Job Description Threat Detection Engineer
Position Description
If you have an inquisitive nature and enjoy security technology, our Threat Detection Engineer position will put you at the forefront of CGI Cyber Security Service. The Security Operations Centre is a fast-paced environment that is flexible and adaptable to the threat landscape we face. The SOC utilises both tried and tested tooling and state-of-the-art technologies and methods to ensure we provide the best level of service and protection to our prestigious list of clients. Our client base covers a wide range of verticals from Government, MOD and CNI through to companies that are easily recognisable as household names.
The SOC is at the forefront of Technical automation and pushing into a Next-Gen SOC and this role proactively monitors the IT infrastructure for security incidents and participates in security incident investigation and resolution.
Alongside a competitive salary, we offer access to our share scheme (3.5%+3.5% matching) making you a CGI Partner not just an employee. You also have the option to benefit from private medical and dental insurance, flexible retirement options, an active sports and social club, and a cycle to work scheme to name a selection of the benefits available.
This role will require office attendance in Reading working on a hybrid basis. Due to the nature of the work, we can accept UK Nationals only for this vacancy and you must be eligible for UK SC level Security Clearance.
Your future duties and responsibilities
CGI is recruiting a Threat Detection Engineer to join our Managed Service Security Operations. You will work in multi-disciplinary teams who build, support and maintain enterprise scale data platforms and solutions helping clients to drive transformation through improved data access and visibility.
As a Threat Detection Engineer, you will have experience working in SOCs and be an expert in building and developing use cases to meet client security requirements. You'll also be a strong communicator and have a consultative approach to working with client teams. CGI will provide exciting opportunities to share your expertise with, and influence, clients and team members, and to continue to develop in Cyber.
This role will involve:
1. SME acting as both consultant and engineer on large scale Enterprise Security projects
2. Creating/tuning of SIEM detection rules to satisfy client requirements
3. Providing technical consultancy for clients predominantly in the cyber security space
4. Working in hybrid teams
5. Providing mentorship to technical teams as well as acting as a technical escalation point
Key Duties & Responsibilities:
1. Producing Use Case Rules
2. Turning CTI information into actionable Use Cases
3. Testing Use Cases
4. Maintaining Use Case Library
5. Maintaining documentation
Required qualifications to be successful in this role
We're looking for a range of the following skills and experiences:
1. Experience across the SIEM platforms and working alongside or within a SOC environment.
2. Experience in writing detection rules.
3. Strong understanding of security technologies and frameworks such as MITRE ATT&CK.
4. Experience of agile methodologies and associated toolsets and code repositories.
5. Coding experience using languages such as Python particularly in relation to security use cases.
6. Strong collaboration and stakeholder engagement skills.
7. High level of attention to detail, the ability to think architecturally at 'big picture' and able to translate this into practical implementation.
8. Excellent ability to execute where information is ambiguous, utilising professionalism, experience and prior knowledge.
9. Strong interpersonal skills; role will require engagement with a varied and senior stakeholder base as well as team management.
10. Documentation skills in order to provide high quality documentation for internal customers and technical teams.
11. Openness to learning and managing new technologies as business requirements change.
Together, as owners, let's turn meaningful insights into action.
Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you'll reach your full potential because you are invited to be an owner from day 1 as we work together to bring our Dream to life. That's why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our company's strategy and direction.
Your work creates value. You'll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace new opportunities, and benefit from expansive industry and technology expertise.
You'll shape your career by joining a company built to grow and last. You'll be supported by leaders who care about your health and well-being and provide you with opportunities to deepen your skills and broaden your horizons.
Come join our team-one of the largest IT and business consulting services firms in the world.
Skills
* Analytical Thinking
* Cyber
* Threat Risk Assessment
Reference 1168602 Click here to apply
#J-18808-Ljbffr