Senior Cloud Security Operations Analyst
5 dni temu
Job ID: 22326
Meet Our Team:Pega is The Enterprise Transformation Company that helps organizations Build for Change with enterprise AI decisioning and workflow automation. We offer a commercial SaaS version of our industry-leading platform to our global clients. Pega was recently recognized as one of the "Top 10 Tech Winners For The AI Revolution" by industry analysts and just hit a huge milestone of joining the S&P MidCap 400. On the frontlines of this success is the Pega Cloud Security Operations Center (CSOC). Our team of information security professionals is charged to protect Pega's commercial cloud assets and offerings. We accomplish this by creatively working to deter, detect, deny, delay, and defend against internal and external security threats. The CSOC provides monitoring, detection, and incident response services for Pega Cloud.
Picture Yourself at Pega:As a Senior Cloud Security Operations Analyst, you will play a critical role in ensuring the confidentiality, integrity, and availability of Pega's commercial cloud infrastructure and assets. You will be key in the continuous monitoring and protection of all global cloud security operations at Pega as well as an active participant in incident response efforts. As a key member of a team consisting of highly capable and talented problem-solving analysts and engineers, you'll help develop processes that drive proactive, automated detection and incident response tactics to support the quick resolution of cloud security events and incidents.
You will accomplish this by collaborating with cross-functional teams – including other security analysts, threat detection engineers, vulnerability analysts, security engineers, system administrators, and developers – to proactively identify potential security risks and vulnerabilities within our cloud environment. You will leverage your strong analytical skills to assess and prioritize threats, applying your knowledge of industry best practices and cloud security frameworks. As a Senior Cloud Security Operations Analyst at Pega, you'll contribute to the success of our globally recognized brand. Your efforts will directly impact the security and trust our clients place in us, as we help them transform their business processes and drive meaningful digital experiences.
So, picture yourself at Pega, where your expertise in cloud security is valued, and your passion for protecting data is celebrated. Join us in shaping the future of secure cloud operations and make a lasting impact on the world of technology.
What You'll Do at Pega:
• Perform security monitoring of Pega Cloud commercial environments using multiple security tools/dashboards including our SIEM platform
• Perform security investigations to identify indicators of compromise (IOCs) and better protect Pega Cloud and our clients from unauthorized or malicious activity
• Actively contribute to incident response activities as we identify, contain, eradicate, and recover
• Contribute to standard operating procedures (SOPs) and policy development for CSOC detection and analysis tools and methodologies
• Assist in the development of playbooks for use by analysts to investigate both high confidence and anomalous activity
Occasionally:
• Perform threat hunts for adversarial activities within Pega Cloud to identify evidence of attacker presence that may have not been identified by existing detection mechanisms
• Assist the threat detection team in developing high confidence Splunk notables focused on use cases for known and emerging threats, based on hypotheses derived from the Pega threat landscape
• Assist in the development of dashboards, reports, and other non-alert based content to maintain and improve situational awareness of Pega Cloud's security posture
• Assist in enhancing security incident response plans (IRPs), conducting thorough investigations, and recommending remediation measures to prevent future incidents.
You have an insatiable curiosity with an inborn tenacity for finding creative ways to deter, detect, deny, delay, and defend against bad actors of all shapes and sizes. You have been in the "security trenches" and you know what an efficient security operations center looks like. You have conducted in-depth analyses of various security events/alerts, contributed to incident response efforts, and developed new methods for detecting and mitigating badness wherever you see it. You bring a wealth of cloud security experience to the table and are ready to harness that expertise to dive into cloud-centric, technical analysis and incident response to make Pega Cloud the most secure it can be.
You have a history of success in the information security industry. Your list of accolades include:
• SANS, Offensive Security, or other top-tier industry recognized technical security certifications focused on analysis, detection, and/or incident response
• Industry recognition for identifying security gaps to secure applications or products
Your background and competencies include:
• 4+ years of industry-relevant experience, with a demonstrated working knowledge of cloud architecture, infrastructure, and resources, along with the associated services, threats, and mitigations.
• 3+ years in operational SIEM (Security Information and Event Management) roles, focusing on analysis, investigations, and incident response, particularly with Splunk Enterprise Security (ES) and Google Chronicle/SecOps.
• 3+ years of operational experience with EDR/XDR platforms and related analysis and response techniques
• 2+ years of operational cloud security experience – preferably AWS and/or GCP – including knowledge and analysis of various cloud logs such as CloudTrail, Cloud Audit, GuardDuty, Security Command Center, VPCFlow, and WAF logs.
• A solid foundational understanding of computer, OS (Linux/Windows), and network architecture concepts, and various related exploits/attacks
• Excellent verbal and written communication skills, including poise in high pressure situations
• A demonstrated ability to work in a team environment and foster a healthy, productive team culture
It Would be Nice if You Also Have:
• Solid working knowledge of MITRE ATT&CK framework and the associated TTP's and how to map detections against it, particularly the cloud matrix portion
• Familiarity with the OWASP Top 10 vulnerabilities and best practices for mitigating these security risks.
• Operational experience performing investigations and incident response within Linux and Windows hosts as well as AWS, GCP, and related Kubernetes environments (EKS/GKE)
• Experience developing standard operating procedures (SOPs), incident response plans, runbooks/playbooks for repeated actions, and security operations policies
• Experience with Python, Linux shell/bash, and PowerShell scripting is a plus
• A Bachelor's degree in Cybersecurity, Computer Science, Data Science, or related field
• A robust global benefits program including a competitive pay + bonus incentive and Employee Equity in the company
• An innovative, inclusive, agile, flexible, and fun work environment full of opportunities to learn and grow
• At Pega, we believe in continuous learning and growth. You will have access to cutting-edge technologies and training resources, allowing you to stay at the forefront of cloud security.
• Pega's culture fosters collaboration, innovation, and work-life balance. You'll participate in team-building activities and engage in open discussions during daily/weekly team meetings
• You will have the flexibility to work remotely when needed, allowing you to maintain a healthy work-life integration
• Gartner Analyst acclaimed technology leadership across our categories of products
#LI-ME1
AI in Action – Pega embraces the power of artificial intelligence. We encourage all employees to actively engage with AI technologies and continually explore ways to responsibly integrate AI into our products and processes.
Culture – At Pegasystems, we foster an environment where people feel valued and empowered to contribute their best. With global clients across industries and regions, we know our success depends on the unique perspectives, experiences, and talents of our people. Ours is a workplace where everyone can grow, collaborate, and deliver meaningful outcomes.
We encourage candidates from all backgrounds and experiences and focus on the core competencies and mindset needed to thrive in a role.
As an Equal Opportunity employer, Pegasystems will not discriminate in its employment practices due to an applicant's race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, veteran or disability status, or any other category protected by law.
Export Compliance – For positions requiring access to technical data subject to export control regulations such as this, Pegasystems may need to obtain export license approval from the U.S. Government and EU Authorities for certain individuals.
Accommodations – If you require reasonable accommodations under the Americans with Disabilities Act (US only) or comparable regional regulations in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please contact us here or contact (US only PEGA-NOW and/or 225 Wyman Street Waltham, MA 02451 ATTN: Benefits.
Labor Condition Applications
GDPR Candidate Privacy Notice
Pegasystems Limited UK Gender Pay Gap Statement
EEO/AA Policy Statement
Know Your Rights: Workplace Discrimination is Illegal
Pay Transparency Policy Statement
Your Employee Rights Under the Family and Medical Leave Act
E-Verify Notice
Employee Polygraph Protection Act Rights
-
IT Security Operations Analyst
5 dni temu
Poland Pacifica Continental Pełny etat 30 000 zł - 60 000 zł rocznieOur client is an European company leading the development and production of responsible packaging solutions for a wide variety of industries. The company currently has 44,000 employees supporting its operations in 220 locations in 43 countries.The company is currently looking for an IT Security Operations Analyst, who will be primarily responsible for the...
-
Security Operations Center Tier 2 Analyst
5 dni temu
Poland Euroclear Pełny etat 40 000 zł - 80 000 zł rocznieDescriptionDivision: Chief Information Security Office (CISO) As a global critical financial infrastructure, the protection of Euroclear information and assets is fundamental to the company's business. Information Security is at the core of our services, firmly embedded in the management systems and processes of the company. You will be joining our Chief...
-
Group Cyber Security Analyst
5 dni temu
Poland Testronic Pełny etat 40 000 zł - 80 000 zł rocznieWe're looking for a proactive Group Cyber Security Analyst in Poland or in the Philippines to help protect Testronic's global operations and digital assets (about 2000 people spread across 3 principal locations in EU, US and Asia). You'll play a key role in detecting, analyzing, and responding to security threats while supporting the delivery of our global...
-
Senior Business Operations Analyst
5 dni temu
Poland Akamai Pełny etat 40 000 zł - 80 000 zł rocznieDescriptionWould you like to partner with a Global Pre - Sales management team?Would you enjoy making an impact on Akamai's sales strategy, performance and processes?Join our impactful operations teamAkamai's Sales Operations team is collaborative, and results-orientated. Partnering with our top-notch sales and go-to-market teams, we enable and enhance their...
-
IAM Senior Risk Analyst
7 dni temu
Poland Euroclear Pełny etat 45 000 zł - 65 000 zł rocznieDescriptionAn Identity and Access Management (IAM) Senior Risk Analyst is responsible for identifying, assessing, and mitigating risks related to Identity and Access Management across the organisation. The Senior Analyst acts as a subject matter expert, collaborating with IT, security, compliance, and business stakeholders to drive continuous improvement in...
-
Security Analyst
1 dzień temu
Poland - Warsaw - ASEC Aviva Employment Services Pełny etatHi, we're glad you're here We are hiring to our Aviva Services Excellence Centre Take a look at our job description - maybe it suits you or one of your friends?Aviva is seeking a Security Analyst who will be responsible for day-to-day security threat monitoring and analysis. You will manage security incidents and review security alerts for next steps...
-
AWS Cloud Operations Engineer
7 dni temu
Poland, Ohio Pharmacy Data Management Pełny etat 80 000 zł - 120 000 zł roczniePDMI is looking to add an AWS Cloud Operations Engineer to our team As an AWS Cloud Operations Engineer, you will deploy, manage, and optimize cloud infrastructure and applications in AWS environments. This role ensures seamless, secure, and efficient deployment of infrastructure and application code, working closely with internal IT and development teams to...
-
Information Security Analyst
7 dni temu
Poland DP World Pełny etat 45 000 zł - 60 000 zł rocznieDescriptionDP World, the global leader in port and logistics operations which handles more 10% of world trade, we are looking for the Information Security Analyst who will be an integral part of the Information Security team for the region. Serving as a key contributor to the prevention of security incidents across the region, this role requires a broad...
-
Lead Cloud Security Engineer
7 dni temu
WFH - Poland WP Engine Pełny etat 268 000 zł - 402 000 zł rocznieWe engage the most inspired minds to do their best work wherever they work best—powering the freedom to create worldwide.WP Engine empowers companies and agencies of all sizes to build, power, manage, and optimize their WordPress websites and applications with confidence. Serving 1.5 million customers across 150+ countries, the global technology company...
-
Security Operations Engineer
5 dni temu
Poland Euroclear Pełny etat 40 000 zł - 80 000 zł rocznieDescriptionDivision: CISOSecurity Operations Engineer (SOAR) / CISO Platform SecurityYour main task will be to maintain the security orchestration and automation platform. This platform is used by the security operation center to manage security alerts. Our mission is to maintain and enrich this platform by integrating it with various tools. Depending on...