This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Security Operations Analyst within our Information Security Team you will perform a crucial role in designing, building, and maintaining our detection and response capabilities. You will promote a security first culture at TUI, work with resolver teams to ensure that information security events and incidents are automatically generated, appropriately addressed and closed in local ticketing systems, and ensure reporting on key performance indicators and service levels.
Job Responsibility:
Monitor for alerts from security tools
Triage security alerts
Use network and host security tooling to perform additional investigation
Work the full incident lifecycle from detection, investigation, response, to remediation for security alerts
Contribute to the further development, maintenance, and standardization of SOC processes, policies, and procedures
Work with other IT/security teams to identify areas for improvement around detection, investigation, and response
Research common and topical commodity and APT-based malware tactics and techniques
Provide feedback on detection rules to help tune security tools and minimize false positives
Participate in SOC working groups and sub-teams to help generate and execute on new ideas for content, technology advancements, and proactive defence improvement projects
Requirements:
Demonstrable deep experience of design and build of systems integration, ideally in a security operations environment
Strong technical and IT operations background
Experience with Splunk or similar SIEM platforms, Service Desk systems, and security monitoring tools
Familiarity with Windows, macOS, Linux, and Unix operating systems
Computer networking and cloud technology fundamentals
Understanding of Active Directory, LDAP, IDaaS (AAD)
Rudimentary security knowledge of firewalls, proxies, antivirus, and IPS/IDS concepts
Experience scripting in Python or PowerShell
Experience using Microsoft Excel and Word
Excellent written and verbal communication skills
Good interpersonal skills
Empathy to respond with understanding and care in the event of a security incident
A process-oriented mindset
Creativity to think outside the box
Adaptability and flexibility
Attention to detail
Nice to have:
Experience with Splunk or similar SIEM platforms
Experience scripting in Python or PowerShell
Familiarity with Windows, macOS, Linux, and Unix operating systems
Understanding of Active Directory, LDAP, IDaaS (AAD)
Rudimentary security knowledge of firewalls, proxies, antivirus, and IPS/IDS concepts
What we offer:
Attractive remuneration
Bonus opportunity
Exclusive travel perks & discounts
Extensive health & wellbeing support
Flexible working models
Opportunities to upskill, reskill and grow your career
Access to TUI Tech Learning Hub
Participation in tech communities and collaboration on global projects and teams
Involvement in local charity and sustainability initiatives
Welcome to
CrawlJobs.com
– Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.