IT Cyber Security Specialist
An organization is looking for a cybersecurity operations specialist to strengthen its security team and support the protection, detection, and response activities that safeguard a complex hybrid environment. This assignment is focused on network and infrastructure security, incident handling, and continuous improvement of operational security measures.
What you will do.
- Manage day-to-day security tools and security incidents.
- Analyze, escalate, document, and help resolve security incidents.
- Coordinate with different teams to support incident resolution and improve the overall security posture.
- Handle alerts coming from the SOC and security tools, including SIEM and WAF-related alerts.
- Analyze network flows and correlate them with alerts and suspicious activity.
- Contribute to the security of network architectures, configuration quality, and exception management, including impact and risk analysis.
- Participate in tuning protection and detection rules for network security tools such as WAF, IDS/IPS, NDR, and proxy solutions.
- Support post-incident reviews by producing technical retrospectives, recommendations, and follow-up actions.
- Collaborate with ITSM teams on incident follow-up and action plans.
- Take part in security-related projects, including reviews, technical-functional input, and active project support.
- Contribute to process, procedure, and playbook improvements for SecOps activities.
- Carry out security monitoring and threat intelligence activities, including CVEs, IOCs, and MITRE ATT&CK tactics.
- Provide transversal support on security tools and take on other operational security activities based on service priorities.
What they ask
- Confirmed experience in security incident management, either as an incident responder or incident manager.
- Confirmed experience with IPS/IDS or NDR solutions.
- Confirmed experience managing firewall security.
- Experience securing DNS environments.
- Experience securing proxy environments.
- Experience working with SOC environments and SIEM/XDR technologies.
- Experience with WAF technologies.
- Ability to work with ITSM tools such as Jira Service Management or similar platforms.
Profile
The ideal candidate brings a strong background in operational cybersecurity and network security engineering, with a practical, hands-on mindset and the ability to respond effectively in critical situations. We are looking for someone who combines technical depth with a collaborative approach and strong communication skills.
- At least three years of experience in operational cybersecurity and network security engineering, beyond general network administration.
- Proven experience handling at least one real cyber incident involving investigation, containment, or remediation.
- Experience working in a large organization with high complexity and workload.
- Ability to document incidents, provide recommendations and follow up on corrective actions.
- Strong analytical skills, urgency management, and prioritization in incident situations.
- Curiosity, adaptability, autonomy, and a team-oriented mindset.
- Assertive communication and the confidence to challenge when needed.
- Relevant certifications are considered an asset.
Practical
- French is mandatory.
- The consultant must participate in a 24/7 on-call rotation with other team members.
- Some alerts must be handled within a maximum response time of 30 minutes.
- The work is carried out within the security function of the organization and integrated into existing incident, change, and SOC processes.
How to apply
View the full assignment text and application details once your tailored application is ready.
Order a tailored application to view the full assignment and application details.
More context, less searching.
You get enough context to judge whether this job is relevant. The full brief, client details and next steps stay available inside the app.