Cyber Security Analyst
Indexed description
Bruker is seeking a Cyber Security Analyst to join our Global Information Security Operations team. This role is responsible for monitoring, detecting, investigating, and responding to cybersecurity threats across Bruker's global environment. The analyst will play a key role in protecting enterprise systems, supporting incident response activities, improving security monitoring capabilities, and collaborating with global IT and business teams to strengthen the organization's security posture.
Responsibilities
Key Responsibilities
- Monitor and analyze security alerts generated from Microsoft Defender XDR, Microsoft Sentinel, and other security platforms.
- Investigate security incidents and coordinate containment, eradication, and recovery activities.
- Conduct threat hunting activities using MITRE ATT&CK methodologies and threat intelligence sources.
- Analyze endpoint, identity, cloud, email, and network telemetry to identify malicious activity.
- Perform phishing investigations and support user awareness initiatives.
- Develop and improve detection rules, analytics, and SOC monitoring use cases.
- Support digital forensic investigations and root cause analysis efforts.
- Collaborate with IT infrastructure, cloud, networking, and compliance teams during incident response activities.
- Contribute to SIEM tuning, automation, and continuous SOC process improvements.
- Create and maintain incident reports, operational metrics, and executive summaries.
- Participate in on-call and major incident response activities as required.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field.
- 3-5 years of cybersecurity, SOC, incident response, or threat detection experience.
- Hands-on experience with:
- Microsoft Defender XDR
- Microsoft Sentinel
- Kusto Query Language (KQL)
- SIEM technologies
- Incident Response processes
- Threat Hunting methodologies
- Knowledge of MITRE ATT&CK and Cyber Kill Chain frameworks.
- Experience investigating endpoint, identity, email, and cloud-based threats.
- Strong analytical and problem-solving skills.
- Excellent written and verbal communication skills.
- Experience securing Microsoft Azure environments.
- Knowledge of scripting or automation technologies (PowerShell, Python).
- Familiarity with SOAR solutions and security automation.
- Experience with digital forensics and malware analysis.
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- CompTIA Security+
- CompTIA CySA+
- GIAC Certified Incident Handler (GCIH) or equivalent certifications.
- Effective identification and response to cybersecurity incidents.
- Continuous improvement of detection and monitoring capabilities.
- Reduction of response times through automation and process optimization.
- Strong collaboration with global security and IT teams.
- Contribution to Bruker's overall cyber resilience strategy.
Bruker is an equal-opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search