Cybersecurity Operations Specialist II
Lincoln Electric is the world leader in the engineering, design, and manufacturing of advanced arc welding solutions, automated joining, assembly and cutting systems, plasma and oxy-fuel cutting equipment, and has a leading global position in brazing and soldering alloys. Lincoln is recognized as the Welding Expert™ for its leading materials science, software development, automation engineering, and application expertise, which advance customers' fabrication capabilities to help them build a better world. Headquartered in Cleveland, Ohio, Lincoln Electric is a $4.2B publicly traded company (NASDAQ:LECO) with over 12,000 employees around the world, with operations in 71 manufacturing and automation system integration locations across 21 countries and maintains a worldwide network of distributors and sales offices serving customers in over 160 countries.
Location: Guarulhos, Remote - Brazil
Employment Status: Salary Full-Time
Function: Information Technology
Req ID: 26131
Job Responsibilities
- Conduct research on current threats and trends and lead response efforts.
- Design, maintain, and document detection opportunities, leveraging Threat Intelligence and industry best practices.
- Design, implement, and manage the SIEM infrastructure, including data collection, normalization, and correlation rules across various security tools and systems.
- Develop customized dashboards and reports to visualize security trends and key performance indicators (KPIs).
- Fine-tune SIEM alerts to minimize false positives and effectively identify potential threats.
- Integrate new data sources into the SIEM platform to enhance visibility.
- Monitor SIEM alerts for suspicious activities and conduct in-depth investigations to determine the root cause of incidents.
- Classify security alerts, prioritize critical incidents, and escalate to the appropriate teams as needed.
- Perform forensic analysis on security events to gather evidence and support incident response activities.
- Implement corrective actions to mitigate security threats and vulnerabilities.
- Work closely with other security teams, including network services, applications, product teams, and incident responders, to share information and coordinate response actions.
- Communicate security risks and findings effectively to both technical and non-technical audiences.
- Manage relationships with vendors related to cybersecurity products and services.
- Collaborate with other IT teams to ensure the security of company systems and data.
- Stay up to date on the latest cybersecurity trends, threats, and technologies.
- Provide training and guidance to team members on SIEM and threat-hunting techniques.
Job Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related fields (preferred).
- Minimum of 5 years of experience in cybersecurity.
- Strong understanding of threat detection techniques and incident response procedures.
- Demonstrated expertise in designing, configuring, and deploying SIEM systems, with specialization in Azure Sentinel, for security event collection, analysis, and response.
- In-depth knowledge of Azure services, including Azure Sentinel, Azure Monitor, and Log Analytics.
- Experience in log analysis, including modeling, patterns, and correlation.
- Familiarity with common security frameworks, such as CIS, NIST, and GDPR.
- Ability to assess complex security environments and develop effective rules, queries, and alerts.
- Proficiency in scripting and automation, including KQL, Python, and PowerShell.
- Strong understanding of the diamond model, MITRE ATT&CK, cyber kill chain, and threat intelligence terminology.
- Experience in managing and monitoring SIEM systems and threat intelligence.
- Comprehensive knowledge of IT and cybersecurity technologies, with previous experience in IT support, such as networking, SOC, or server specialist roles (preferred).
- Solid knowledge of cybersecurity best practices and standards.
- Excellent communication and interpersonal skills in English.
- Ability to work independently and as part of a team.
- Relevant certifications, such as CISSP, CISM, or GIAC, are highly desirable.
Lincoln Electric is an Equal Opportunity Employer. We are committed to promoting equal employment opportunity for applicants, without regard to their race, color, national origin, religion, sex (including pregnancy, childbirth, or related medical conditions, including, but not limited to, lactation), sexual orientation, gender identity, age, veteran status, disability, genetic information, and any other category protected by federal, state, or local law.
Job Segment:
Welding, Computer Science, Fabrication, Manufacturing, Technology