совкомбанк технологии

Аналитик SOC L2

На протяжении 7 лет мы активно развиваем наш внутренний SOC — центр мониторинга и реагирования на инциденты информационной безопасности.

совкомбанк технологии На сервисе с: 06.10.26 04:02

Зарплата не указанаРоссияНовосибирскГибрид

На протяжении 7 лет мы активно развиваем наш внутренний SOC — центр мониторинга и реагирования на инциденты информационной безопасности.

Мы ищем аналитика по информационной безопасности, который будет развивать экспертизу по детектированию действий злоумышленников в SIEM-системе.

У нас ты получишь новый опыт не только в реагировании на инциденты ИБ, но и в автоматизации, разработке контента SOC и форензике.

Задачи:

  • Мониторинг и анализ событий информационной безопасности от различных источников в SIEM системе;
  • Реагирование на инциденты SOC (2 линия);
  • Проведение расследований инцидентов ИБ;
  • Мониторинг актуальных угроз информационной безопасности;
  • Разработка планов реагирования на инциденты ИБ;
  • Разработка автотестов для проверки работоспособности контролей.

Наши ожидания от кандидата:

  • Высшее образование в направлении «информационная безопасность» или «информационные технологии»;
  • Опыт работы в SOC от 1 года;
  • Знание принципов работы AD, DHCP, DNS;
  • Опыт работы в SIEM и написания SQL-запросов;
  • Опыт анализа логов от различных систем, умение их правильно интерпретировать;
  • Знание процесса\методологии реагирования на инциденты ИБ;
  • Знание тактик и техник злоумышленников, применение матрицы Mitre ATT&CK, понимание KillChain;
  • Знание операционных систем Windows/Unix.

Будет плюсом:

  • Опыт работы с SOAR;
  • Опыт работы с системами ИБ (АВЗ, EDR, IPS\IDS, средства анализа защищенности, прокси, антиспам);
  • Опыт использования ИИ для решения повседневных задач;
  • Опыт в банковской или финансовой сфере;
  • Опыт написания скриптов, программирования;
  • Опыт администрирования операционных систем Windows/Unix;
  • Опыт в форензике.

Мы предлагаем:

  • Официальное оформление в аккредитованную IT-компанию;
  • График работы: 5/2, выходные: суббота, воскресенье;
  • Комфортные офисы – у нас уютные рабочие пространства, комнаты отдыха с настольным теннисом, кикером, плойкой и другими плюшками;
  • Развитие профессиональной экспертизы: ты сможешь обучаться и посещать конференции и митапы за счёт компании;
  • Классная команда – мы за радость общения и дружбу в коллективе;
  • Комфортный офис – у нас уютные рабочие пространства, комнаты отдыха с настольным теннисом, кикером, плойкой и другими плюшками;
  • Погружение в ИИ-культуру – взаимодействуем с искусственным интеллектом на постоянной основе и обучаем этому новичков, предоставляем бесплатных ИИ-помощников;
  • Коворкинги в Сочи и на Алтае – туда можно отправиться поработать и отдохнуть в режиме 4/3 за счёт Банка;
  • Более 50 социальных программ – ДМС со стоматологией и страхованием от несчастных случаев и болезней, изучение английского, софинансирование летнего, зимнего и тематического отпуска, уникальные условия по продуктам и услугам Банка;
  • Забота о детях: мы проводим праздники и экскурсии для детей наших сотрудников, софинансируем частный детский сад, отдых в лагере и подготовку к экзаменам;
  • Много спорта: у нас есть клубы и секции, можно заниматься любым спортом за счёт Банка и участвовать в корпоративных турнирах и чемпионатах. Также мы софинансируем коллегам абонементы в фитнес-клубы;
  • Вовлеченность, комфорт и свобода. У нас минимум бюрократии, нет дресс-кода, гибкое начало и завершение рабочего дня;
  • Самая яркая корпоративная культура – летние IT-фесты, путешествия по России и за её пределами!

Похожие вакансии Кибербезопасность

Сайты компаний
R

Information Security Engineer (AppSec)

revolutНа сервисе с: 05.10.26 22:17
Зарплата не указанаПольшаИспанияПортугалияОАЭРумыния

About Revolut

People deserve more from their money. More visibility, more control, and more freedom. Since 2015, Revolut has been on a mission to deliver just that. Our powerhouse of products — including spending, saving, investing, exchanging, travelling, and more — help our 80+ million customers get more from their money every day.

As we continue our lightning-fast growth,‌ 2 things are essential to our success: our people and our culture. In recognition of our outstanding employee experience, we've been certified as a Great Place to Work™. So far, we have 13,000+ people working around the world, from our offices and remotely, to help us achieve our mission. And we're looking for more brilliant people. People who love building great products, redefining success, and turning the complexity of a chaotic world into the simplicity of a beautiful solution.

About the role

Our Technology team builds the systems and experiences that keep Revolut moving. From the infrastructure behind our innovative app to the features used by millions of people around the world, they bring sharp thinking, speed, and a focus on meaningful impact to everything they do.

We’re looking for an Application Security Engineer to keep our software safe from threats and vulnerabilities. You'll be designing and building apps with security in mind while testing, monitoring, and protecting our systems along the way.

Up to shape what's next in finance? Let's get in touch.

What you'll be doing

  • Performing security assessments on product designs, mobile apps (iOS/Android), web applications, and APIs
  • Participating in Red Team missions and threat-led testing scenarios to simulate real-world attacker behaviours and validate detection and response capabilities
  • Leading and conducting penetration testing across applications, infrastructure, and APIs, using a mix of manual techniques and automated tools
  • Managing and evolving our private bug bounty programme, validating submissions, collaborating with researchers, and ensuring timely resolution of valid findings
  • Contributing to and influencing cloud security posture, identifying misconfigurations and working with DevOps to implement best practices across GCP and AWS
  • Partnering closely with engineering teams to embed security into the software development lifecycle, offering guidance on secure architecture and threat modelling
  • Developing and enforcing internal AppSec standards, policies, and practices aligned with OWASP, NIST, and industry benchmarks
  • Continuously researching and evaluating emerging threats, tools, and technologies to stay ahead of the evolving threat landscape
  • Contributing to internal security training sessions, knowledge sharing, and mentoring of junior team members

What you'll need

  • 3+ years of hands-on experience in application security, penetration testing, or a related security engineering role
  • A solid understanding of common web, mobile, and API vulnerabilities (e.g., OWASP Top 10, CWE) and practical approaches to identify and remediate them
  • Experience conducting code reviews, design reviews, and threat modelling for modern application architectures
  • Familiarity with DevSecOps practices and integrating security tooling into CI/CD pipelines
  • Working knowledge of authentication, authorisation, session management, and cryptographic best practices
  • Proficiency with security tools, such as Burp Suite, MobSF, Frida, or custom scripts, for dynamic and static analysis
  • A basic understanding of cloud security principles and experience working with GCP or AWS environments
  • Great communication skills with the ability to collaborate effectively with Engineering, Product, and DevOps teams
  • A proactive mindset with a passion for solving complex problems and driving secure engineering practices
  • The ability to work independently while also being a trusted team player in a fast-paced environment

Nice to have

  • Experience participating in Red Team exercises, managing bug bounty programmes, or contributing to open-source security tools or research

Compensation range

  • Krakow: PLN18,200 - PLN22,500 gross monthly*
  • Poland: PLN18,200 - PLN22,500 gross monthly*
  • Other locations: Compensation will be discussed during the interview process

*Final compensation will be determined based on the candidate's qualifications, skills, and previous experience

Building a global financial super app isn’t enough. Our Revoluters are a priority, and that’s why in 2021 we launched our inaugural D&I Framework, designed to help us thrive and grow everyday. We're not just doing this because it's the right thing to do. We’re doing it because we know that seeking out diverse talent and creating an inclusive workplace is the way to create exceptional, innovative products and services for our customers. That’s why we encourage applications from people with diverse backgrounds and experiences to join this multicultural, hard-working team.

Important notice for candidates:

Job scams are on the rise. Please keep these guidelines in mind when applying for any open roles.

• Only apply through official Revolut channels. We don’t use any third-party services or platforms for our recruitment.

• Always double-check the emails you receive. Make sure all communications are being done through official Revolut emails, with an @revolut.com domain.

We won't ask for payment or personal financial information during the hiring process. If anyone does ask you for this, it’s a scam. Report it immediately.

By submitting this application, I confirm that all the information given by me in this application for employment and any additional documents attached hereto are true to the best of my knowledge and that I have not wilfully suppressed any material fact. I confirm I have disclosed if applicable any previous employment with Revolut. I accept that if any of the information given by me in this application is in any way false or incorrect, my application may be rejected, any offer of employment may be withdrawn or my employment with Revolut may be terminated summarily or I may be dismissed. By submitting this application, I agree that my personal data will be processed in accordance with Revolut's Candidate Privacy Notice

Сайты компаний
R

Information Security Analyst (Operations)

revolutНа сервисе с: 05.10.26 22:16
Зарплата не указанаПольшаИспания

About Revolut

People deserve more from their money. More visibility, more control, and more freedom. Since 2015, Revolut has been on a mission to deliver just that. Our powerhouse of products — including spending, saving, investing, exchanging, travelling, and more — help our 80+ million customers get more from their money every day.

As we continue our lightning-fast growth,‌ 2 things are essential to our success: our people and our culture. In recognition of our outstanding employee experience, we've been certified as a Great Place to Work™. So far, we have 13,000+ people working around the world, from our offices and remotely, to help us achieve our mission. And we're looking for more brilliant people. People who love building great products, redefining success, and turning the complexity of a chaotic world into the simplicity of a beautiful solution.

About the role

Our Information Security team protects Revolut's systems, data, and people. They combine technical expertise with a proactive, risk-based mindset to stay ahead of threats and keep our technology and customers secure at every step.

We're looking for an Information Security Analyst who'll be responsible for building, managing, and operating the detection and response capabilities of security-related events that impact IT systems. You'll focus on understanding and proactively preventing threats to IT-based environments.

Up to shape what's next in finance? Let's get in touch.

What you’ll be doing

  • Investigating and analysing security alerts to determine the nature and severity of potential threats
  • Developing detection and response procedures based on security frameworks
  • Designing and deploying security controls for cloud-native environments
  • Creating and reporting actionable metrics regarding detection and response
  • Assessing logging, monitoring infrastructure, and remediating capability gaps
  • Developing forward-thinking security policies and procedures

What you'll need

  • 3+ years of experience in a cybersecurity-related role
  • Fundamental knowledge of information, cloud, and network security
  • Proficiency with Linux, macOS, and Windows operating systems, plus a basic understanding of forensics for these systems
  • Engineering experience in at least one general-purpose language, preferably Python
  • Proficiency with common security tooling, such as SIEM (ElasticSearch, Kibana), EDR, WAF, IDP, etc.
  • Experience with security investigations and using cloud infrastructure providers (Google Cloud, AWS, or Azure
  • Fundamental knowledge of AI and LLM concepts (prompt engineering, MCP, agents, skills, etc.) to leverage AI ecosystems for security automation and analysis
  • An understanding of key risks associated with AI

Nice to have

  • Familiarity with version control, security CI/CD processes, and infrastructure-as-code environments
  • A bachelor's degree or higher in computer science, cybersecurity, information technology, or related field

Compensation range

  • Poland: PLN15,300 - PLN20,000 gross monthly*
  • Other locations: Compensation will be discussed during the interview process

*Final compensation will be determined based on the candidate's qualifications, skills, and previous experience

Building a global financial super app isn’t enough. Our Revoluters are a priority, and that’s why in 2021 we launched our inaugural D&I Framework, designed to help us thrive and grow everyday. We're not just doing this because it's the right thing to do. We’re doing it because we know that seeking out diverse talent and creating an inclusive workplace is the way to create exceptional, innovative products and services for our customers. That’s why we encourage applications from people with diverse backgrounds and experiences to join this multicultural, hard-working team.

Important notice for candidates:

Job scams are on the rise. Please keep these guidelines in mind when applying for any open roles.

• Only apply through official Revolut channels. We don’t use any third-party services or platforms for our recruitment.

• Always double-check the emails you receive. Make sure all communications are being done through official Revolut emails, with an @revolut.com domain.

We won't ask for payment or personal financial information during the hiring process. If anyone does ask you for this, it’s a scam. Report it immediately.

By submitting this application, I confirm that all the information given by me in this application for employment and any additional documents attached hereto are true to the best of my knowledge and that I have not wilfully suppressed any material fact. I confirm I have disclosed if applicable any previous employment with Revolut. I accept that if any of the information given by me in this application is in any way false or incorrect, my application may be rejected, any offer of employment may be withdrawn or my employment with Revolut may be terminated summarily or I may be dismissed. By submitting this application, I agree that my personal data will be processed in accordance with Revolut's Candidate Privacy Notice

hh.ru
Зарплата не указанаРоссияМоскваОфис

Построй свою успешную карьеру вместе с нами и стань частью команды, которая вносит значимый вклад в развитие страны!


Межрегиональное контрактное управление Федерального казначейства – вновь созданный федеральный орган исполнительной власти предлагает присоединиться к нашей дружной команде профессионалов.

Мы предлагаем стабильную заработную плату, разнообразную общественную, культурную и спортивную жизнь.


Задачи:

- Решать технические и методические вопросы, связанные с програмными, аппаратными и физическими средствами защиты электронной информации от несанкционированного доступа и от заражения вирусами;

- Участвовать в выявлении технических каналов утечки информации и возможности несанкционированного доступа и принимать соответствующие меры по защите информации;

- В соответствии с нормативно-техническими документами участвовать в проведении специальных проверок и аттестации рабочих мест и выделены помещений;

- Участвовать в проведении работ по защите информации, содержащей государственную тайну, и информацию ограниченного распространения.


Наши требования:

- Опыт работы не менее 3 лет в области технической защиты информации, а также опыт работы в Федеральных и региональных органах исполнительной власти и других государственных структура;

- Опыт в подготовке проектов нормативных правовых актов и проектов управленческих решений, заключений, докладных записок, затрагивающих вопросы, связанные с информационной безопасностью и технической защитой информации;

- Отсутствие ограничений к оформлению допуска к государственной тайне по 2 форме. Наличие действующего допуска по 2 форме - приветствуется.


Знания:

- ФЗ номер 5485-1 О государственной тайне;

- ФЗ номер 149 Об информации, информационных технологиях и о защите информации;

- ФЗ номер 390 О безопасности;

- Указ президента номер 351 О мерах по обеспечению информационной безопасности РФ при использовании информационно-телекамуникационных сетей международного информационного обмена

и иное.


Какие условия мы предлагаем:

- Федеральная государственная гражданская служба Российской Федерации;

- Социальный пакет в соответствии с Федеральным законом от 27.07.2004 № 79-ФЗ "О государственной гражданской службе";

- График 5/2 с 09:00 до 18:00;

- Ненормированный рабочий день;

- Перспектива личного, профессионального и карьерного роста;

- Стабильная заработная плата;

- Заработная плата по итогам собеседования;

- Шаговая доступность от метро.

HireSeeker собирает вакансии со всех площадок и присылает только релевантные. Бесплатно.