SOC Detection Expert

il y a 3 jours


Paris, France AXA Group Operations Temps plein

SOC Detection Expert Join to apply for the SOC Detection Expert role at AXA Group Operations. Job Purpose Security Operations Center (SOC) delivers the following capabilities to AXA entities worldwide: Security Incident Detection, Threat Hunting, Security Incident Response, and Threat Intelligence. Main Mission Adversary Emulation Capability Leadership Design and implement automated attack scenarios to validate SOC readiness under realistic threat conditions. Provide expert support to SOC teams, Use Case Factory, and AXA entities by incorporating their needs and feedback into platform capabilities and scenario design. Lead the definition, delivery, and hands‑on development of new platform features, guiding the team’s architectural decisions and prioritising enhancements to ensure the solution matures in accuracy, scalability, and security. Continuously integrate insights gained from adversary emulation into enhanced detection logic. Detection Engineering: Design, implement, and optimise detection use cases, rules, and algorithms within SIEM, EDR, and other detection platforms. Documentation & Knowledge Sharing: Document detection strategies, rules, and processes, and share knowledge with SOC teams to improve overall operational readiness. Metrics & Reporting: Develop and report on key performance indicators (KPIs) related to detection efficiency, effectiveness, and coverage to senior management. Technology Evaluation: Stay abreast of emerging technologies and trends in cybersecurity, leading the evaluation and implementation of new tools and techniques that enhance detection capabilities. Expected Skills & Experience Experience Information Security – > 2 years DevSecOps – > 2 years Technical Skills Advanced Python scripting and development capabilities (familiarity with Django is a plus) Proven track record in adversary emulation and security control validation Solid understanding of detection engineering concepts and MITRE ATT&CK Familiarity with different security attack vectors and means of protection Proficiency in Microsoft Sentinel and Kusto Query Language (KQL) Strong problem‑solving skills with the ability to troubleshoot and resolve complex issues Ability to work independently and as part of a team in a fast‑paced environment Excellent written and verbal communication skills (Fluent in English) Education University degree in information security or equivalent work experience What We Offer We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued. About the Entity AXA is becoming a sustainable tech‑led company. At AXA Group Operations we drive the transformation through technology and innovation, operating across 17 countries with highly qualified teams that leverage technology, data, sourcing, security, and investment allocation globally. About AXA As a world‑leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we have created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect for each other, our customers and the communities around us. Other Information Seniority level: Not Applicable Employment type: Full‑time Job function: Other Industries: IT Services and IT Consulting Location: Paris, Île‑de‑France, France Referral incentive: Referrals increase your chances of interviewing at AXA Group Operations by 2x #J-18808-Ljbffr


  • SOC Detection Expert

    il y a 2 semaines


    Paris, Île-de-France AXA France Temps plein

    Job Description:About the jobJob purposeSecurity Operations Center (SOC) delivers the following capabilities to the AXA entities around the globe: Security Incident Detection, Threat Hunting, Security Incident Response and Threat Intelligence.Highly skilled SOC Detection Expert with a deep understanding of detection engineering is responsible for designing,...

  • Analyste SOC

    il y a 7 jours


    Paris, France EXPERT LINE Temps plein

    **Expert Line recrute (01) Analystes SOC H/F en CDI** **Qui sommes-nous ?**: Expert Line est un des acteurs français du conseil en nouvelles technologies. Spécialisé dans l’intégration et la sécurisation des systèmes d’information. Notre expertise nous permet d’accompagner nos clients dans toutes les étapes de leurs projets en s’adaptant à...

  • Analyste SOC

    il y a 7 jours


    Paris, France EXPERT LINE Temps plein

    Expert Line recrute (03) Analystes SOC H/F en CDIQui sommes-nous ? : Expert Line est un des acteurs français du conseil en nouvelles technologies. Spécialisé dans l’intégration et la sécurisation des systèmes d’information ️.Notre expertise nous permet d’accompagner nos clients dans toutes les étapes de leurs projets en s’adaptant à des...


  • Paris, France AXA Group Operations Temps plein

    A leading global insurance firm is seeking a SOC Detection Expert in Paris, Île-de-France. In this full-time role, you will design and implement automated attack scenarios, optimize detection use cases, and share knowledge with SOC teams. Candidates should have a university degree in information security with 2+ years of experience in information security...

  • Expert SOC Soar

    il y a 10 heures


    Paris, France CyberTee Temps plein

    Pour l?un de nos clients grand compte situé en IDF, dans le cadre d?une mission longue durée permettant du télétravail, nous recherchons un Expert SOC SOAR. Profil recherché: Expert SOC Justifier d?une expérience dans un contexte international Bonne connaissance des environnements cloud Connaissance sur la partie vulnérabilités et tests...


  • Greater Paris Metropolitan Region, France DGSE - Direction Générale de la Sécurité Extérieure Temps plein

    Ingénieur en détection (SOC) (H/F)Introduction Le poste est situé à Paris.Domaine métier CyberVotre environnement de travailAu cœur de l’équivalent d’une DSI œuvrant pour la DGSE et la communauté du renseignement, vous travaillerez au sein du Security Operation Center (SOC), responsable de la supervision de sécurité des SI de la DGSE. Vous...

  • Analyste SOC N3

    il y a 7 jours


    Paris, France CyberTee Temps plein

    Dans le cadre d'une mission longue durée nous sommes à la recherche d'un Analyste SOC N3. **? Missions**: Analyse complète des incidents de sécurité (détection à clôture) Définition et validation des plans de remédiation Amélioration continue des processus de détection Rôle d?expert technique SOC N3 Interaction avec les équipes techniques et...


  • Paris, France IT link Temps plein

    **L’ESSENTIEL**: - Freelance / Indépendant- Media / Presse- Partiellement éligible au télétravail- PARIS**COMPÉTENCES**: une expérience significative dans un SOC, CERT ou CSIRT **PROFIL**: BAC +5 - 2 ans *** **À PROPOS**: IT Link, Entreprise de Services du Numérique spécialiste des systèmes connectés. Depuis **35 ans**, IT Link innove aux...

  • Analyste SOC N2

    il y a 2 jours


    Paris, France NEXTON Temps plein

    **Description de l'entreprise** Qui sommes-nous ?** Rejoindre NEXTON, c'est intégrer une entreprise où convergent l'esprit d'un cabinet de conseil, la créativité d'une agence et la dynamique d'une ESN ! Grâce à notre expertise, nous accompagnons des clients grands comptes et des pure players tels que SNCF, Orange, et BNP Paribas dans leurs stratégies...

  • Expert SOC

    il y a 11 heures


    Paris, France Skillspark AB Temps plein

    **Start** *** **ASAP** **Duration** *** **> 12 months** emagine recherche pour l’un de ses clients finaux un Expert SOC: Démarrage : Immédiat Durée : 12 mois + Lieu : Paris + télétravail Missions: - Analyse des alertes SOC à activer sur les abonnements Azure et les comptes AWS - Analyser les playbooks et paramètres identifiés par le SOC (risque...