Cyber Defence Analyst
6 months ago
Job Description
Working in the H&M Cyber Defense Center eCom, you will work with world class tooling for threat hunting, detection and response based on cloud technology (For example, Azure Sentinel, Defender for Endpoint, Defender for O365, GCP SCC, Akamai, and more) with a dedicated team of DevOps engineers constantly develop tooling to support analysis, response and automations.
Our Cyber Defense Center is the beating heart in the defense of our company, combining intelligence, monitoring, incident response and threat hunting with an engineering mindset to make the most out of people and technology.
What you will do
As a Cyber Security Analyst in our Cyber Defense Center eCom team, you play a key role in H&M Group’s cyber Defense. You understand cyber security threats and the threat landscape, act to detect, analyze and respond to cyber-attacks, manage incidents and reduce risk to customers, colleagues, partners and the company. You will work with the team to improve the capabilities to reduce response time but at the same time maintain quality. We are taking advantage of the latest technology in intelligence and automation. Ultimately the aim is to bring value to our business by reducing risk
Responsibilities
In this role you will be responsible for:
Analyze security incidents, alerts, and events. Investigate incidents according to SOP: s and best practice. Perform remediation activities according to SOP: s and best practice. Interaction with stakeholders to support investigation and remediation. Escalation of major incidents according to SOP: s Support major incident response activities. Improve and develop detection, whitelisting, SOP:s, and automation for incident and alert handling.
Qualifications
Can explain the principles of threat intelligence, modelling and assessment. Can explain the principles of a computer system, network and storage security architecture and how these can be used to reduce information risk Can explain the main principles and processes involved in conducting a compliance monitoring exercise Have experience with operating as a member of an CSIRT or SOC. Have experience with Incident management, investigation and response. Have experience with developing custom detection in either Bot Management, SIEM or EDR solutions and understands the logic behind it. Knowledge of network communication, cloud infra, OS, API:s and applications. + 3 years of experience as a Security Analyst or similar area.Specific competence
Experience with SIEM and logging environments for threat analysis, investigation, threat hunting and triage analysis on various security solution such as WAF, Bot Management, EDR.
Understand attack mitigations and improvements related to OWASP
Experience with Content Delivering Networks (CDN)
Experience in cloud-based computing on large scale (preferably Microsoft Azure, but also GCP or AWS) Understanding of threat landscape, trends and act proactively on threat intelligence Good understanding of fundamental infrastructure components, network concepts, Operating Systems (Windows & Linux), DNS, etc. Willing to work in a team-oriented environment and flexibility to work in a demanding environment, sometimes under time-pressure
Additional Information
Working with tech at H&M Group
Shaping the future of fashion with people, data, and tech. The fashion and retail industries are going through a transformation, driven by customers' technology and sustainability expectations. At H&M Group, we want to shape the future of fashion and lifestyle by harnessing the power of smart tech and data. With our 74-year history of innovation, we understand the need to collaborate and co-create with engineers and tech specialists around the world to achieve our vision.
What we offer
You are joining a unique value-driven culture, a large tech network and community where you can be yourself. Besides the obvious perks such as staff discount card, flexible work life, learning communities, wellness benefits, parental benefits etc. There are endless opportunities to experiment and grow in any direction that you want, and when you grow, we grow. Being a major player gives us countless opportunities to make a real impact and shape the future.
This is a full-time position with placement in Stockholm
-
Cyber Defence Analyst
4 weeks ago
Stockholm, Stockholm, Sweden H&M Group Full timeAbout the RoleWe are seeking a highly skilled Cyber Defence Analyst to join our team at H&M Group. As a Cyber Defence Analyst, you will play a key role in protecting our company's digital assets from cyber threats.Key ResponsibilitiesAnalyze security incidents, alerts, and events to identify potential threats.Investigate incidents according to standard...
-
Cyber Defence DevOps Engineer
3 weeks ago
Stockholm, Stockholm, Sweden H&M Group Full timeCyber Defence DevOps Engineer Job DescriptionThe Cyber Defence Centre is a key security function at H&M Group, forming the last line of defence, verifying and supporting other security controls, safeguarding company staff and assets 24/7.We are a friendly and collaborative team that works closely with analytics and other security functions within the...
-
Stockholm, Stockholm, Sweden Nordea Bank Full timeCyber Defence Centre Team OverviewThe Cyber Defence Centre Internal Threats team at Nordea Bank is seeking an experienced professional to support the development of our existing big data and insider threat capability.As a member of our team, you will contribute to preventing, protecting, and identifying potential insider threats, and providing actionable...
-
Cyber Defence DevOps Engineer
4 weeks ago
Stockholm, Stockholm, Sweden H&M Group Full timeJob DescriptionThe Cyber Defence Centre at H&M Group plays a crucial role in safeguarding company staff and assets 24/7. As a key security function, we verify and support other security controls to ensure the highest level of security.We are a collaborative team that works closely with analytics and other security functions within the group. Our team is...
-
Cyber Defence DevOps Engineer
6 months ago
Stockholm, Sweden H&M Group Full timeJob Description The Cyber Defence Centre (CDC) is a key security function at H&M Group, forming the last line of defence verifying and supporting other security controls, safeguarding company staff and assets 24/7. We are a friendly and collaborative team that work closely with analytics and other security functions within the group. We have a...
-
Cyber Security Analyst
3 weeks ago
Stockholm, Stockholm, Sweden H&M Group Full timeJob OverviewAs a Cyber Defense Specialist at H&M Group, you will play a key role in protecting our company's cyber defenses. Your primary responsibility will be to analyze and respond to cybersecurity threats, manage incidents, and reduce risk to our customers, colleagues, partners, and the company. You will work collaboratively with our team to improve our...
-
Senior Cyber Security Engineer
3 days ago
Stockholm, Stockholm, Sweden H&M Group Full timeAt H&M Group, we're seeking a highly skilled Cyber Defence DevOps Engineer to join our team in Stockholm, Sweden.The estimated salary for this role is between 90,000 - 120,000 SEK per annum, depending on experience. This full-time position offers a competitive benefits package and extensive development opportunities within the company.About the JobWe are a...
-
Cyber Security IAM Analyst CoE
4 weeks ago
Stockholm, Stockholm, Sweden H&M Group Full timeJob DescriptionThe role of an Identity and Access Management Analyst is to work with various departments within an organization to help drive identities and access control initiatives in support of internal policies, regulatory compliance, and industry standards. The IAM Analyst can work with and focus on different aspects of IAM, analyst, engineer, and...
-
Cyber Security IAM Analyst CoE
5 months ago
Stockholm, Sweden H&M Group Full timeJob Description The role of an Identity and Access Management Analyst is to work with various departments within an organization to help drive identities and access control initiatives in support of internal policies, regulatory compliance, and industry standards. The IAM Analyst can work with and focus on different aspects of IAM, analyst, engineer...
-
Cyber Security IAM Specialist
3 weeks ago
Stockholm, Stockholm, Sweden H&M Group Full timeJob DescriptionThe role of a Cyber Security IAM Analyst is to work with various departments within an organization to drive identities and access control initiatives for internal policies, regulatory compliance, and industry standards. As an IAM Analyst, you can work on different aspects of IAM, including analyst, engineer, and administrator roles.You will...
-
Senior Data Scientist/Data Engineer
1 month ago
Stockholm, Sweden Nordea Bank Full timeJob ID: 26453 Would you like to be a co-driver in supporting our mission to protect the largest Nordic bank and its customers? Nordea’s Cyber Defence Centre Internal Threats team is looking for an experienced professional, willing to take a front seat in developing our existing big data and insider threat capability. At Nordea, we are committed...
-
Business Security Officer
3 weeks ago
Stockholm, Stockholm, Sweden Vattenfall Full timeAbout the JobContribute to Fossil FreedomBusiness Security Officer (BSO) is a key role in our organisation's 1st Line of Defence, located in Solna, Sweden at Vattenfall's head office. You will be part of the Strategy & Business Support function within the Nordic Sales organisation, Customers & Solutions (C&S) Nordic.As a BSO, you will steer and manage...
-
Business Security Officer
2 months ago
Stockholm, Sweden Vattenfall Full timeAbout the job Do you want to contribute to fossil freedom and work within Business Security? Now you have the opportunity! Business Security Officer (BSO) is a new Nordic level 1st Line of the Defence role within our organisation, located in Solna, Sweden at Vattenfall head office. You will be located in the Strategy & Business Support function...
-
Business Security Officer
1 month ago
Stockholm, Stockholm, Sweden Vattenfall Full timeJob Title: Business Security OfficerJoin Vattenfall, a leading energy company, in a challenging role that requires expertise in security management and governance. As a Business Security Officer, you will be responsible for steering and managing security work within our newly established security organization.Key Responsibilities:Develop and implement...
-
Stockholm, Sweden Intrum Full timeAt Intrum, you will grow by making a difference. You will do it in a highly international environment and in a supportive culture where effort counts.The Global Information Security Manager (GISM) – IT Risk Management, is a key function in our efforts to protect digital assets and manage IT risks. This vital role involves (further) developing and...
-
Global Information Security Manager
3 weeks ago
Stockholm, Stockholm, Sweden Intrum Full timeAt Intrum, you will contribute to the company's goal of making a difference. You will do it in a highly international environment and in a supportive culture where effort counts.The Global Information Security Manager (GISM) – IT Risk Management, plays a crucial role in our efforts to protect digital assets and manage IT risks. This vital role involves...