Overview
Job Description:
This role focuses on coordinating and delivering security operations and cybersecurity services within the organization. It includes defining SOC strategy, managing tools and processes, and ensuring alignment with business objectives and regulatory requirements.
Responsibilities
* Key Responsibilities:
o SOC Coordinator & Service Delivery Manager
+ Define and Drive SOC Strategy:
Develop and implement the overarching SOC strategy, ensuring technical coherence across all tools and processes, while adhering to regulatory compliance requirements.
+ Oversee Tool Deployment and Management:
Define, select, and manage the deployment of critical SOC tools, including SIEM, SOAR, ticketing systems, and alert management platforms. Refine associated processes and workflows for security incidents.
+ Establish End-to-End SOC Processes:
Design and implement comprehensive SOC processes for everything from initial notification to incident escalation, ensuring clarity and efficiency.
+ Stakeholder Relationship Management:
Foster strong relationships between security teams and external stakeholders, coordinating security operations during critical incidents or crisis situations.
+ Ensure SOC Service Delivery Excellence:
Champion continuous delivery of high-quality SOC services by monitoring SLAs, tracking service quality, and evaluating the effectiveness of all SOC activities.
+ Business-SOC Alignment:
Build a strong working relationship between SOC teams and business units, providing effective service reporting at all management levels to ensure security operations align with business objectives.
o Security Analyst
+ High-Level Security Analysis:
Conduct in-depth analysis for specific security needs, providing expert insights and recommendations.
+ Security Incident Response:
Lead and participate in security incident response efforts, from detection and analysis to containment, eradication, and recovery.
o Business Analyst (Cybersecurity Focus)
+ Business Security Support:
Provide expert support to business units on IT security topics.
+ Security Best Practices Advisory:
Advise business stakeholders on industry-leading IT security practices.
+ Log Onboarding Assessment:
Assess logs before onboarding into the SOC SIEM to ensure data quality and relevance.
+ Cross-Functional Process Efficiency:
Drive efficiency across business and security teams by ensuring seamless IT security processes.
Required Skills & Experience
* 3-5 years of experience in cybersecurity, with a focus on SOC environments, incident response, or security analysis.
* Experience defining, implementing, and optimizing security processes and workflows.
* Proficient in Splunk for security monitoring, log analysis, and dashboard creation.
* Strong understanding of security frameworks, standards, and compliance (ISO 27001, NIST, GDPR, NIS2).
* Ability to manage and prioritize multiple tasks in a fast-paced environment.
* Excellent communication, interpersonal, and presentation skills for technical and non-technical stakeholders.
* Analytical mindset with strong problem-solving capabilities.
* English is a must.
Desirable Skills & Experience
* Certifications such as CompTIA Security+, CySA+, CEH, or equivalent.
* Experience with GRC platforms.
* Knowledge of threat intelligence platforms (e.G., Mandiant Threat Intelligence, MISP).
* Splunk certifications (Core Certified User, Power User, or Admin).
* Proficiency in scripting languages (Python, PowerShell) for automation and data analysis.
* Experience in leading small teams or projects.
* Hands-on experience with SIEMs (Splunk, Microsoft Sentinel, IBM QRadar) and SOAR platforms (e.G., Palo Alto Cortex XSOAR, Swimlane).
* Familiarity with EDR (e.G., CrowdStrike, Defender for Endpoint) and NDR tools.
* Understanding of IAM concepts and tools.
Additional Information
This job requires awareness of potential compliance risks and a commitment to act with integrity as the foundation for the Company’s success, reputation, and sustainable growth.
Company and Employment Details
Company:
Airbus Helicopters España, SA
Employment Type:
Permanent
Experience Level:
Professional
Job Family:
Cyber Security
Legal and Diversity Notice
By submitting your CV or application you consent to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus. Airbus is committed to workforce diversity and an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief. Airbus is committed to equal opportunities for all and will never ask for monetary exchange in recruitment. Any impersonation should be reported to Where possible, Airbus supports flexible working arrangements to stimulate innovative thinking.
#J-18808-Ljbffr