Job
- Level
- Lead
- Job Field
- IT, System, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Salary
- from 65.000 € Gross/Year
- Location
- Gemeinde Wiener Neudorf
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you lead a team of Security Analysts, coordinate security incidents, analyze cyber threats, and develop strategies for compliance and continuous improvement of security processes.
Job Technologies
Your role in the team
- This Component Lead position is responsible for managing and administering staff, acting as the team leader for security analysts of all levels, and supporting through technical oversight, performance monitoring, process implementation, and holistic deployment.
- The main focus of this role is on leading the team as well as participating in investigations, including identifying and reporting on cyber threats.
- You coordinate resources during incident response cases, act as the primary manager for security incidents, assist in classifying security events, develop guidelines for remedial actions, support documentation, and help ensure system security.
- Leadership of the Security Operations Center analysts.
- Training and mentoring of Security Analysts in the SOC team in developing their cybersecurity skills, their focus areas, and their ongoing understanding of the current threat landscape.
- Response to incidents, provision of security recommendations, and handling of incidents as needed.
- Ensuring compliance with internal policies, procedures, playbooks, and guidelines by the security team.
- Maintenance and development of internal processes, security procedures, and remediation measures in accordance with the company's compliance requirements (e.g., GDPR, ISO27001, NIS 2).
- Identification of opportunities to improve SOC monitoring and detection based on the current threat landscape, best practices, gained experience, etc.
- Designing requirements and needs for the technical implementation of use cases with internal SOC teams, focusing on active collaboration.
- Consulting and management of process engineering and technical safety controls.
- Advising and guiding other teams within the company on best practices and maintaining relevant and up-to-date industry knowledge.
- Troubleshooting and support in resolving security issues.
- Act as a subject matter expert and primary escalation point for security issues within internal teams.
- Preparing analysis and results reports for briefings to the management.
- Investigate, document, and report on information security issues and emerging trends.
- Participation in the development and implementation of security solutions for internal teams.
This text has been machine translated. Show original
Our expectations of you
Education
- Successfully completed university studies (Computer Science, Information Security, IT Security, Cybersecurity) or a comparable qualification.
Qualifications
- Extensive knowledge in handling industry-standard SOC tools and their implementation.
- Very good knowledge of various security methods and technical security solutions.
- In-depth knowledge of current vulnerabilities and attacks.
- Technical expertise in network security, including VPN, firewall, web server security, and cloud.
- Ability to analyze endpoint, network, and application protocols.
- Successful work in a fast-paced environment with high pressure.
- Excellent communication skills, both written and verbal, for a technical and non-technical audience in German and English.
- Industry certifications such as CISSP/CISM, SANS GIAC certifications, C.E.H/L.P.T, or other relevant certifications are advantageous.
- Entrepreneurial thinking and strong analytical and conceptual skills.
- Precise, responsible thinking and reliability are among your strengths.
- Excellent presentation and moderation skills.
- Technical knowledge of the products Splunk, SentinelOne, Proofpoint, Cyberark is an advantage.
- Knowledge of frameworks and standards in the SOC environment such as Cyber Kill Chain, MITRE, SOC CMM, or similar standards.
- Strong decision-making skills with proven ability to weigh the relative costs and benefits of potential actions and determine the most appropriate course of action.
- Ability to independently analyze complex problems and to identify relevant insights and causes.
- Strong problem-solving and troubleshooting skills.
Experience
- At least 5 years of experience in a security environment, preferably in a senior technical security role or as a Lead Security Analyst.
- At least 2-3 years of team leadership or management experience.
- Experience with Security Operations Center, network event analysis, and/or threat analysis.
- Experience working as an Incident Responder.
- Experience in analyzing data from cybersecurity monitoring tools, including proven experience in using SIEM, XDR, EDR, NDR, PAM, and Threat Intelligence solutions.
This text has been machine translated. Show original
Benefits
Health, Fitness & Fun
- 🤫Relaxation Rooms
- 👨🏻🎓Mentor Program
- ⚽️Tabletop Soccer, etc.
- 👩⚕️Company Doctor
- 🎳Team Events
- 🧘♀️Massage, Yoga, etc.
- 🏋🏿♂️Fitness Offers
- 🙂Health Care Benefits
Work-Life-Integration
- 🚌Excellent Traffic Connections
- 🕺No Dresscode
- 🅿️Employee Parking Space
- 🙅♂️No All-In Contracts
- 🏠Home Office
- ⏰Flexible Working Hours
- 🍼Day Care for Kids
More net
- 💻Company Notebook for Private Use
- 🛍Employee Discount
- 👷♂️Additional Insurance
- 🎁Employee Gifts
- 🚙Company Car
Food & Drink
Job Locations
Topics that you deal with on the job
This is your employer
REWE Group Österreich
Wien, Premstätten, Wiener Neudorf, Wien
The IT department of the REWE Group Austria is made up of over 500 talented employees who develop innovative IT products and services that provide the best shopping experience in markets like BILLA, BILLA PLUS, PENNY, BIPA and ADEG. With customers and partners in Austria, Italy and nine other European countries, we are constantly developing new solutions for retail that will revolutionize commerce. In cross-functional product teams, colleagues from fields like IT Consulting, Development/Programming ,IT Operations and Organizational Management work together to digitize trade.
Description
- Company Size
- 250+ Employees
- Founding year
- 1953
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Trade, Internet, IT, Telecommunication
Dev Reviews
by devworkplaces.com
Total
(4 Reviews)Culture
3.6Workingconditions
3.8Career Growth
4.3Engineering
3.4