Cyber Security Specialist
vor 1 Woche
Group Company: [[cust_company]]
Cyber Security Specialist - Threat Detection Engineer (f/m/d)
Full-time | unlimited
Tracing its origins to 1585, Deutsche Börse Group has become one of the world's leading exchange organisations and an innovative market infrastructure provider. In this role, we provide investors, financial institutions and companies access to global capital markets. By creating trust in the markets of today and tomorrow we foster growth and contribute to the prosperity of future generations. Deutsche Börse Group is an international company, headquartered in Frankfurt/Main, Germany. With more than 6,700 employees, the company has a strong global presence for its customers all over the world, including Luxembourg, Prague, Chicago, London, Cork, New York and many other locations.
What's your part in all this? With your commitment you contribute to the success of our unique business model: offering a wide range of products, services and technologies, covering the entire value chain of global financial markets.
The Group Security department directly contributes to execution of the Deutsche Börse Group information security strategy. As a central service provider for the Group entities, Group Security is responsible to protect information assets in terms of safety, integrity, confidentiality, authenticity, and availability by enforcing information security controls based on the relevant regulatory requirements and follows the international standard ISO/IEC 27000-series on the Information Security Management System.
Your area of work:
Cyber Defense Framework team operates in strict cooperation with CERT, SOC, Threat Intelligence and Cyber Analytics teams (responsible for SIEM use case implementation). Cyber Defense Framework team is responsible for a wide range of essential tasks, including defining comprehensive requirements, setting strategic goals, and conducting maturity evaluations to enhance our threat detection capabilities. This includes Threat Landscape definition, Purple Teaming, Threat Hunting and Threat Management structured against MITRE.
We are looking for a Threat Detection Engineer to enhance our threat landscape analysis, use case coverage, and detection efficacy. The ideal candidate will assess our current detection capabilities, identify gaps, and develop new detection logic to address evolving threats. You will work closely with security teams to analyze attack trends, optimize security use cases, and improve threat visibility across on-premises and cloud environments.
Your responsibilities:
- Assess the organization's security posture against evolving threats and propose enhancements.
- Develop and refine detection use cases based on MITRE ATT&CK and real-world attack scenarios.
- Map existing detections to known attack frameworks to identify gaps in coverage.
- Develop advanced detection logics and algorithms which can efficiently spot and alert of any suspicious activity or potential threats.
- Perform detection gap assessments to ensure coverage across network, endpoint, cloud, and application layers.
- Understand threat scenarios and threat actor approach to perform red team/penetration testing exercises and suggest remediations and support closures.
- Threat actor profiling and understanding operations of threat actors.
- Transpose defensive strategies and relevant threat hunting from threat actor's attack approach.
- Understand how external attacks happen and support remediation of external threats.
- Collaborate with Red and Blue Teams to continuously refine detection and response strategies.
Your profile:
- Solid IT Security technical background and broad knowledge of IT and Information Security technologies especially in the frame of threat detection and security monitoring (e.g. SIEM, EDR, Cloud Security).
- Solid understanding of cyber threats and appropriate detection measures.
- Familiar with cyber threat management, esp. using MITRE ATT&CK framework.
- Deliverable-oriented, with strong problem-solving skills and adaptation on complex and highly regulated environment.
- Team player willing to cooperate with multiple colleagues across office locations.
- Previous experience in a CERT or SOC team is considered a strong asset as well as involvement in threat detection investigations.
- Good report-writing skills to present the results of a threat modelling exercise.
- Scripting skills (e.g. Python, Bash, Perl) is considered a strong asset.
- Experience with JIRA ticketing tool and JIRA Service Manager is a strong asset.
- Technical certification in the area of Red Teaming/Penetration Testing/Purple Teaming or Threat Hunting (e.g. GIAC, OSCP, CEH, etc.) are considered as a strong asset.
- Experienced or conversant with public cloud computing - GCP (preferred), Azure and/or AWS.
- Proficiency in written and spoken English; French/German language skills will be an asset.
Deutsche Börse Group embraces an international climate, whereby diversity is universal. This is evident across the board, be it through our diverse workforce, routine responsibilities or other areas of activities and scope of application. We are looking for employees who enjoy working in a dynamic and flexible environment and are willing to put forward innovative ideas for the company. An open mindset, a proactive approach and self-motivation are prerequisites.
We offer our employees an attractive remuneration package. Benefits include a high level of trust and autonomy in modern, centrally located workplaces where corporate culture and values are exercised regularly.
We value diversity and therefore welcome all applications - regardless of gender, nationality, ethnic and social origin, religion/belief, disability, age, sexual orientation and identity.
Have we piqued your interest? Then we encourage you to apply now
Do you have questions about the application process or this position?
Ridhi Girdhar will gladly answer your questions. Please contact us at -
or by phone We look forward to getting to know you
Deutsche Börse Group, Human Resources
www.careers.deutsche-
-
Cyber Security Specialist
Vor 5 Tagen
Frankfurt am Main, Hessen, Deutschland Deutsche Börse VollzeitYour career at Deutsche Börse GroupThe Group Security department directly contributes to execution of the Deutsche Börse Group information security strategy. As a central service provider for the Group entities, Group Security is responsible to protect information assets in terms of safety, integrity, confidentiality, authenticity, and availability by...
-
Cyber Security Lead
vor 1 Woche
Frankfurt am Main, Hessen, Deutschland Micro IT Global VollzeitCyber Security Specialist - EU (Germany, Belgium, Netherlands, Luxembourg) - Remote - We are working exclusively with a Global highly respected service provider who works with major EU Government organisations They currently have a unique opportunity for a Cyber Security Specialist to join their talented Senior IT Delivery team.You will need to be...
-
Cyber Security Architect
Vor 3 Tagen
Frankfurt am Main, Hessen, Deutschland BRINK Group VollzeitCyber Security - AWS Architekt – Full RemoteUnser Mandant ist einglobal agierendes IT-Beratungshausund zählt zu den sogenannten Big-Next-7 Unternehmen mit großerCyber Security und Cloud-Sparte. In Deutschland führt unser Mandant große Projekte im Öffentlichen Sektor durch und trägt aktiv zur nationalen Cloud-Sovereignty bei. Zur Verstärkung unseres...
-
Cyber Security Engineer
Vor 5 Tagen
Frankfurt am Main, Hessen, Deutschland Deutsche Bahn VollzeitWir, die DB Zeitarbeit GmbH, sind der interne Personaldienstleister der Deutschen Bahn AG und zugleich dein Sprungbrett in den DB-Konzern: Kurzfristig zu besetzende Stellen, Projektarbeit oder Elternzeitvertretungen werden über uns ausgeschrieben, um die Personalbedarfe der DB Unternehmen schnell zu decken. Als Mitarbeiter:in der DB Zeitarbeit GmbH...
-
Regional Director, Cyber Security Business Growth
vor 14 Stunden
Frankfurt am Main, Hessen, Deutschland Mastercard VollzeitJob Title:Regional Director, Cyber Security Business Growth (Central Europe) Overview:Services are a key differentiator for Mastercard, delivering cutting-edge solutions that help our customers grow. Built on data-driven technologies and innovation, our offerings span consulting, loyalty and marketing programs, business experimentation, and information and...
-
Manager Cyber Cloud Security
Vor 5 Tagen
Frankfurt am Main, Hessen, Deutschland Deloitte VollzeitDeloitte bietet führende Prüfungs- und Beratungsleistungen in Audit & Assurance, Tax & Legal, Consulting und Advisory – für nahezu 90 % der Fortune Global 500 und zahlreiche private Unternehmen. Wir liefern innovative Denkansätze, lösen komplexe Herausforderungen und fördern nachhaltiges Wachstum. Mit rund Mitarbeitenden weltweit eröffnen wir...
-
Country Group Leader Cyber Security Services
Vor 5 Tagen
Frankfurt am Main, Hessen, Deutschland techculture GmbH VollzeitEin weltweit führender IT-Dienstleister mit über 15 Milliarden US-Dollar Jahresumsatz sichert geschäftskritische Infrastrukturen in hochregulierten Branchen – konsequent entlang strengster Compliance-Vorgaben.Als Country Group Leader Cyber Security übernimmst du die Gesamtverantwortung für eine 80-Millionen-Euro-Einheit – und definierst gemeinsam...
-
Senior Cyber Security Manager
vor 2 Wochen
Frankfurt am Main, Hessen, Deutschland Gallmond GmbH VollzeitIm Auftrag unseres renommierten Mandanten aus der Finanzbranche suchen wir eine erfahrene Führungskraft für die Cyber Security.Du übernimmst eine zentrale Rolle in einem dynamischen Umfeld und gestaltest aktiv die Sicherheitsstrategie mit.Was solltest du mitbringen?Du bringst einen erfolgreich abgeschlossenen Hochschulabschluss oder eine vergleichbare...
-
Principle Consultant Cyber Sec
vor 20 Stunden
Frankfurt am Main, Hessen, Deutschland Barclay Simpson VollzeitNow Hiring: Cyber Security, Technology Risk & IT Audit ConsultantsA boutique consultancy, specialising in advisory services for highly regulated sectors, including Pharmaceuticals, Financial Services, and Defence has secured a number of significant new engagements. To support this growth, we are expanding our Cyber Security, Technology Risk, and IT Audit...
-
Triage Cyber Security Analyst
Vor 2 Tagen
Frankfurt am Main, Hessen, Deutschland Arctic Wolf VollzeitOn-site, Frankfurt/DeutschlandBei Arctic Wolf navigieren wir nicht einfach nur die Welt der Cybersicherheit – wir gestalten sie neu. Unser globales Team aus engagierten Pack-Mitgliedern treibt Innovationen voran und setzt jeden Tag neue Branchenstandards.Unser Erfolg spricht für sich: Wir wurden in dieForbes Cloud 100, dieCNBC Disruptor 50, dieFortune...