CYBER DEFENSE CENTER DETECTION ENGINEER FOR OPERATIONAL TECHNOLOGY (OT) (M/F/D)
Descrição da oferta de emprego
CDC offers security monitoring and threat detection services.
The main objective of the CDC is to attempt to keep Siemens protected by preventing the materialization of threats and minimizing any adverse reputational and financial impact.
The CDC portfolio enables identification and initial response to a range of threat actors, from commodities to nation state-backed actors.
As the frontline resource for monitoring, detecting, alerting, hunting, and responding to threat actors – the CDC provides deep expertise in defending against a wide range of threat actor tactics, techniques, and procedures.
Position Overview.
In this position, the Detection Engineer for Operational Technology (OT) will be part of the CDC for Europe and will be part of the CDC OT team split between Europe and America.
Using Threat Intelligence and the visibility within the OT environment blend engineering and analysis to identify and implement use cases in detection tools.
What are my responsibilities? Coordinate with Cyber Defense Analysts to manage and administer the updating of rules and signatures (e.
., intrusion detection systems, content white/blacklists, SIEM rules) for specialized cyber defense in OT environments.
Use data sources, event pipelines, correlation and enrichment in the SIEM to create detections.
Ensure detection capabilities are developed consistent with organization-level cybersecurity architecture.
Perform analysis of log files from a variety of sources (e.
., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security.
Perform event correlation using information gathered from a variety of sources to gain situational awareness and determine the effectiveness of an observed attack.
Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools.
Coordinate with intelligence analysts to correlate threat assessment data.
Improve detection capabilities.
Analyze data sources to provide actionable recommendations.
Maintain Attack detection use cases and data sources.
Review adversaries’ tactics, techniques, procedures, and threat data to develop use-cases for attack detection in the OT environments.
Support threat detection and hunting using multiple kinds of data sources and develop detection analytics.
Review threat data from various sources, develop custom signatures and use-cases for attack detection.
Engineer and tune detection rules Analyze network traffic from production environments.
Cooperate with the infrastructure team to further develop the CDC OT detection capabilities.
Knowledge of collection systems, capabilities, and processes.
What do I need to qualify for this job? 3+ years professional experience in security monitoring/security operations center environment (SOC), investigating security events, handling incidents, threats and/or vulnerabilities.
Interest in industrial cybersecurity.
Previous knowledge in OT environments preferred, but not required.
University degree in computer science, IT security or related fields and cybersecurity certifications are a plus (GCIH, GCFA, GNFA, GCTI, GREM or similar) Strong understanding of enterprise detection & response, network traffic analysis and intrusion detection.
Knowledge of what constitutes a network attack and a network attack’s relationship to both threats and vulnerabilities.
Ability to think like threat actors.
Working knowledge of SIEM platforms with experience in use case development.
Proficient in written and spoken English.
Good interpersonal skills and attention to detail.
Other languages are a plus.
Team player, able to collaborate with others remotely.
Proactive, customer oriented, self-initiative and ability to work independently.
What makes us proud as an employer.
Top Companies to work in (by LinkedIn) World's Best Employer st place in the Engineering and Production category (by Forbes) Among the most attractive companies to work in (ranking of Universum) Company with the best reputation in the Technological/Industrial sector in (according to the Merco Empresas study) We’ve got quite a lot to offer.
How about you? This role is open to be hired in Portugal and Spain.
Please send your CV in English, otherwise your application will not be considered.
Siemens is committed to creating a diverse environment and is glad to be an equal opportunity employer.
We strongly encourage applications from a diverse talent pool! #LI-DL #hybrid
Detalhes da oferta
- Siemens
- Em todo Portugal
- Indeterminado - Indeterminado
- Indeterminado
- 09/01/2025
- 10/04/2025
Conduct feasibility studies and cost analyses for automation projects... please include 'automation and robotics engineer application' in the subject line... position overview: we are looking for a creative automation and robotics engineer to contribute to the design, development, and implementation......
Pm (hybrid)- location: lisboa for apply, send your cv for *****@***** with the reference 'data engineer'... profile and skills we look for: - bachelor’s degree in information technology or computer science; - at least 5 years of professional experience as a data engineer; - high proficiency in sql......
Claire joster is currently recruiting for a portuguese company of power generating, oil&gas; and material handling sectors, which intends to strengthen its internal structure with the integration of a mechanical engineer (m/f) in lisbon... requirements higher education in mechanical engineer; professional......
• duration: contract for 12 months (minimum);• localization: remote, portugal... we are looking for a senior qa engineer with the following requirements: requisitos do trabalho • minimum of +6 years of relevant experience;• repository practice (i... );• cucumber;• manual tests;• creation and maintenance......
Benefits: • apartment accommodation can be provided for the initial quarter... • minimum 3 years of professional nursing experience for candidates without a diploma... they are in search of empathetic and proficient nursing staff with expertise in nursing or medicine, capable of offering thorough care......
· execute performance testing and present results for validating and analysis to project teams... · involve in product design to guarantee adherence of test coverage for meeting end user requirements... test engineer (automation) – air traffic management airspace industry in the role of the automation......
A equipa de recrutamento & seleção da multitrab, encontra-se a recrutar para prestigiado organismo público em lisboa: assistentes de call center - obrigatório terem efetuado atendimento a clientes para organizações responsáveis pela gestão de fundos comunitários, incluindo organismos intermédios......
Eurofirms is a human resources company where people are the center of everything... we are recruiting a call center operator - (m/f): functions: back office, inbound and chat (m/f) - oporto - call answering, handling of emails / tickets / chats of questions / questions / complaints......
Requisitos do trabalho - escolaridade 12º ano (factor de exclusão); - elevado domínio das regras gramaticais, sintáticas e semânticas, da língua portuguesa; - bons conhecimentos de informática na ótica do utilizador; - 3 anos completos de experiência mínima anterior como supervisor em contact center......
Requisitos:- escolaridade: mínimo 12 º ano;- experiência em call center (preferencial);- gosto pelo trabalho em equipa;- facilidade de comunicação;- ambição e dinamismo... condições/oferta:- integração em equipa jovem, dinâmica e motivada;- contrato de trabalho: salário base + subsídio de alimentação......