Cybersecurity Analyst Associate

Volvo Group

Full-Time
Closes on Sunday, June 23, 2024

Job Description

Transport is at the core of modern society. Imagine using your expertise to shape sustainable transport solutions for the future? If you seek to make a difference on a global scale, working with next-gen technologies and the sharpest collaborative teams, then we could be a perfect match. 

Who we are

We, at Enterprise IT Security, are on a mission to secure the IT journey for the Volvo Group. We work closely together with stakeholders across several Business Areas (BAs), Truck Divisions (TDs), and Group Functions (GFs). While the BAs are responsible for driving the business, the TDs provide research, development, purchasing, manufacturing, and assembly. Within Volvo Group, the GFs own the Group agenda, provide strategic direction, and have global responsibility in group-wide functions such as IT, legal, compliance and security.   

 

With Enterprise IT Security, you will be part of Group Digital & IT (Group Function). A global and diverse team of highly skilled professionals who work with passion, trust each other, and embrace change to stay ahead. Enterprise IT Security (EITS) works in close collaboration with both Group Security function and security functions within TD’s, BAs and GFs. Together we work to build a security posture that is best in class.    

 

We are actively seeking an Associate Cybersecurity Analyst to join our Cybersecurity Operations Center (CSOC) in Greensboro, NC.  In this role, you will be responsible for analyzing data, carrying out alert and incident response processes, conducting in-depth analysis of network and endpoint data, and incorporating threat intelligence to enhance detection and mitigation strategies. 

What you will do

  • Complete Cyber Monitoring and Incident Response Operations Playbook/Checklist activities including, but not limited to: log review, vulnerability management activities, management report scheduling and running, alert analysis, filter modifications and escalation follow up activity status 
  • Monitor CSOC alert queue and investigate detections for suspicious events 
  • Develop, tune and maintain tools to automate analysis capabilities for network-based, host-based and log-based security event analysis.  Create signatures, rulesets, and content analysis definitions from various intelligence sources for a variety of detection capabilities 
  • Organize and maintain documentation of detection capabilities, alert definition, policy configurations, and tool rulesets 
  • Maintain adherence to Cybersecurity Operations Center standards, policies and procedures 
  • Remain up-to-date on the latest security information in order to validate the security analysis and identification capabilities of the security operations technologies 
  • Participate in efforts to analyze and define security filters and rules for a variety of security parameters 

Who are you?

Do you dream big? We do too, and we are excited to grow together. In this role, you will bring: 

  • Bachelor’s degree in computer science or a related 4-year technical degree, or 3-6 years of relevant IT experience 
  • Curious and open minded 
  • A good team player and a nice person with a passion for cyber defense 
  • 2-4 years of IT Security experience 
  • Core Technical: Intrusion Detection, Network Traffic Analysis, Log Analysis, Rule/Signature/Content Development, programming or scripting required. 
  • Exhibits understanding and application of the principles of Network Security Monitoring (NSM). Ability analyze log data, network data, alert data, network traffic and other data sources to validate security events.  Ability to create signatures and detection content in IDS, SEIM and Log analysis platforms.  Ability to consume, comprehend and utilize and create indicators of compromise. Ability to tune detection tools for accuracy. Execute on intelligence-driven detection capabilities.  Perform daily analysis of detection reports and alerts. Maintain tools, scripts and applications for detection and automation capabilities.  Identify opportunities for capability and efficiency improvements.  Ability to conduct network and host analysis of compromise and baseline systems to identify anomalies. Exhibit understanding of tools, tactics and procedures (TTP) of malicious actors such as hacktivist groups, cybercrime organizations and advanced persistent threats.  Identify and report on detection trends.  Comprehensive knowledge of common networking protocols: HTTP, DNS, DHCP, SMTP, NTP, SSH, FTP. 

Added bonus if you have 

  • General Info Security: Intelligence-Driven Detection, Security Principles, Threat Lifecycle Management, Incident Management and Lifecycle, Platform Analysis, Forensics and Investigations, NSM, DFIR 
  • Cyber SOC Process Management: Overall Process Design and SOC Threat Management, Teamwork, Collaboration and independent contributions 
  • Malware Analysis experience preferred 

What’s in it for you?

We offer a solid package of compensation and benefits, plus you will enjoy:  

  • Competitive medical, dental and vision insurance
  • Generous paid caregiver and parental leave policies
  • Family building benefits, including fertility support and adoption assistance
  • Competitive matching retirement savings plans
  •  A working environment where your safety, health and wellbeing come first 
  •  Programs that make today’s challenging reality of combining work and personal life easier

Ready for the next move?

Are you excited to bring your skills and disruptive ideas to the table? We can’t wait to hear from you. Apply today! 
 

 

We value your data privacy and therefore do not accept applications via mail. 

 

Who we are and what we believe in 
Our focus on Inclusion, Diversity, and Equity allows each of us the opportunity to bring our full authentic self to work and thrive by providing a safe and supportive environment, free of harassment and discrimination. We are committed to removing the barriers to entry, which is why we ask that even if you feel you may not meet every qualification on the job description, please apply and let us decide. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

 

 

Applying to this job offers you the opportunity to join Volvo Group. Every day, across the globe, our trucks, buses, engines, construction equipment, financial services, and solutions make modern life possible. We are almost 100,000 people empowered to shape the future landscape of efficient, safe and sustainable transport solutions. Fulfilling our mission creates countless career opportunities for talents with sharp minds and passion across the group’s leading brands and entities. 

 

Group Digital & IT is the hub for digital development within Volvo Group. Imagine yourself working with cutting-edge technologies in a global team, represented in more than 30 countries. We are dedicated to leading the way of tomorrow’s transport solutions, guided by a strong customer mindset and high level of curiosity, both as individuals and as a team. Here, you will thrive in your career in an environment where your voice is heard and your ideas matter.

Full-Time 40 Volvo Group
Cybersecurity Analyst Associate - 126130