Celonis-posted 5 months ago
$134,000 - $180,000/Yr
Full-time • Entry Level
NY
1,001-5,000 employees

We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join us. This position will be part of the Celonis Global Cyber Defense Team (GCDT) and will cover the North America East Cost time zone. The GCDT is comprised of experienced Incident Response (IR) and Security Operations Center (SOC) personnel who work together closely to keep Celonis safe.

  • Assist in the development of processes and procedures to help improve detection and response capabilities
  • Assist with building out SOAR capabilities
  • Create and test Celonis Defense Procedures and IR Playbooks
  • Create Detection Use Cases
  • Document relevant incident information into the case management system, detailing the critical data for each incident to develop a historical record
  • Monitor the environment, SIEM, and other internal security tools for compliance violations, anomalous behavior, and potential attacks to respond to possible threats to the organization
  • Participate in shift turn over meetings between outgoing and incoming teams globally to pass along critical information and ensure any open cases are effectively transitioned
  • Perform initial analysis of all new alerts generated by correlation/alerting tools in addition to other external sources that will feed into the SIEM system and other security monitoring tools
  • Participate in on-call rotation
  • Familiarity with Application Security
  • Familiarity with Attack Frameworks
  • Familiarity with Cloud Platform Security
  • Familiarity with Container Security
  • Familiarity with Database Security
  • Familiarity with Email Security
  • Familiarity with Endpoint Security
  • Familiarity with Incident Response Frameworks
  • Familiarity with Incident Response Activities
  • Familiarity with Network Security
  • Familiarity with Social Engineering Techniques
  • Fundamental knowledge of Endpoint Detection & Response (EDR) Tooling
  • Fundamental knowledge of Log Analysis
  • Fundamental knowledge of Security Information & Event Management (SIEM) Tooling
  • Generous PTO
  • Hybrid working options
  • Company equity (RSUs)
  • Comprehensive benefits
  • Extensive parental leave
  • Dedicated volunteer days
  • Access to resources such as gym subsidies, counseling, and well-being programs
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service