Global It Senior Specialist Cyber Security Incident Response
Social network you want to login/join with:
Global IT Senior Specialist Cyber Security Incident Response, Metropolitan City of Milan Client:
Location: Metropolitan City of Milan, Italy
Job Category: Other
EU work permit required: Yes
Job Reference: 7f6cf447bf79
Job Views: 8
Posted: 06. 03. 2025
Expiry Date: 20. 04. 2025
Job Description: Key Responsibilities and Activities Security Incident Response Process: Management of playbooks with a strong focus on corporate areas (Internal/External Communication, Legal & Compliance, HR, IT Operations, and other IT Centers of Excellence).
Development of new playbooks from scratch based on new events and emerging threats.
Mapping of playbooks on ServiceNow.
Incident simulations with all technical teams and participation in TableTop exercises.
Security Operation Management: Take ownership of the events in partnership with the SOC for efficient incident responses.
Participate in post-incident reviews, using feedback to refine response protocols, playbooks, SOPs, and the knowledge base aiming to improve security metrics such as the MTT*s. Drive the adoption of automation/orchestration in incident resolution.
Work with the SOC for accurate and timely evidence collection and forensic analysis in the event of data breach security incidents to determine the root cause and its impact.
Manage security alerts with the SOC and oversee SIEM rules specific to Campari.
Threat Hunting and Intelligence: Cooperate with the SOC to conduct threat hunting and Attack Simulation and Path Visualization using proper tools and collaborate with red/blue teams for attack simulations and resilience testing.
Undertake regular vulnerability assessments.
Work with Threat Intelligence providers to stay updated on new threats.
Key Relationships Internal: Global Cyber Security Managers; Global Service Delivery Tower Leads; Regional Service Managers; COE team.
External: Technology and service providers.
Experience & Education Fluent Italian and English, any other European language is an advantage; Degree in cyber security, computer science, engineering or equivalent is preferred; Proven experience in incident handling, playbook/runbook handling and forensic evidence collection.
Experience with cloud services and cloud SIEMs Excellent communication skills, versatility, flexibility and ability to work under pressure; Certifications (highly valued): Certified Information Systems Security Professional (CISSP), Cisco Certified CyberOps Associate, GIAC Incident Handler (GCIH), Offensive Security Certified Professional (OSCP), EC-Council's Certified Incident Handler (E|CIH), Incident Handling & Response Professional (IHRP), Certified Computer Security Incident Handler (CSIH).
Required Skills & Traits Skilled in security incident response process and playbooks.
Able to cooperate with various teams and vendors.
Ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily understood, authoritative and actionable manner.
Ability to work under pressure.
Cultural awareness and excellent team working skills.
Strong problem-solving and troubleshooting skills.
Additional Requirements Availability to travel internationally for short periods.
#J-18808-Ljbffr
-
Informazioni dettagliate sull'offerta di lavoro
Azienda: Buscojobs Località: Bardi
Emilia Romagna, BardiAggiunto: 12. 3. 2025
Posizione lavorativa aperta
Diventa il primo a rispondere a un'offerta di lavoro!