Cyber Security Engineer providing a range of cyber security services at Thales. Focus on detection improvement and client support in security incident management.
Responsibilities
Within Thales, our Thales Cyber Solutions teams provide a broad spectrum of cybersecurity services, ranging from cyber governance to advanced technical expertise.
Contribute to the continuous improvement of clients' detection coverage.
Ensure the creation and evolution of clients' detection matrices in connection with intelligence reported by Harfanglab.
Provide your Harfanglab expertise to support commercial proposals and projects.
Work on the coverage and depth of monitoring, using frameworks such as MITRE ATT&CK.
Participate in client steering committees and conduct reviews and continuous improvement activities.
Deploy and tune detection rules within clients' SIEM platforms.
Improve, automate and industrialize our methods and tools to increase detection efficiency and performance.
Requirements
Degree from an engineering school or equivalent.
At least 3 years' experience in security incident detection.
Strong mastery of the Harfanglab solution (implementing/modifying rules, writing use-cases and runbooks, handling alerts and investigating true-positive tickets, etc.).
Interest in automation and, in particular, Artificial Intelligence.
A genuine interest in cybersecurity challenges, cybercriminal and state-sponsored threats, and more broadly in Cyber Defence.
Proficiency with GitLab, Python/Bash and/or a SANS certification is a real plus.
Very good knowledge of the Harfanglab EDR solution.
Proficiency with at least one SIEM solution (Splunk, Microsoft Sentinel, Chronicle, SEKOIA, etc.).
Familiarity with at least one SOAR solution (xSOAR, SEKOIA, etc.).
Solid cybersecurity awareness (vulnerabilities, threats, industry news, etc.).
Good overall knowledge of systems and network infrastructures.
A good command of written and spoken English is essential.
Benefits
An attractive compensation package.
Continuous skills development: training programs, academies and internal communities.
An inclusive, supportive environment that respects employees' work-life balance.
A recognized commitment to social and environmental responsibility.
IT Cybersecurity Specialist handling technical support in information security for MODEC's operations. Ensuring strategic and compliance alignment with global cybersecurity standards.
Product Security Engineer ensuring security in cloud - native product development at Trainline. Collaborating with cross - functional teams to improve security practices and safeguard digital channels.
Information Security Engineer supporting day - to - day information security operations. Working with cross - functional partners to ensure security compliance and risk management.
Lead security operations at Beyond Finance to ensure high security standards and manage vulnerability assessments. Oversee incident response and develop a disciplined security team.
Cloud & AI Security Engineer designing secure cloud infrastructures and AI/LLM services at Assurity Trusted Solutions. Engineers with solid cloud fundamentals are encouraged to apply.
OT Cybersecurity Engineer deploying and managing security solutions for operational technology environments at Solventum. Collaborates with teams to improve security posture and provide user support.
Principal Cybersecurity role at AT&T focusing on cloud security feature design and implementation. Leading innovative security solutions in conjunction with modern cloud technologies and Agile methodologies.
Cloud Security Vulnerability Management Program Specialist ensuring secure configurations of cloud workloads. Focused on vulnerability management, monitoring, and risk remediation across environments at Bank of America.
Security Architect delivering secure solutions for Defence and National Security at SiXworks. Supporting agile teams in technical projects like Kubernetes and security risk management.