Lead Incident Responder / Security Analyst

  • Full-time

Company Description

Eurofins Scientific is an international life sciences company, providing a unique range of analytical testing services to clients across multiple industries, to make life and our environment safer, healthier and more sustainable. From the food you eat, to the water you drink, to the medicines you rely on, Eurofins laboratories work with the biggest companies in the world to ensure the products they supply are safe, their ingredients are authentic, and labelling is accurate.

Eurofins is dedicated to delivering testing services that contribute to the health and safety of society and the planet, and to its corporate responsibility to protect the environment and ensure diversity, equity, and inclusion across the entire network of Eurofins companies.

Job Description

Eurofins continues to mature its Security Operations Centre and is seeking a highly skilled and experienced Lead Incident Responder / Security Analyst to join our dynamic team. As the Lead Incident Responder / Security Analyst, you will be working on security incidents and support with Digital Forensics (DFIR) and be responsible for managing and coordinating all aspects of incident response activities within our organization. You will play a pivotal role in protecting our systems, networks, and sensitive data from security breaches and ensuring a swift and effective response in the event of any security incidents. This is a leadership role that requires excellent technical expertise, strong leadership qualities, and the ability to work collaboratively with cross-functional teams. You will supervise the complete Incident Response team with our Senior Incident Responders led directly by you and acting as an escalation point for L1 and L2 SOC for complex and critical incidents and work towards remediation. You will have the opportunity to lead incidents through the complete IR life cycle.

You will continuously work on enhancing the security incident process and drive the resolution of identified issues, bringing the necessary experience and expertise to elevate the current SOC Incident Response Crews.

Critical incidents can be escalated to you and other Senior Incident Responders for immediate handling, meaning this role requires overtime and adjusting to reasonable demands from senior management in such cases.

Specific Assignments:

As a Lead Incident Responder / Security Analyst, you will recognise potential, successful, and/or unsuccessful intrusion attempts/compromises, conduct thorough reviews and analyses of relevant data, and summarise information. You will investigate and lead security incidents (IR lifecycle) reported by SOC L1/L2, Incident Response staff, or other relevant sources to determine increased risk to the business.

You will be required to efficiently identify True Positives; develop and execute SOC procedures; and ensure confidentiality and the protection of sensitive data. Triage and deep investigation of cyber security events using SIEM, IDS, EDR, antivirus software, Internet Footprint tools, and proxy solutions will play a significant role. Create detailed incident response reports, including analysis, findings, and recommendations for remediation to prevent future incidents.

You will be also dealing with host-based forensics (knowledge of data acquisition and analysis using forensic tools), network-based forensics (ability to read and understand PCAP files) and remediation (IT Infra & Ops) teams on events and incident mitigation.

You will conduct thorough investigations to determine the root cause and scope of security incidents, employing advanced techniques and tools to gather evidence and analyse compromised systems. Throughout the process you will identify areas for improvement in incident response processes, tools, and methodologies, and drive initiatives to enhance the organization's incident response capabilities.

You will supervise and mentor a team of incident responders, providing guidance, training, and support to ensure their professional growth and optimal performance. You will conduct periodic incident response exercises and tabletop simulations to assess the effectiveness of response plans and improve readiness across the organization.

Qualifications

Work experience:

If you have a minimum of 5 years of professional experience as an SOC Analyst (L2 or L3), threat researcher, hunter or a similar comparable role dealing with incident handling, alert tracking, cybersecurity case management, this role could be a good fit for you. Relevant certifications such as GIAC Certified Incident Handler (GCIH) or Certified Incident Response Handler (CIRH) are highly desirable.

Demonstrated ability to lead, mentor, and inspire a team of incident responders, fostering a collaborative and high-performing work environment. Proven ability to collaborate with cross-functional teams and build effective partnerships to ensure a coordinated response to security incidents.

Technical qualifications:

You should have good understanding of cybersecurity incident discovery and event management, network forensics, IPS/IDS, firewalls, content filtering technology, DLP, configuration management and monitoring, endpoint protection, database security, log collection and analysis, and strong working knowledge of different attack vectors and attack types. Experience in developing and maintaining Play/Runbooks and/or Standard Operating Procedures in an SOC environment is also required. In-depth knowledge of network and system security, malware analysis, intrusion detection and prevention systems, forensics, and incident response tools. Proficiency in utilizing SIEM (Security Information and Event Management) systems and threat intelligence platforms. Familiarity with industry-standard incident response frameworks such as NIST, SANS, or ISO 27001.

Personal profile:

If you can multitask and prioritise a variety of functions simultaneously, while working independently and taking ownership of projects and initiatives, then this position could be for you. Good written and verbal communication skills are essential, including communicating technical details in a clear and understandable way for non-tech audiences. Strong problem-solving and analytical skills to effectively investigate security incidents, assess the impact, and develop appropriate mitigation strategies. Commitment to staying updated with emerging technologies, industry trends, and evolving security threats. Ability to work well under pressure and adapt to rapidly changing situations during high-stress incidents.

Additional Information

We support your development! Do you feel you don’t match 100% of the requirements? Don’t hesitate to apply anyway! Eurofins companies are committed to supporting your career development.

We embrace diversity! Eurofins network of companies believe in strength and innovation through diversity, being an Equal Opportunity Employer. We prohibit discrimination against employees or applications based on gender identity and/or expression, race, nationality, age, religion, sexual orientation, disability, and everything else that makes employees of Eurofins companies unique.

Sustainability matters to us!  We are well on our way to achieving our objective of carbon neutrality by 2025, through a combination of emission reduction and compensation initiatives. We encourage our laboratory leaders to make sustainable changes at their local level, and in addition to their initiatives we also count on our dedicated carbon reduction team to help us to achieve this goal!

Find out more in our career page: https://careers.eurofins.com/

Company description: Eurofins Scientific is an international life sciences company, providing a unique range of analytical testing services to clients across multiple industries, to make life and our environment safer, healthier and more sustainable. From the food you eat, to the water you drink, to the medicines you rely on, Eurofins laboratories work with the biggest companies in the world to ensure the products they supply are safe, their ingredients are authentic and labelling is accurate.

The Eurofins network of companies is the global leader in food, environment, pharmaceutical and cosmetic product testing and in discovery pharmacology, forensics, advanced material sciences and agroscience contract research services. It is one of the market leaders in certain testing and laboratory services for genomics, discovery pharmacology, forensics, advanced material sciences and in the support of clinical studies, as well as having an emerging global presence in Contract Development and Manufacturing Organisations. It also has a rapidly developing presence in highly specialised and molecular clinical diagnostic testing and in-vitro diagnostic products.

In over 35 years, Eurofins has grown from one laboratory in Nantes, France to 61,000 staff across a decentralised and entrepreneurial network of ca. 900 laboratories in 61 countries. Eurofins companies offer a portfolio of over 200,000 analytical methods to evaluate the safety, identity, composition, authenticity, origin, traceability and purity of biological substances and products.

In 2022, Eurofins generated total revenues of EUR 6.7 billion, and has been among the best performing stocks in Europe over the past 20 years.

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply

Privacy Notice