Information Security Analyst (f/m/x)
Core
Detecting cyber threats and performing threat hunting for Deutsche Bank's cloud workloads, specifically on the Google Cloud Platform stack.
Role type
Information Security Analyst (Cloud Threat Operations)
Builds
Detection use cases, automation playbooks, reports, dashboards, and rules for cloud security monitoring.
Domain
Financial Services / Cloud Security
Deliverable
production ML models | product features | dashboards & analysis
Required skills
Google Cloud Platform (GCP) security services, SIEM solution development (Splunk, LogRhythm, QRadar, Sentinel, SecOps), detection query languages (KQL, Sigma, YARA, SPL), cloud security technologies (IAM, network security, data protection, cryptography), incident response fundamentals
Preferred skills
Experience in encryption, application security, or pen testing
Technologies
Google Cloud Platform, Google SecOps, Security Command Center, Splunk, LogRhythm, QRadar, Sentinel, KQL, Sigma, YARA, SPL
Responsibilities
Develop and fine-tune detection and alerting/threat hunting use-cases in SIEM solutions; Collaborate with Cyber Intelligence and Incident Response teams to strengthen threat analytics capabilities; Manage sophisticated tools and services for detecting and responding to cyber threats; Identify areas for improvement to drive security topics forward
Seniority
Junior to Mid-level, hands-on IC