CSIRT Analyst - Cybersecurity
- Employment type
- Contract
- Location
- Grand-Lancy
- Company
- Experis, 1212 Grand-Lancy
- First posted
Experis SA, the IT branch of ManpowerGroup, is a leader in the recruitment of specialized IT profiles. We offer flexible solutions: temporary missions, permanent placements, project management, and professional training. Our expertise covers digital transformation, cybersecurity, cloud, infrastructure, and more. Thanks to our global reach combined with a pragmatic and personalized approach, we effectively support professionals and companies in achieving their goals.
CSIRT Analyst - Cybersecurity
Experis SA, the IT branch of ManpowerGroup, is a leader in the recruitment of specialized IT profiles. We offer flexible solutions: temporary missions, permanent placements, project management, and professional training. Our expertise covers digital transformation, cybersecurity, cloud, infrastructure, and more. Thanks to our global reach combined with a pragmatic and personalized approach, we effectively support professionals and companies in achieving their goals.
We are looking for an experienced CSIRT Analyst to join a Cyber Defense team within a large international financial organization based in Geneva.
This strategic mission, with an initial duration of one year (renewable), aims to strengthen cyber incident response capabilities within a highly sensitive and regulated environment.
Your responsibilities
In this key role within the CSIRT, you will be required to:
Ensure CSIRT operational activities: detection, qualification, investigation, and remediation of security incidents.
Lead cyber crisis cells: activation of the emergency plan, multi-team coordination.
Produce technical and executive reports for management.
Conduct complex investigations and document the actions taken.
Perform Threat Intelligence monitoring, including the analysis of attack techniques (MITRE ATT&CK).
Participate in vulnerability management and patch management.
Contribute to continuous improvement: CSIRT playbooks, lessons learned, best practices.
Take part in table-top exercises and internal/external audits.
100% on-site position due to the sensitivity of activities (no teleworking).
Required skills:
Professional skills
Proven experience in cyber incident management and incident response (CSIRT/SOC).
Expertise in security investigation (logs, suspicious activities, attack chain).
Knowledge of the Swiss regulatory framework (FINMA, LPD) is an asset.
Knowledge or mastery of DLP solutions is a plus.
Technical skills
Mastery of SIEM / EDR / SOAR solutions.
Very good skill in log analysis.
Cloud knowledge (Azure, AWS, or equivalent).
Scripting: Python, Bash, PowerShell.
Good notions in malware analysis and forensics is an asset.
Knowledge in pentest is an asset.
Interpersonal skills
Ability to coordinate technical and business teams.
Ease in communication and pedagogy.
High stress resistance and ability to make decisions in critical situations.
Leadership in crisis cells.
Team spirit and sense of sharing.
Education & experience
Master's (or equivalent) in cybersecurity / computer science.
7+ years of experience in cyber incident response.
Certifications appreciated: OSCP, CISSP, GCIH, GCFA, CHFI, CEH, ISO 27035, SANS FOR508-
Languages
French & English: professional level required.
Why join us?
Strategic project within a large international organization.
High-level cyber environment, exposed to complex issues.
Dynamic team, in continuous improvement, with a strong security culture. jpid68341fcjm jpit0832jm jpiy26jm
Automatically translated from the original.
Posted 1 week ago