Можливість для людей з України

Threat Detection Security Engineer

Place of work
Mlynské nivy, Bratislava, Slovakia (Job with occasional home office)
Contract type
full-time
Wage (gross)
From 2 500 EUR/monthOur final offer to you will be set up fairly, considering the skills and experience that you bring to the Swiss Re Group.

Information about the position

Job description, responsibilities and duties

Join a team of cybersecurity professionals and help Swiss Re to fulfil its mission in making the world more resilient. As a Threat Detection Security Engineer, you'll be tasked with helping to close the security gaps by working with incident responders and hunt for advanced cyber threats. What's more, you'll be working in a hybrid setup, perfectly balancing work from home and the office premises.


About the Role and Team

The Security Team is the focal point for all security activities across Swiss Re. We are responsible for cybersecurity engineering and operations, governance, risk and compliance, and defining as well as advancing the company's security strategy. As part of the Security Team, Detection & Engineering is a team of experts responsible for maintaining security operations, focused on delivering high-quality detection monitoring and response solutions. We're looking for a detection engineer who can identify, develop, and implement advanced threat detection and response engineering solutions.

In your role, you will…

- Research, identify, and stop cyberattacks

- Build an advanced service for hunting and detecting cyber threats

- Deliver monitoring and response solutions for the team

- Be a part of Purple Team to improve our security stance and implement your learnings into rules

- Collaborate closely with offensive security specialists

- Work with a Threat Detection Lead to streamline cybersecurity detection capabilities

- Adapt detection mechanisms to threat landscape across the financial industry

Employee perks, benefits

- Attractive performance-based bonus
- Ultra flexible working time in hybrid setup, allowing you to work also from home
- Modern office spaces in attractive location
- 5 additional days of holiday
- Lunch allowance fully paid by Swiss Re
- Referral bonus
- Pension & risk insurance contribution
- Sick days and sick leave support
- Public transport benefit
- Multisport card

Information about the selection process

What can you look forward to?

- An enthusiastic collective full of cybersecurity lovers, aspiring talents and industry veterans
- Annual salary reviews and a one-off bonus each year
- Hybrid setup, balancing between working from home and the office premises
- Corporate benefits, including various product and service discounts (e.g., 100% reimbursement on public transport annual subscription)
- Modern work environment with top-notch facilities
- As much coffee (and fruit) as you need to go about your day


This job offer is suitable for people who have been impacted by the invasion of Ukraine.


We provide feedback to all candidates via email. If you have not heard back from us, please check your spam folder.

Requirements for the employee

Candidates with education suit the position

University education (Bachelor's degree)
University education (Master's degree)
Postgraduate (Doctorate)

Language skills

English - Upper intermediate (B2)

Personality requirements and skills

What we need from you:
- Experience in developing hypothesis-driven threat hunts, covering both on-premise and cloud-hosted IT environments
- Knowledge of detection rule development, covering tools (such as SIEM, EDRs) and industry frameworks (such as MITRE ATT&CK®)
- Expert proficiency in Python, Kusto, or other scripting language
- Technical writing skills to present complex topics to non-technical audiences
- Excellent oral and written communication skills (English)

Your additional experience (at least one required):
- API attack mitigation strategies/solution development
- Analysis of web traffic, underlying malware, lateral movement, TTPs detected through Microsoft and Linux security events, etc.
- Logfile correlation and analysis
- System and memory analysis
- Malware and exploit analysis (or reverse engineering)
- Chain of custody and forensic acquisitions
- Past collaboration with incident responders in developing detection rules and SOAR playbooks

Nice-to-have:
- Experience working as a security analyst or incident responder (in a SOC/CSIRT/on-call setup)
- Experience with Azure security tooling and development within Azure

Advertiser

Brief description of the company

As the world's leading and most diversified global reinsurer, we offer as our core business financial services products that enable risk taking essential to enterprise and progress. Our company was founded in Zurich, Switzerland in 1863, and operates in more than 25 countries and provides its expertise and services to clients throughout the world. We combine financial strengths with experience, knowledge and creative thought to explore new opportunities in the interests of our clients, staff and shareholders.

Number of employees

1700 and more employees

Company address

Contact

Contact person: Denisa Bastos

ID: 4308193  Megjelentetés dátuma: 29.7.2022  Alapbér (bruttó): 2 500 EUR/month