Bitdefender
Posted 3w ago

Associate Security Analyst

Bitdefender
Bucharest, Bucharest, Romania
HybridFull Time
Responsibilities
  • monitoring events
  • triaging events
  • analyzing logs
Requirements
  • Knowledge of cybersecurity principles
  • Incident response
  • Log analysis
  • Network protocols
  • Virtualization/cloud, and investigative techniques
  • Ability to analyze logs
  • Perform packet analysis, and use SIEM and WAF tools
Technical tools mentioned
Security Information and Event Management (SIEM)Web Application Firewall (WAF)WiresharktcpdumpRegex

Job description

Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumer, enterprise, and government environments, Bitdefender is one of the industry’s most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling cyber resilience. With deep investments in research and development, Bitdefender Labs discovers hundreds of new threats each minute and validates billions of threat queries daily. The company has pioneered breakthrough innovations in antimalware, IoT security, behavioral analytics, and artificial intelligence and its technology is licensed by more than 180 of the world’s most recognized technology brands. Founded in 2001, Bitdefender has customers in 170+ countries with offices around the world. For more information, visit https://www.bitdefender.com

Associate Security Analyst - Managed Detection and Response 

Our mission at Bitdefender is to reduce risk to customers’ business to allow them to achieve their objectives. We are focused on delivering real security value for an affordable price – no snake oil. To help in this mission, we are looking for aAssociate Security Analyst.

About Us 

The Managed Detection & Response service is a new line of business (think division, business unit, etc). We are an experienced team having built successful Managed Security offerings in the past and staffed by a multitude of cybersecurity organizations and veteran cyber-warfare operators from the military and intelligence services. We all got into this business to provide security services that make customers safer. We must make some money to do that, but our primary goal is to provide services that secure, not just ones that sell. 

Our team has been around the block together and operate in a 24x7 environment where we manage emergency situations for customers. For this to work, we must trust each other. As a leadership team, we focus on building that trust through accountability, processes and personal relationships. We have plenty of experienced team members with and without families and understand that not all teams can be built outside of work, but we focus on teamwork to build authentic and meaningful engagement. 

About the Role  

  • Under supervision perform real-time monitoring and analysis of security events from multiple sources including both host and network telemetry 
  • Triage security events to determine priority and severity 
  • Proactively review customers environments searching for anomalous behavior using the cyber kill chain, cyber intelligence, and investigative techniques 

About you 

Be familiar with and able to articulate when discussing the following:  

  • Cybersecurity principles 
  • Cyber threats and vulnerabilities 
  • Current incident response methodologies 
  • Current cyber investigative techniques 
  • Current cyber threat trends 
  • Computer networking concepts and protocols, and network security methodologies 
  • Knowledge of basic physical computer components and architectures, including the functions of various components and peripherals (e.g., CPUs, NICs, HDDs) 
  • Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security 
  • Basic system administration, network, and operating system hardening techniques 
  • Identifyingmodifying, and manipulating applicable system components within Windows, Unix, or Linux (e.g., passwords, user accounts, files) 
  • Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings) 
  • Defense-in-depth principles and practices (e.g., defense-in-multiple places, layered defenses, security robustness) 
  • Virtualization and cloud computing 
  • Knowledge of which system files (e.g., log files, registry files, configuration files) contain relevant information and where to find those system files 
  • Hacking methodologies  
  • Networking protocols (e.g., TCP/IP), services (e.g., web, mail, DNS), and how they interact to provide network communications 
  • Knowledge of encryption algorithms (e.g., Internet Protocol Security [IPSEC], Advanced Encryption Standard [AES], Generic Routing Encapsulation [GRE], Internet Key Exchange [IKE], Message Digest Algorithm [MD5], Secure Hash Algorithm [SHA]) and how they are used 
  • How to perform packet-level analysis using appropriate tools (e.g., Wireshark, tcpdump) 
  • Security Information and Event Management (SIEM) tools - Searching, aggregating, and correlating data 
  • Web Application Firewall (WAF) 
  • Regular Expressions (Regex) 

 

#LI-AP2

 

  

 

About Bitdefender

Provides cybersecurity software for threat prevention and data protection.

Year founded
2001
Employees
1800
Organization type
Private
Latest investment
Private Equity — led by Vitruvian Partners, Axxess Capital
Headquarters
RO

Similar jobs

Security Analyst roles near Bucharest, Bucharest
1w
Save
Mark Applied
Hide
24x7 Security Operations Analyst
Bucharest, Bucharest, Romania
HybridFull Time
Merck & Co.
Merck & Co.NYSE: MRK: Develops and manufactures prescription medicines, vaccines, and animal health products.
Security operations experience with incident handling, endpoint and network security, ServiceNow and ITIL; strong English communication, problem analysis, and ability to work under pressure. BS in a relevant field or equivalent experience.
ServiceNow, ITIL, CrowdStrike Falcon, Microsoft Security Suite, Microsoft Defender, Cylance, Cisco FireAMP, Zscaler, Splunk, McAfee, Trellix, ePO, HIPS, ENS, VSE, Solidcore, SDLC, PCI, GDPR
3w
Save
Mark Applied
Hide
IT Security Analyst - Senior
Bucharest, Bucharest, Romania
HybridFull Time
Worldline
WorldlineEuronext Paris: WLN: Global provider of payment and digital transaction services.
Experience with Tenable/Qualys scanners, vulnerability risk assessment and remediation, scripting (Python) for automation preferred, familiarity with PCI DSS or ISO 27001 preferred.
Tenable, Qualys, Python
1mo
Save
Mark Applied
Hide
IT Security Analyst (preferably French speaking)
Ploiești, Prahova, Romania
lei9k-lei11k/mo RemoteFull Time
Eurofins Scientific
Eurofins ScientificEuronext Paris: ERF: Global provider of analytical testing and laboratory services.
3+ YOE3-5 years information security experience, expertise in vulnerability management, incident response and advisory; Bachelor's in CS or related; ISO27001/CISSP/CEH/CISM preferred; strong English communication.
AD, Intune, Office 365, Azure, SIEM, SOC
1mo
Save
Mark Applied
Hide
Cyber Security Analyst
Bucharest, Bucharest, Romania
lei145k-lei190k/yr HybridFull Time
FLSmidth
FLSmidthNasdaq Copenhagen: FLS: Provides engineering and equipment for global mining operations.
3+ YOEBachelor's in CS/IT/Cybersecurity required, 3–5 years IT operations/cybersecurity experience, SIEM/endpoint/vulnerability management knowledge, ServiceNow experience, strong communication and problem-solving skills.
Microsoft Defender for Endpoint, Defender for Linux, Microsoft Sentinel, Cisco Umbrella, Tenable, ServiceNow, Knowbe4, Azure, OCI, BeyondTrust Privilege Management
1mo
Save
Mark Applied
Hide
Analyst, Information Security Management
Bucharest, Bucharest, Romania
OnsiteFull Time
SES
SESEuronext Paris: SESG: Provides global satellite-based video and data connectivity services.
0+ YOEDegree in cyber security or related field, up to 3 years' relevant experience; knowledge of ISO 27001, NIST, risk management, audits, cloud security; NATO (or EU preferred) nationality and willingness to undergo security clearance.
1mo
Save
Mark Applied
Hide
GRC AI Security Analyst
Bucharest, Bucharest, Romania
OnsiteFull Time
Equans
Equans: Provider of multi-technical energy and facility management services.
University degree in CS/InfoSec/Engineering or equivalent experience; proven cybersecurity/GRC experience; knowledge of Microsoft cloud (M365, Azure), Microsoft Power Platform, Agent Platform and Copilot Studio; familiarity with ISO27001/NIST/GDPR and SDLC/MLOps; strong communication and risk analysis skills.
Naaia, Microsoft Power Platform, Microsoft Agent Platform, Copilot Studio, Microsoft M365, Microsoft Azure, ISO 27001, NIST, GDPR
2mo
Save
Mark Applied
Hide
Senior Security Analyst (Bucharest, RO, 0030144)
Bucharest, Bucharest, Romania
HybridFull Time
SAP
SAPFrankfurt Stock Exchange: SAP: Sells enterprise resource planning and business management software solutions.
5+ YOESenior security specialist with strong incident response background; 5 years in security incident response; knowledge of IT security tools and data analysis.
EDR, SIEM, Firewall, WAF, SAP Basis security, Networking, Data analysis tools
3mo
Save
Mark Applied
Hide
Information Security Analyst (f/m/x)
Bucharest, Romania, Romania
OnsiteFull Time
Deutsche Bank
Deutsche BankNew York Stock Exchange: DB: A global bank providing financial services to individuals and corporations.
1+ YOE1+ year hands-on cloud security experience; SIEM content development; cloud threat detection; collaboration with security teams.
Google Cloud Platform, Microsoft Azure, Amazon Web Services, Splunk, LogRhythm, QRadar, Sentinel