Security Operations Analyst

hace 4 semanas


Sevilla, España TUI Group A tiempo completo

Flexible- Madrid, Spain- Lisbon, Portugal- Palma, Spain- Seville, Spain-
- 125995-
- Remote-
- Permanent-
- Full Time-
- 37.5-40hrsAs a Security Operations Analyst within our Information Security Team you will perform a crucial role in designing, building, and maintaining our detection and response capabilities.

TUI is focussed on accelerating the development of digital capabilities across the entire holiday lifecycle to delight our customers. At the same time, everyone working on behalf of TUI protects information in all its forms so that we avoid harm; meet our customers’, colleagues’ and shareholders’ expectations and comply with national and international legislation. At TUI, information security is part of everyone’s job.

TUI Group is the world’s number one integrated tourism business. The Group umbrella consists of strong tour operators, 1,800 travel agencies and leading online portals, six airlines with more than 130 aircraft, over 300 hotels with 210,000 beds, twelve cruise liners and countless incoming agencies in all major holiday destinations around the globe. All this enables us to provide our 30 million customers with an unmatched holiday experience in 180 regions.

**ABOUT THE JOB**
- As a Security Operations Analyst you will promote a security first culture at TUI.

You will work with resolver teams to ensure that information security events and incidents are automatically generated, appropriately addressed and closed in local ticketing systems and ensure reporting on key performance indicators and service levels.

Our information security team works in collaboration with business and IT teams across our many domains. You adopt a pragmatic and ‘can-do’ attitude in everything you do, partnering with your colleagues across the TUI businesses and IT functions worldwide. You build strong working relationships and influence others to do the right thing to Protect our Smile.

**Main Responsibilities**
- Monitor for alerts from security tools, including, but not limited to, security analytics platforms, automation tools, ticket management systems, user-reported alerts, and others.
- Triage security alerts, including initial analysis to determine the validity of alerts and gather additional context.
- Use network and host security tooling to perform additional investigation.
- Work the full incident lifecycle from detection, investigation, response, to remediation for security alerts.
- Contribute to the further development, maintenance, and standardization of SOC processes, policies, and procedures.
- Work with other IT/security teams to identify areas for improvement around detection, investigation, and response.
- Research common and topical commodity and APT-based malware tactics and techniques in preparation for future attacks.
- Provide feedback on detection rules to help tune security tools and minimize false positives.
- Participate in SOC working groups and sub-teams to help generate and execute on new ideas for content, technology advancements, and proactive defence improvement projects.

**Success Metrics**
- Mean-time-to-acknowledge
- Mean-time-to-respond (MTTR) by alert severity
- Process adherence
- Recurring incident ratio

**ABOUT YOU**
- Demonstrable deep experience of design and build of systems integration, ideally in a security operations environment. Strong technical and IT operations background, with at least 5 years of experience
- Experience of working with Splunk or similar SIEM platforms, Service Desk systems and security monitoring tools desirable with experience in designing and developing these platforms.
- Familiarity and experience with Windows, macOS, Linux, and Unix operating systems
- Computer networking and cloud technology fundamentals
- Understanding of Active Directory, LDAP, IDaaS (AAD etc.)
- Rudimentary security knowledge and awareness of firewalls, proxies, antivirus, and IPS/IDS concepts
- Experience scripting in Python or PowerShell
- Experience using Microsoft Excel and Word
- Excellent written and verbal communication skills
- Good interpersonal skills so that you can work well with and influence your information security, and IT operations colleagues from around the world.
- Empathy to respond with understanding and care in the event of a security incident
- A process-oriented mindset, with the ability to follow standard operating procedures and alter such plans as the occasion arises
- The creativity to think outside the box and develop new solutions to complex problems, especially in the event of new, unexpected security incidents
- Communication skills to clearly relay technical information to individuals with different levels of technical competence
- Adaptability and flexibility to react quickly and respond completely to security incidents
- Attention to detail to ensure complete response and remediation in the event of an incident

**OUR OFFER**
- Being a valuable team member of TUI, the No.1 global and socially aware travel company


  • Network Security Analyst

    hace 3 semanas


    Sevilla, España Mercadona A tiempo completo

    En **Mercadona IT** dirigimos y desarrollamos grandes proyectos que impulsan la digitalización de Mercadona, modernizando las aplicaciones ya existentes y desarrollando nuevas herramientas y productos que mejoran y optimizan los procesos de la compañía.Para seguir creciendo con el mejor talento buscamos un perfil de Network Security Analyst que nos ayude...


  • Sevilla, España Total Information Management Corporation A tiempo completo

    DUTIES & RESPONSIBILITIES: Participate in the 24/7 operation and ensure a smooth and efficient operation.Monitor and analyze internet traffic for security breaches and denial-of-service attacks.Follow the policies, procedures, and technologies to maximize the effectiveness and efficiency of security operations.Ensure both OLAs and external SLAs are met and...


  • Sevilla, Sevilla, España Grupo Fertiberia A tiempo completo

    Job DescriptionThe Cluster Security Manager will be responsible for overseeing the physical security of Amazon's data centers. This includes managing access control systems, guard force management, contract management, vendor management, risk assessment, reporting security metrics, security audits, and incident reporting.The successful candidate will also be...

  • Network Security Analyst

    hace 4 semanas


    Sevilla, España Mercadona A tiempo completo

    En Mercadona IT dirigimos y desarrollamos grandes proyectos que impulsan la digitalización de Mercadona, modernizando las aplicaciones ya existentes y desarrollando nuevas herramientas y productos que mejoran y optimizan los procesos de la compañía.Para seguir creciendo con el mejor talento buscamos un perfil de Analista de Seguridad en Redes (Network...


  • Sevilla, España *Nombre Oculto* A tiempo completo

    En- Mercadona IT dirigimos y desarrollamos grandes proyectos que impulsan la digitalización de Mercadona, modernizando las aplicaciones ya existentes y desarrollando nuevas herramientas y productos que mejoran y optimizan los procesos de la compañía.Para seguir creciendo con el mejor talento buscamos un perfil de Analista de Seguridad en Redes (Network...

  • Network Security Analyst

    hace 4 semanas


    Sevilla, España Mercadona A tiempo completo

    En Mercadona IT dirigimos y desarrollamos grandes proyectos que impulsan la digitalización de Mercadona, modernizando las aplicaciones ya existentes y desarrollando nuevas herramientas y productos que mejoran y optimizan los procesos de la compañía.Para seguir creciendo con el mejor talento buscamos un perfil de Analista de Seguridad en Redes (Network...


  • Sevilla, España Mercadona A tiempo completo

    En- Mercadona IT dirigimos y desarrollamos grandes proyectos que impulsan la digitalización de Mercadona, modernizando las aplicaciones ya existentes y desarrollando nuevas herramientas y productos que mejoran y optimizan los procesos de la compañía.Para seguir creciendo con el mejor talento buscamos un perfil de Analista de Seguridad en Redes (Network...


  • Sevilla, España Mercadona A tiempo completo

    En- Mercadona IT dirigimos y desarrollamos grandes proyectos que impulsan la digitalización de Mercadona, modernizando las aplicaciones ya existentes y desarrollando nuevas herramientas y productos que mejoran y optimizan los procesos de la compañía.Para seguir creciendo con el mejor talento buscamos un perfil de Analista de Seguridad en Redes (Network...


  • Sevilla, España Mercadona A tiempo completo

    En - Mercadona IT dirigimos y desarrollamos grandes proyectos que impulsan la digitalización de Mercadona, modernizando las aplicaciones ya existentes y desarrollando nuevas herramientas y productos que mejoran y optimizan los procesos de la compañía.Para seguir creciendo con el mejor talento buscamos un perfil de Analista de Seguridad en Redes (Network...


  • Sevilla, España Covenant Technologies A tiempo completo

    Company: Global bankJob Title: Detection Security EngineerLocation: Remote in one of the following countries: Poland, Hungary, Romania, SpainRole Type: Contract (1 year minimum)Must-Have Skills2-3 years of experience with SIEM engineering, implementation, and deployments in the cloudExperience tuning detection and threat hunting use cases in a SIEMPrior...


  • Sevilla, España Total Information Management Corporation A tiempo completo

    DUTIES & RESPONSIBILITIES: Participate in the 24/7 operation and ensure a smooth and efficient operation.Monitor and analyze internet traffic for security breaches and denial-of-service attacks.Follow the policies, procedures, and technologies to maximize the effectiveness and efficiency of security operations.Ensure both OLAs and external SLAs are met and...


  • Sevilla, España Covenant Technologies A tiempo completo

    Company: Global bank Job Title: Detection Security Engineer Location: Remote in one of the following countries: Poland, Hungary, Romania, Spain Role Type: Contract (1 year minimum) Must-Have Skills 2-3 years of experience with SIEM engineering, implementation, and deployments in the cloud Experience tuning detection and threat hunting use cases in a SIEM...


  • Sevilla, España Covenant Technologies A tiempo completo

    Company: Global bankJob Title: Detection Security EngineerLocation: Remote in one of the following countries: Poland, Hungary, Romania, SpainRole Type: Contract (1 year minimum)Must-Have Skills2-3 years of experience with SIEM engineering, implementation, and deployments in the cloudExperience tuning detection and threat hunting use cases in a SIEMPrior...


  • Sevilla, España Accenture A tiempo completo

    Accenture está buscando Security Analyst/Consultant para ser asignados a sus oficinas en Madrid, Barcelona, Málaga o Alicante.Tus responsabilidades incluirían: Identificación y desarrollo de contenidos de sensibilización y divulgación en ciberseguridad para menores, familias y educadores.Creación de campañas.Formación a trabajadores y familiares en...


  • Sevilla, España Accenture A tiempo completo

    SAP Security ConsultantWe are looking for passionate curious and driven team players who are ready to ignite ideas push boundaries and drive innovation.At Accenture youll work on innovative projects and develop your career collaborating with the best teams in the world.Youll learn grow and advance in an innovative culture that thrives on shared success...


  • Sevilla, España Tradingview Inc A tiempo completo

    About us!Our open source charts and commercial libraries are used by tens of thousands of financial sites across the planet, including whales like: CME, Refinitiv, Investopedia, Crunchbase, Binance, Bitcoin.com and many others.We're also one of the world's biggest websites (#61 to be exact, according to Alexa Rankings), visited by 100s of millions of people...


  • Sevilla, España Tradingview Inc A tiempo completo

    About us! Our open source charts and commercial libraries are used by tens of thousands of financial sites across the planet, including whales like: CME, Refinitiv, Investopedia, Crunchbase, Binance, Bitcoin.com and many others.We're also one of the world's biggest websites (#61 to be exact, according to Alexa Rankings), visited by 100s of millions of people...


  • Sevilla, España Griffin Gaming Partners A tiempo completo

    Scopely is looking for a Principal Security Engineer to join our Information Security team in Seville on a hybrid basis.At Scopely, we care deeply about what we do and want to inspire play, every day - whether in our work environments alongside our talented colleagues, or through our deep connections with our communities of players.We are a global team of...


  • sevilla, España Griffin Gaming Partners A tiempo completo

    Scopely is looking for a Principal Security Engineer to join our Information Security team in Seville on a hybrid basis. At Scopely, we care deeply about what we do and want to inspire play, every day - whether in our work environments alongside our talented colleagues, or through our deep connections with our communities of players. We are a global team of...


  • Sevilla, España Tradingview Inc A tiempo completo

    About us!Our open source charts and commercial libraries are used by tens of thousands of financial sites across the planet, including whales like: CME, Refinitiv, Investopedia, Crunchbase, Binance, Bitcoin.com and many others.We're also one of the world's biggest websites (#61 to be exact, according to Alexa Rankings), visited by 100s of millions of people...