Senior Threat Detection (CSOC) Analyst

CR, ASUNCION, VIRTUAL

Applications have closed

3M

3M applies science and innovation to make a real impact by igniting progress and inspiring innovation in lives and communities across the globe.

View all jobs at 3M

3M has a long-standing reputation as a company committed to innovation. We provide the freedom to explore and encourage curiosity and creativity. We gain new insight from diverse thinking, and take risks on new ideas. Here, you can apply your talent in bold ways that matter.

Job Description:

Job Title
Senior Threat Detection (CSOC) Analyst

Collaborate with Innovative 3Mers Around the World

The person filling the Cybersecurity Operations Center Senior Analyst role will join 3M’s Information Security, Risk and Compliance organization as part of a team focused on the ongoing development and operations of 3M’s global Cybersecurity Operations Center. You will help support day to day operations, monitoring and responding to security threats and risks, provide in-depth incident evaluation & analysis, and will provide pro-active threat hunting and intelligence research. This position will be operating in our Cybersecurity Operations Center; some weekend and after-hours work will be required.

Primary Responsibilities include but are not limited to the following:

  • Actively participate on the analysis, handling and response of high priority cyber incident cases.
  • Provide support to other CSOC analyst on cyber incident cases, as technical point of contact.
  • Provide feedback and/or enhancement opportunities to the detection content developers and other teams managing the security stack (EDR, Firewalls, IPS, etc.).
  • Participate on the identification of automation opportunities through the SOAR and/or scripting.
  • Lead and participate on Threat Hunting activities to evaluate and detect potential threats.
  • Retrieve and analyze relevant artifacts from systems to create timelines and evaluate the activity on endpoints/servers.
  • Author Global Standard Operating Procedures and training documentation as needed
  • Assist in training SOC team members and QA process for closed cases.
  • Collaborate on designing and executing tabletop exercises related to the IR function.

Basic Qualifications:

  • University Degree in MIS, Computer Science, or related field from a recognized college or university or equivalent work experience
  • 5 years of security experience with at least of 8 years total IT background
  • IT Security Operations Center environment experience with security monitoring experience
  • Experience working with a SIEM and SOAR and participating on their feedback loops.
  • Ability to interact with vendors, clients, and internal teams in a professional and articulate way via spoken and written word

Preferred Qualifications:

  • CISSP, SANS Certifications or other equivalents
  • Experience working/analyzing with Windows and Linux forensic artifacts and different methods of collection.
  • Experience working with scripting languages such as Python and PowerShell
  • Ability to identify and assess foreseeable internal and external risks to the security, confidentiality, and availability of information and systems using a documented process
  • Experience working in IT at a global organization

Supporting Your Well-being
3M offers many programs to help you live your best life – both physically and financially. To ensure competitive pay and benefits, 3M regularly benchmarks with other companies that are comparable in size and scope.

 

Imagine your future in 3M
At 3M, inspiration happens daily. Here, science is how the magic happens. Except it is not magic, it is the right science, applied in the right way by the people of 3M. Here, your ideas help shape everyday lives around the globe. Here, you matter. You inspire. Challenge. Create. Thrive. Here, you go. Apply now and discover inspired opportunities!

Learn more about 3M’s creative solutions to the world’s problems at www.3M.com or on Twitter @3M.

3M es un empleador que ofrece las mismas oportunidades. 3M no discriminará a ningún solicitante de empleo por razones de raza, color, edad, religión, sexo, orientación sexual, identidad o expresión de género, origen nacional, discapacidad o estado de veterano.

Our approach to flexibility is called Work Your Way, which puts employees first and drives well-being in ways that enable 3M’s business and performance goals. You have flexibility in where and when work gets done. It all depends on where and when you can do your best work.

Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.

3M Global Terms of Use and Privacy Statement


Carefully read these Terms of Use before using this website. Your access to and use of this website and application for a job at 3M are conditioned on your acceptance and compliance with these terms.

Please access the linked document by clicking here, select the country where you are applying for employment, and review. Before submitting your application, you will be asked to confirm your agreement with the terms.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  7  3  0

Tags: Automation CISSP Compliance Computer Science CSOC EDR Firewalls IPS Linux Monitoring PowerShell Privacy Python SANS Scripting SIEM SOAR SOC Threat detection Windows

Perks/benefits: Career development Competitive pay

Regions: Remote/Anywhere South America
Country: Paraguay

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.