Cyber Security Lead-Cyber Security Analyst
Posted about 4 hours ago
Job Description
Role Overview
- L3 Cybersecurity Operations Coordinator acting as a CSIRT/SOC relay between local business teams and global CDOC
- Ensures rapid incident response, escalation management, and stakeholder coordination
- Bridges business, functional, and technical cybersecurity operations
Key Responsibilities
Cybersecurity Operations & Coordination
- Act as primary cybersecurity contact for local sites
- Coordinate with global SOC/CDOC teams for operational alignment
- Ensure proximity-based support for critical assets and business priorities
Incident Response & Escalation Management
- Handle L3 incident escalation and complex case coordination
- Lead incident triage, mitigation tracking, and remediation follow-up
- Support end-to-end incident lifecycle (detection → containment → recovery)
Advanced Incident Handling (L3 Support)
- Manage critical and non-standard cybersecurity incidents
- Lead containment, threat eradication, and system restoration
- Validate secure remediation and recovery actions
Crisis & Major Incident Management
- Support CSIRT-led crisis management during major cyber incidents
- Coordinate cross-functional response during high-impact events
Stakeholder Management & Communication
- Act as bridge between technical teams and business stakeholders
- Ensure bi-directional communication (site ↔ SOC/CDOC)
- Provide status updates, impact analysis, and action visibility
Requirements Translation & Solution Alignment
- Translate business/security requirements into technical controls
- Support global cybersecurity solution alignment with local constraints
Continuous Improvement & Process Optimization
- Drive SOC/CDOC process improvements and operational efficiency
- Promote best practices, knowledge sharing, and service enhancement
Key Skills & Competencies
- SOC / CDOC Operations
- CSIRT Coordination
- Incident Response (L3 / Advanced)
- Cyber Incident Management & Escalation
- Threat Mitigation & Remediation
- Crisis Management
- Stakeholder Management
- Security Operations (SIEM, Sentinel, Logic Apps)
- Risk & Impact Alignment
- Process Improvement & Automation
Total Experience Expected: 08-10 years
Qualifications
- Engineering graduate - preferably B.E. /B tech in I.T or Computer Engineering
Mandatory Certification
- SC-200: Microsoft Security Operations Analyst
- BLT1: Blue Team Level 1
- GCIH or GCFE/GCFA (or equivalent to IR credential)
Good to have
- CISSP/CISM
Tools & Technologies
- SIEM platform: Microsoft Sentinel, QRadar or Splunk/ELK
- EDR platform: CrowdStrike and/or Defender
- Large enterprise or critical infrastructure with IT/OT boundaries
Good to have
Logic Apps, SOAR platforms, Threat intel platforms (MISP / OpenCTI)
Automotive or manufacturing, OT/ICS security, experience in 24/7 SOC
Additional Information
Support Hours 24x7 to be followed
At our organization, we are committed to fighting against all forms of discrimination. We foster a work environment that is inclusive and respectful of all differences.
All of our positions are open to people with disabilities.
Other open roles at Sopra Steria(6)
Sopra Steria, a European Tech leader recognised for its consulting, digital services and software development, helps its clients drive their digital transformation to obtain tangible and sustainable benefits.
Key team members

Bjørn-Ovin Wivestad

Laurent Gautier

Giles Harvey

Francis Galliano
Jobr aggregates jobs directly from company career portals — no middlemen. Our team applies on your behalf with AI-tailored resumes, reviewed by a human before submission.