Analyst, Cybersecurity Operations (Detection & Response) L2

·
Full time
Location: London
·
Job offered by: McDonald's
·
Category: IT & Technology
Analyst, Cybersecurity Operations (Detection & Response) L2

Full-time McDonald's Office Location: International Office McDonald’s growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 3Ds (Delivery, Digital and Drive Thru). McDonald’s will accelerate technology innovation so 65M+ customers a day will experience a fast, easy experience, whether at one of our 25,000 and growing Drive Thrus, through McDelivery, dine-in or takeaway. As a L2 Response Analyst within the Security Operations Center (SOC), your responsibilities include using defensive measures and information gathered from various sources to identify, analyze, and report cybersecurity events, ensuring the protection of McDonald's information assets. You play a crucial role in supporting the Incident Response process, responding to crisis situations, and mitigating immediate and potential cyber threats. Your expertise in security operations, event monitoring, and incident response will be key in this role. The ideal candidate

for this role should possess a solid understanding of cybersecurity practices, cloud technologies, detection and response frameworks, and incident handling procedures (containment, eradication, recovery, and lessons learned). They should be skilled in adhering to established incident response playbooks and practices, have a strong attention to detail, and work collaboratively across global cross-functional teams. Minimum Requirements: Proficiency in computer networking concepts, protocols, and network security methodologies. Strong ability to analyze cyber threats and vulnerabilities. Competence in authentication, authorization, and access control methods. Proficiency in utilizing intrusion detection methodologies and techniques for detecting host and network-based intrusions. In-depth knowledge of system and application security threats and vulnerabilities. Advanced understanding of network attacks and their relationship to threats and vulnerabilities. Proficiency in adversarial tactics, techniques, and procedures. Comprehensive knowledge of the stages of a cyber attack. Proficiency with Windows, MacOS, and/or Linux operating systems. Responsibilities: Continuously monitor and analyze system activity using security operations tools to identify malicious activity. Characterize and analyze network traffic and logs to identify potential threats to McDonald’s assets. Analyze network alerts from various sources within the enterprise to determine their root cause. Provide timely detection, identification, and analysis of possible attacks and intrusions, differentiating them from benign activities. Collaborate with the Incident Response (IR) team, market stakeholders, and SOC to validate security events and provide tuning input. Perform event correlation to gain situational awareness and assess the effectiveness of observed attacks. Conduct security operations and incident response trend analysis and reporting. Assist in constructing signatures for defense network tools in response to new or observed threats. Assist in eDiscovery and Forensic investigations. Monitor external data sources to stay informed about cyber defense threat conditions. Offer cybersecurity recommendations to leadership based on significant threats and vulnerabilities. Collaborate with stakeholders to resolve computer security incidents and ensure vulnerability compliance. Desired Skills: Professional certification such as GIAC, GCIH, GCIA. Experience working from Incident Response Playbooks. Experience working with case management tools, SOAR, email security solutions, SIEM, and EDR technologies. Experience with network/data analysis, packet capture analysis, malware detection, custom intrusion signature development, and advanced information assurance. Experience developing automation through scripting languages such as Python. Bachelor’s degree or equivalent experience in Computer Science, Cybersecurity, Information Technology, Software Engineering, Information Systems, or Computer Engineering. McDonald’s is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feel-good moments for everyone.

#J-18808-Ljbffr

Recent Jobs

London (On site) · Full time

Are you a smart, driven professional who takes pride in making a difference in local communities? Turner & Townsend’s Real Estate division is experiencing significant growth and we’re looking for an experienced industry professional with health project experience to join our high-performing and collaborative Project Management team. Why Join Us? Impactful Work: Contribute to social [...]Read More... from Assistant Project Manager – Healthcare See details

Chasetown (On site) · Full time

My client, Autosmart International are a manufacturing success story! Site Operations Manager – leading fast-paced manufacturing and warehousing About Our Client Autosmart International is a manufacturing success story, leading the field in vehicle cleaning products. We are the No.1 choice of automotive trade customers across the UK. We have doubled in size in the last [...]Read More... from Site Operations Manager See details

London (On site) · Full time

CSS are looking for an experienced duty officer to join our client’s team who are a local council responsible for all areas within the Tendering district. Working hours: All shifts are 8 hours long with various start times available: Monday to Friday – start times between 6AM – 3PM Saturday & Sunday – 6AM – [...]Read More... from Duty Officer See details