SOC Onboarding & Integration Lead

AXA Group Operations
Madrid, Comunidad de Madrid
hace 3 semanas

Job Description

About AXA

As a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we’ve created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we’re nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you’ll feel like you belong, are included and can thrive. You’ll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.

About the entity

AXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.
We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.
We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.

At AXA Group Operations, we want to be recognized in three fields of action:
  • State-of-the-art Data Technology to drive customer experience
  • State-of-the-art Procurement & Sourcing to drive efficiency and better manage risks
  • High-Performing Global Team for stronger partnerships with AXA entities

Where will you be in the organization?

The division


You will join the Group Security division, defining the security standards to be applied by AXA entities, overseeing the overall security posture across the Group and providing centralized services to support entities (Crisis Management, Security Operations Centre, etc.).


Throughout AXA Group, the security community represents composed of 1000 security professionals, working daily to protect our customers, operations, brand and people. To achieve this, we have gathered our three security disciplines: Information Security, Physical Security and Operational Resilience.

Our main missions:
  • Monitor the Security Threat Landscape
  • Define and oversee Security Standards and Strategy implementation across the Group
  • Drive local security objectives with C-Level executive (COO, CIO, CTO, CFO…) of AXA entities
  • Ensure the security of Group Operations as an entity
  • Provide centralized security services and products to AXA entities

AXA Group Security is divided in 4 main blocks :

  • Corporate functions (Group Mandate) : Security Advisory and Standards, Security Governance, Security Risk & Assurance, Security Strategy and Awareness
  • CyberDefense (Group security services and products provider)
  • Group Operations Security (Security of the hosting entity)
  • Corporate Chief Security Officers (Oversight of entities’ security) : Corporate Centre, European Markets, International Markets


The department / team

Under the Group Security umbrella, the Cyber Defense department provides first-line defense services to protect, detect, and react to cyber threats and attacks, delivering IT Security Products. The Security Operations Center (SOC) is designed to prevent, detect, and respond to these threats.

About the job

Job purpose

As a Job title, your main objective is to
  • Security Monitoring and Detection
  • Security Incident Response
  • Threat Intelligence
The SOC encompasses two transversal services that enhance overall detection capabilities: Log Onboarding Factory and Use Case Factory.

Main missions

Your responsibilities include:
As part of the Log Onboarding Factory, SOC Onboarding & Integration Lead, you will be will be in charge of the following activities:

  • Leading the Log Onboarding Factory team, overseeing onboarding processes while performing individual contributor activities as outlined below.
  • Onboarding logs following logs onboarding guidelines and process
    • Identifying prerequisites for log sources to be onboarded (technology, versions, etc.)
    • Defining the connectors setup and ensuring the setup of all IP configurations
    • Requesting and following up on the opening of the necessary firewall flows
    • Providing guidance on configuring the source devices according to logging standard
    • Validating that events from log sources are received and troubleshooting when necessary
    • Communicating on the progress and blocking points
    • Identifying optimization opportunities within the log onboarding process, focusing on streamlining workflows and enhancing efficiency.
    • Exploring automation opportunities to improve the log onboarding process, reducing manual interventions and increasing accuracy.
  • Formalize and maintain documentation for log sources onboarding
    • For new technology, gather relevant information from the configuration guides related to the log sources technology and from the contacts managing the platform
    • Define based on the collected information with the Security Monitoring and Detection and Security Incident Response teams the relevant logs to be collected
    • Document and maintain the logging standards, the connectors configuration and the mapping tables
  • Manage the delivery of entities onboarding demands and ad-hoc projects
    • Drive end to end log onboarding demands/projects in coordination with entities, projects stakeholders, third party log onboarding team: understand the onboarding requirements, manage prioritisations and capacities
    • Ensure the delivery from the third-party log onboarding team is in line with the onboarding requirements including relevant documentation
    • Participate in demand requests and projects as a subject matter expert contributing to proposal and scoping, solution design
    • Onboarding logs following logs onboarding guidelines and process
  • Liaise with the SIEM Platform Management team to ensure continuous integration within AXA environment
    • Enable the information exchange and communication flow among the teams that implement SIEM Platform configuration change
    • Perform tracking and documentation of all the change activity (i.e. on-boarding, connector configuration adjustment, etc.)
    • Perform regular coordination to exchange information on the planned onboarding, identified issues, etc.
Expected skills & experience

We are looking for someone with the following experience and skills:

Experience

  • Experience in Information Security > 5 years
  • Experience in IT > 5 years
  • A Degree in Computing, IT or Engineering

Technical skills

  • Leadership skills to guide and inspire team members
  • Proven experience with SIEM technologies and log onboarding
  • Strong knowledge of Linux and Windows environments
  • Eagerness to learn and understand new technologies
  • Ability to function effectively in a matrix structure
  • Team player with a professional and positive approach
  • Strong "can-do" attitude and willingness to go the extra mile
  • Cross-cultural sensitivity and flexibility
  • Fluent in English

What we offer
We bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we’re committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.
Postular
Otras recomendaciones de empleo:

o9 Integration Lead

Mondelēz International
Madrid, Comunidad de Madrid
Ensure Support SLA’s are adhered a. Ensures accomplishment of Support Service Level Objectives and Key Performance Indicators...
hace 2 semanas

Lead Integration Engineer, Patient Monitoring - Iberia

Medtronic
Madrid, Comunidad de Madrid
At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity...
hace 3 semanas

Lead Integration Services Consultant

ADP
  • Set up complex tickets of global/regional scope in our...
  • Create test cases and cooperate with GTT (Global Testing...
hace 4 semanas

L&D Program Manager - International Sales Onboarding

Axon
Madrid, Comunidad de Madrid
  • Demonstrated experience managing the end-to-end project...
  • Ability to be a role-model for continuous learning...
hace 2 días

Customer Success Onboarding Advisor

Booksy
Andalucía
  • Experience in Customer Success/training/Account managment or...
  • You are customer-oriented and have excellent listening,...
hace 3 días