbon, Portugal (ACCP)** will be home to over 300 multi-national and multi-cultural employees, representing a broad range of cross functional capabilities, including Commercial, General and Administrative, Research and Development and more. The ACCP will offer rich career growth and development opportunities, regional and...