Cyber Defence Analyst

6 months ago


Stockholm, Sweden H&M Group Full time

Job Description

Working in the H&M Cyber Defense Center eCom, you will work with world class tooling for threat hunting, detection and response based on cloud technology (For example, Azure Sentinel, Defender for Endpoint, Defender for O365, GCP SCC, Akamai, and more) with a dedicated team of DevOps engineers constantly develop tooling to support analysis, response and automations.

Our Cyber Defense Center is the beating heart in the defense of our company, combining intelligence, monitoring, incident response and threat hunting with an engineering mindset to make the most out of people and technology.

What you will do

As a Cyber Security Analyst in our Cyber Defense Center eCom team, you play a key role in H&M Group’s cyber Defense. You understand cyber security threats and the threat landscape, act to detect, analyze and respond to cyber-attacks, manage incidents and reduce risk to customers, colleagues, partners and the company. You will work with the team to improve the capabilities to reduce response time but at the same time maintain quality. We are taking advantage of the latest technology in intelligence and automation. Ultimately the aim is to bring value to our business by reducing risk

Responsibilities

In this role you will be responsible for:

Analyze security incidents, alerts, and events​. Investigate incidents according to SOP: s and best practice​. Perform remediation activities according to SOP: s and best practice.​ Interaction with stakeholders to support investigation and remediation​. Escalation of major incidents according to SOP: s​ Support major incident response activities.​ Improve and develop detection, whitelisting, SOP:s, and automation for incident and alert handling​.

Qualifications

Can explain the principles of threat intelligence, modelling and assessment. Can explain the principles of a computer system, network and storage security architecture and how these can be used to reduce information risk Can explain the main principles and processes involved in conducting a compliance monitoring exercise Have experience with operating as a member of an CSIRT or SOC. Have experience with Incident management, investigation and response. Have experience with developing custom detection in either Bot Management, SIEM or EDR solutions and understands the logic behind it. Knowledge of network communication, cloud infra, OS, API:s and applications. + 3 years of experience as a Security Analyst or similar area.

Specific competence

Experience with SIEM and logging environments for threat analysis, investigation, threat hunting and triage analysis on various security solution such as WAF, Bot Management, EDR.

Understand attack mitigations and improvements related to OWASP

Experience with Content Delivering Networks (CDN) 

Experience in cloud-based computing on large scale (preferably Microsoft Azure, but also GCP or AWS) Understanding of threat landscape, trends and act proactively on threat intelligence Good understanding of fundamental infrastructure components, network concepts, Operating Systems (Windows & Linux), DNS, etc. Willing to work in a team-oriented environment and flexibility to work in a demanding environment, sometimes under time-pressure

Additional Information

Working with tech at H&M Group

Shaping the future of fashion with people, data, and tech. The fashion and retail industries are going through a transformation, driven by customers' technology and sustainability expectations. At H&M Group, we want to shape the future of fashion and lifestyle by harnessing the power of smart tech and data. With our 74-year history of innovation, we understand the need to collaborate and co-create with engineers and tech specialists around the world to achieve our vision.

What we offer

You are joining a unique value-driven culture, a large tech network and community where you can be yourself. Besides the obvious perks such as staff discount card, flexible work life, learning communities, wellness benefits, parental benefits etc. There are endless opportunities to experiment and grow in any direction that you want, and when you grow, we grow. Being a major player gives us countless opportunities to make a real impact and shape the future.

This is a full-time position with placement in Stockholm


  • Cyber Defence Analyst

    4 weeks ago


    Stockholm, Stockholm, Sweden H&M Group Full time

    About the RoleWe are seeking a highly skilled Cyber Defence Analyst to join our team at H&M Group. As a Cyber Defence Analyst, you will play a key role in protecting our company's digital assets from cyber threats.Key ResponsibilitiesAnalyze security incidents, alerts, and events to identify potential threats.Investigate incidents according to standard...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    Cyber Defence DevOps Engineer Job DescriptionThe Cyber Defence Centre is a key security function at H&M Group, forming the last line of defence, verifying and supporting other security controls, safeguarding company staff and assets 24/7.We are a friendly and collaborative team that works closely with analytics and other security functions within the...


  • Stockholm, Stockholm, Sweden Nordea Bank Full time

    Cyber Defence Centre Team OverviewThe Cyber Defence Centre Internal Threats team at Nordea Bank is seeking an experienced professional to support the development of our existing big data and insider threat capability.As a member of our team, you will contribute to preventing, protecting, and identifying potential insider threats, and providing actionable...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    Job DescriptionThe Cyber Defence Centre at H&M Group plays a crucial role in safeguarding company staff and assets 24/7. As a key security function, we verify and support other security controls to ensure the highest level of security.We are a collaborative team that works closely with analytics and other security functions within the group. Our team is...


  • Stockholm, Sweden H&M Group Full time

    Job Description The Cyber Defence Centre (CDC) is a key security function at H&M Group, forming the last line of defence verifying and supporting other security controls, safeguarding company staff and assets 24/7.  We are a friendly and collaborative team that work closely with analytics and other security functions within the group. We have a...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    Job OverviewAs a Cyber Defense Specialist at H&M Group, you will play a key role in protecting our company's cyber defenses. Your primary responsibility will be to analyze and respond to cybersecurity threats, manage incidents, and reduce risk to our customers, colleagues, partners, and the company. You will work collaboratively with our team to improve our...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    At H&M Group, we're seeking a highly skilled Cyber Defence DevOps Engineer to join our team in Stockholm, Sweden.The estimated salary for this role is between 90,000 - 120,000 SEK per annum, depending on experience. This full-time position offers a competitive benefits package and extensive development opportunities within the company.About the JobWe are a...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    Job DescriptionThe role of an Identity and Access Management Analyst is to work with various departments within an organization to help drive identities and access control initiatives in support of internal policies, regulatory compliance, and industry standards. The IAM Analyst can work with and focus on different aspects of IAM, analyst, engineer, and...


  • Stockholm, Sweden H&M Group Full time

    Job Description The role of an Identity and Access Management Analyst is to work with various departments within an organization to help drive identities and access control initiatives in support of internal policies, regulatory compliance, and industry standards. The IAM Analyst can work with and focus on different aspects of IAM, analyst, engineer...


  • Stockholm, Stockholm, Sweden H&M Group Full time

    Job DescriptionThe role of a Cyber Security IAM Analyst is to work with various departments within an organization to drive identities and access control initiatives for internal policies, regulatory compliance, and industry standards. As an IAM Analyst, you can work on different aspects of IAM, including analyst, engineer, and administrator roles.You will...


  • Stockholm, Sweden Nordea Bank Full time

    Job ID: 26453  Would you like to be a co-driver in supporting our mission to protect the largest Nordic bank and its customers? Nordea’s Cyber Defence Centre Internal Threats team is looking for an experienced professional, willing to take a front seat in developing our existing big data and insider threat capability. At Nordea, we are committed...


  • Stockholm, Stockholm, Sweden Vattenfall Full time

    About the JobContribute to Fossil FreedomBusiness Security Officer (BSO) is a key role in our organisation's 1st Line of Defence, located in Solna, Sweden at Vattenfall's head office. You will be part of the Strategy & Business Support function within the Nordic Sales organisation, Customers & Solutions (C&S) Nordic.As a BSO, you will steer and manage...


  • Stockholm, Sweden Vattenfall Full time

    About the job Do you want to contribute to fossil freedom and work within Business Security? Now you have the opportunity! Business Security Officer (BSO) is a new Nordic level 1st Line of the Defence role within our organisation, located in Solna, Sweden at Vattenfall head office. You will be located in the Strategy & Business Support function...


  • Stockholm, Stockholm, Sweden Vattenfall Full time

    Job Title: Business Security OfficerJoin Vattenfall, a leading energy company, in a challenging role that requires expertise in security management and governance. As a Business Security Officer, you will be responsible for steering and managing security work within our newly established security organization.Key Responsibilities:Develop and implement...


  • Stockholm, Sweden Intrum Full time

    At Intrum, you will grow by making a difference. You will do it in a highly international environment and in a supportive culture where effort counts.The Global Information Security Manager (GISM) – IT Risk Management, is a key function in our efforts to protect digital assets and manage IT risks. This vital role involves (further) developing and...


  • Stockholm, Stockholm, Sweden Intrum Full time

    At Intrum, you will contribute to the company's goal of making a difference. You will do it in a highly international environment and in a supportive culture where effort counts.The Global Information Security Manager (GISM) – IT Risk Management, plays a crucial role in our efforts to protect digital assets and manage IT risks. This vital role involves...