Padmi
UL Solutions logo
UL Solutions

testing and certification · fire safety

Cybersecurity Operations Analyst

PhilippinesPosted 2 months ago
CybersecurityUnspecified
Apply at UL Solutions

Opens the source posting on fa-eups-saasfaprod1.fa.ocs.oraclecloud.com

Source description

About the role

View original

JOB RESPONSIBILITIES:

  1. Security Monitoring and Incident Detection: Monitor security alerts, logs, and event data from various sources, such as SIEM (Security Information and Event Management) systems, intrusion detection systems (IDS), and firewalls, to identify potential security incidents.

Analyze network traffic, system logs, and other relevant data to detect unauthorized access attempts, malware infections, or other suspicious activities.

Investigate and triage security events, classify incidents, and escalate critical issues to the appropriate teams for further analysis and response.

Analyze user reported emails.

  1. Initial Incident Response and Investigation: Respond to and analyze suspicious email submissions Respond to security incidents in a timely and effective manner, following established incident response procedures and playbooks.

Conduct detailed analysis and investigation of security incidents, determining the root cause, extent of compromise, and impact on the organization's systems and data.

Collaborate with incident response teams to contain and mitigate security incidents, minimize the impact, and restore normal operations.

  1. Threat Intelligence and Research: Stay updated on the latest cybersecurity threats, vulnerabilities, and attack techniques through research, threat intelligence feeds, and industry reports.

Analyze threat intelligence data to identify emerging threats, indicators of compromise (IOCs), and potential vulnerabilities that may affect the organization's systems.

Leverage threat intelligence insights to proactively improve security controls, detect advanced threats, and strengthen the organization's security posture.

  1. Security Incident Reporting and Documentation: Prepare accurate and comprehensive incident reports, documenting incident details, analysis findings, response actions taken, and recommended improvements.

Maintain incident documentation, including evidence logs, incident timelines, and any other relevant information required for compliance and auditing purposes.

Collaborate with stakeholders to communicate incident updates, impact assessments, and recommended remediation strategies.

Maintain operational knowledge base and runbooks

  1. Thought leadership: Lead relevant projects and act as a resource for colleagues with less experience

Provide summary reports of monthly trends and noteworthy incidents Provide cybersecurity recommendations to leadership based on significant threats and vulnerabilities Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings).

  1. Other task: Handle internal tickets under Cybersecurity responsibility.

One address, no account. We’ll tell you when matching roles go live.

More at UL Solutions

Related open roles

View all roles