Security Operations Center – L3 Expert - Hortolândia, São Paulo
há 18 horas

Descrição do trabalho
Who We Are
At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.
The Role
SOC L3 Expert supports clients in managing Security Operations and protecting environments against insider and external threats. The role requires an experienced security professional with proven expertise in SOC operations, Threat Detection & Response, Security Intelligence, Continuous Security Monitoring (CSM) within a SOC.
Key Responsibilities:
- Lead complex investigations and conduct deep analysis of security events focused on rapid containment, remediation, and mitigation.
- Lead in the detection, triage, analysis and response to cyber-attacks. Serve as a technical Cyber SME and onsite task lead.
- Provide insight and expertise to examine malicious code (malware), attack vectors, network communication methods, analyze threats against target systems and networks, determine target network capabilities and vulnerabilities.
- Training and mentoring Level 1 & Level 2 peers to improve SOC Analyst capability.
- Engaging across the organization and partnership with a diverse set of IT and business stakeholders, awareness of business needs for delivery and agility and to ensure security topics (operations, engineering, risk, compliance) are integrated and automated properly.
- Working with Cybersecurity, Information Technology Services teams, and others across the global business organization on practical implementation of SOAR and SOC Runbooks and Playbooks
- Identifying, monitoring, and reporting on trackable metrics to improve processes, procedures, and overall operational security while minimizing business impact
- Perform Security Operations maturity assessments, formulate roadmaps to bridge existing security gaps and help accelerate transformation towards SOC maturity.
- Reviewing SOC Runbooks and Playbooks and determining if good practices are being followed, considering most common cybersecurity threats within clients' industries, business and Geo locations.
- Reviewing SOAR and XDR products utilized and determining if they are configured properly.
- Deploying SOC automation technology through SOAR, Case Management.
- Reviewing Security Operations Runbooks and Playbooks through assessing SOC threat landscape; existing automations and providing recommendations to comply with SOC automation best practices, using applicable cybersecurity framework.
- A willingness to go beyond the ordinary to meet and exceed client expectations.
Your future at Kyndryl
Every position at Kyndryl offers a way forward to grow your career, from Junior System Administrator to Architect. We have opportunities for Cloud Hyperscalers that you won't find anywhere else, including hands-on experience, learning opportunities, and the chance to certify in all four major platforms. One of the benefits of Kyndryl is that we work with clients in a variety of industries, from banking to retail. Whether you want to broaden your knowledge base or narrow your scope and specialize in a specific sector, you can find your opportunity here.
Who You Are
You're good at what you do and possess the required experience to prove it. However, equally as important – you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused – someone who prioritizes customer success in their work. And finally, you're open and borderless – naturally inclusive in how you work with others.
Required Technical and Professional Expertise:
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or other related fields, from an accredited university. Equivalent professional experience can be used in lieu of a degree.
- Security analyst experience, preferably in a managed services environment.
- Experience on SOC operations (Standard Operations Procedures, Runbook and Playbooks).
- Experience threat hunting, proactively and iteratively searching to detect advanced threats that evade existing security solutions.
- Expertise in network, host, and cloud-based security, attack techniques, analysis, and investigation.
- Strong experience with Operating systems (Windows, Linux and MacOS) & IT Architecture.
- Deep understanding of a variety of logs coming from cloud, network or endpoint devices.
- Expert level understanding of advanced attacks and defense techniques.
- Experience in Cloud Security monitoring and in advanced analytics (UEBA).
- Experience with leading security incident response.
- Experience with triaging various disparate anomalies to detect meaningful threat scenarios.
- Sound experience on programming languages: Python and/or R. and/or PowerShell.
- Experience in REST API interfaces to support data collection or integration.
- Experience with Data monitoring / Data Science.
- Strong Understanding of the current cyber threat landscape, the different tactics commonly used by adversaries and how you would investigate, contain and recover against their attacks.
- Deep knowledge in the most common and used frameworks (E.g., NIST CSF, ISO2700x, CMM SOC, etc.)
- Fluent English (written and spoken)
- Strong critical thinking and analytical skills and ability to think "out of the box" required.
- Must be able to work independently or with a team, under minimum supervision.
Preferred Technical and Professional Experience:
- MBA or master's degree
- Experience with one or more of the following areas:
Operation and Implementation of SIEM solutions including:
XSIAM and Microsoft Sentinel.
Operation and Implementation of Security Automation solutions including:
Thorough knowledge of SOAR (Security Orchestration Automation & Response) technologies.
Desing and Implementation of Monitoring strategy including:
Thorough knowledge on defining data sources monitoring based on clients' business
- Thorough knowledge on MITRE Frameworks (ATT&CK, D3FEND)
Familiar with Cyber Kill Chain
Desing and Implementation of Configuration Governance solutions including:
Thorough knowledge on how to operationalize ongoing security configuration governance service using SOC standard methodologies, metrics, KPIs, KRIs, Operational Procedures.
Cyber Network Operations/Penetration Test Methodologies and tools like Metasploit, Kali Linux, Cobalt Strike etc.,
Being You
Diversity is a whole lot more than what we look like or where we come from, it's how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we're not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you – and everyone next to you – the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That's the Kyndryl Way.
What You Can Expect
With state-of-the-art resources and Fortune 100 clients, every day is an opportunity to innovate, build new capabilities, new relationships, new processes, and new value. Kyndryl cares about your well-being and prides itself on offering benefits that give you choice, reflect the diversity of our employees and support you and your family through the moments that matter – wherever you are in your life journey. Our employee learning programs give you access to the best learning in the industry to receive certifications, including Microsoft, Google, Amazon, Skillsoft, and many more. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations. At Kyndryl, we invest heavily in you, we want you to succeed so that together, we will all succeed.
Get Referred
If you know someone that works at Kyndryl, when asked 'How Did You Hear About Us' during the application process, select 'Employee Referral' and enter your contact's Kyndryl email address.
Empregos semelhantes
In Systems Management at Kyndryl, you will be critical in ensuring the smooth operation of our customers' IT infrastructure. · ...
há 1 semana
We run and reimagine the mission-critical technology systems that drive advantage for the world's leading businesses. We are at the heart of progress; with proven expertise and a continuous flow of AI-powered insight, enabling smarter decisions, faster innovation, and a lasting c ...
há 1 semana
In Systems Management at Kyndryl, you will be critical in ensuring the smooth operation of our customers' IT infrastructure. · ...
há 1 semana
Associate Data Center Project Manager, Amazon Infrastructure Services
Apenas para membros registrados
We are currently seeking a Data Center Project Manager to serve as a technical resource within Amazon data centers.You will be part of a highly creative, efficient team tasked with tackling the most fascinating and challenges in designing, building, and operating Amazon data faci ...
há 1 mês
We empower you to reach your potential with opportunities to make an impact to be proud of – for food, · people,and the planet. · ...
há 1 mês
We are hiring for a Custom Recruitment Specialist to join M3 Global Research. The role will involve creating and executing custom recruitment plans for allocated projects, ensuring successful delivery within budget and timelines. · Create and execute custom recruitment plans on a ...
há 2 dias
We are looking for a Middle/Senior Project Manager to join our Stellar AdTech Competence Center in São Paulo, Brazil. · ...
há 3 dias
We are currently seeking a Information Security to join our team in Brazil, São Paulo (BR-SP), Brazil (BR). · Gather & Analyze Requirements of – System, Capabilities, Users, Roles, Processes & Data and Document them in Customer accepted formats/ Templates. · Collaborate with team ...
há 1 semana
Join the AdTech Competence Center at Sigma Software to develop innovative advertising technology solutions as a Big Data Engineer. · Develop ETL pipelines using Python and SQLTroubleshoot production data issues ...
há 1 semana
This Senior Product Manager role sits at the heart of the Developer Portal website and Control Center web application. · ...
há 2 dias
Data Center Technician Manager, Night Shift, On-Site
Apenas para membros registrados
As a Microsoft Data Center Technician (DCT) Manager, you will lead a team of technicians providing expert guidance on performing hardware deployments diagnostics on equipment and hardware decommissions. · ...
há 1 mês
This Senior Critical Environment Technician will maintain critical infrastructure in datacenters. · They will coordinate with suppliers/vendors and work closely with management to address operational risk situations. · ...
há 4 semanas
+Job summary · A Senior Critical Environment Technician will maintain critical infrastructure in Datacenters. This involves coordinating with suppliers, working with management, mentoring other technicians, performing maintenance tasks and troubleshooting equipment. · +Responsibi ...
há 1 mês
As a Senior Critical Environment Technician in Microsoft's Cloud Operations & Innovation (CO+I) team, you will maintain the critical infrastructure that keeps our Datacenters up and running. · Understands, follows, and ensures safety and security requirements. · Maintains safe wo ...
há 1 mês
As a Senior Materials Handler at Microsoft, you will perform cycle audits, execute incoming/outgoing deliveries, coordinate security escorts for third-party vendors, and document inbound and outbound deliveries. · ...
há 2 semanas
We know that work, when done well, makes a positive impact for our customers, our employees, and our planet. · ...
há 3 semanas
· Company Description · Welcome to Avenues São Paulo Since our doors opened in August 2018, we've been on a mission to provide a truly transformative educational experience. Through immersive English language learning and dynamic interdisciplinary projects, we prepare our studen ...
há 1 dia
Data Center Technician Manager, Night Shift, On-Site
Apenas para membros registrados
As a Microsoft Data Center Technician (DCT) Manager you will lead a team of technicians providing expert guidance on performing hardware deployments diagnostics on equipment and hardware decommissions you will support technician performance prioritizing technician tasks while mon ...
há 1 mês
+Overview. As a Microsoft Data Center Technician (DCT), you will stage, set up and perform hardware deployments. This opportunity will allow you to deepen your understanding of Data Center standard processes and procedures. · +Demonstrates an applied understanding of standard pro ...
há 1 mês
As a Senior Critical Environment Operations team member at Microsoft’s Cloud Operations & Innovation (CO+I), you will maintain the critical infrastructure that keeps our Datacenters up and running. · Maintain safe working conditions at all times. · Perform various types of mainte ...
há 4 semanas