Trouvez votre prochaine offre d’emploi ou de mission freelance Endpoint detection and response (EDR)

Votre recherche renvoie 84 résultats.
Freelance
CDI

Offre d'emploiIngénieur Sécurité SIEM

VISIAN
Publiée le
Ansible
Java
Python

1 an
Paris, France
ContexteL'équipe de sécurité opérationnelle PSIRT (Production Security Incident Response Team) EMEA est en charge des missions suivantes pour l'ensemble des infrastructures de production d'une grande institution financière Wholesale EMEA : Intégration, évolution et maintien en condition opérationnelle des architectures de collecte des logs et de détection d'incident de sécurité (SIEM/SOC Orchestrator) Mise en place et évolution permanente des use cases / règles de corrélation Analyse et réponse aux incidents de sécurité Threat Hunting Investigation / Forensics Intégration, évolution et maintien en conditions opérationnelles du Global Security Dashboard MissionsCréation, test, mise en production et maintien des règles de détection d'incident de sécurité Création et mise en place des tests de monitoring des use cases de détection en Powershell Threat Hunting, analyse signaux faibles sur BigData (ELK) et développement de use cases SIEM (Pentaho/Python/Java) Interactions régulières avec l'équipe PSIRT Automation pour la mise en place d'une solution « CSIRT Analysis Assistant » via l'intégration de modèles de LLM Étude des solutions innovantes en lien avec l'IA dans le cadre de l'amélioration des capacités de détection ou de qualification des alertes, réalisation des « proof of concept » et implémentation Mise en place de scripts (ansible, sql, python, java, powershell, sql) pour récupération des informations ou déploiement des composants sur le parc de serveurs et workstations Outils & EnvironnementConnaissances sécurité concernant l'infrastructure réseau, les environnements UNIX et Windows, les bases de données, les outils de déploiement de package, les outils de sécurité (contrôle de ports USB, chiffrement de disques durs) Écriture de scripts en shell, python, Java, powershell, ansible, SQL Connaissance du fonctionnement des LLMs, prompt engineering
Voir cette offre
Freelance

Mission freelanceSC Security Platform Engineer - 12 Month Contract

LA International Computer Consultants Ltd
Publiée le

12 mois
GU14 7SR, Rushmoor, England, United Kingdom
Security Platform Engineer Locations: London / Corsham / Farnborough As a Security Platform Engineer, you will play a role in designing, building, and managing cloud-native security platforms with a strong emphasis on Kubernetes-based environments. You'll be at the intersection of security and engineering, developing scalable tooling, automating security controls, and enabling robust detection and response capabilities across our cloud infrastructure. This is a hands-on, engineering-centric role that requires deep technical expertise in cloud environments, Kubernetes security, and platform automation. Responsibilities ● Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS). ● Develop and implement security monitoring and logging strategies. ● Investigate and analyse security incidents, including identifying root causes, determining the scope of impact, and taking appropriate containment and remediation actions. ● Perform forensic analysis to identify and investigate suspicious activity. ● Automate security tasks and workflows to improve efficiency and effectiveness. Preferred Qualifications (PQs) ● Certifications in Security (e.g., GSEC, CISSP, CISM, OSCP). ● Experience with Kubernetes threat detection and anomaly detection. ● Familiarity with service mesh security concepts (e.g., Istio, Linkerd) and workload identity. ● Background in detection engineering, logging pipeline development, or SIEM tuning in containerised environments. ● Contributions to security-focused open-source projects or internal security platform toolin Due to the nature and urgency of this post, candidates holding or who have held high level security clearance in the past are most welcome to apply. Please note successful applicants will be required to be security cleared prior to appointment which can take a minimum 10 weeks. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. An award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over multiple years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
Voir cette offre
Offre premium
Freelance

Mission freelanceInformation Security Manager with Network Engineering Skills

Nexus Jobs Limited
Publiée le
Cisco
CISSP
Data governance

3 mois
£500-650
Cité de Westminster, Royaume-Uni
Information Security Manager with Network Engineering Skills Our Client is a bank based in Central London who are looking to recruit a seasoned professional with at least 7 to 10 years expertise level Information Security coupled with Hands-on Network Engineering. The role is mainly Information Security – Data Security and split circa 80% with 20% Network Engineering – so you do need to be hands-on technically. You will ideally have circa 5+ years of work experience with Network Engineering coupled with over 10 years experience with Cisco Systems Products Role Description The Information Security Manager with Network Engineering Skills is a full-time hybrid role based in London, with the flexibility to work from home part of the week. The role oversees the design, implementation, and continuous improvement of information security policies, procedures, and controls across networks and systems. Day-to-day responsibilities include managing the Information Security Management System (ISMS), monitoring cybersecurity and network security events, coordinating incident response, and ensuring compliance with relevant standards and regulations. The person in this role will collaborate with IT and business stakeholders to assess risks, implement technical and procedural safeguards, and support secure network architecture and configuration. Additional tasks include producing security documentation, leading security awareness initiatives, and providing guidance on secure network engineering practices. Qualifications · Strong skills in Information Security Management and Information Security, with experience defining and enforcing security policies and governance. · Hands-on expertise with Information Security Management Systems (ISMS), including implementation, maintenance, and audit readiness. · Proficiency in Cybersecurity and Network Security, covering threat detection, vulnerability management, network hardening, and incident response. · Demonstrated network engineering experience (eg, routing, switching, firewalls, VPNs, secure network design). · Relevant certifications such as CISSP, CISM, CISA, CompTIA Security+, or similar are beneficial. · Experience with regulatory and compliance frameworks (eg, ISO 27001, GDPR, NIST) and security best practices. · Ability to analyze complex technical environments, communicate clearly with both technical and non-technical stakeholders, and document security requirements and processes. · Bachelor's degree in computer science, information security, engineering, or a related field, or equivalent professional experience. Key Networking Skills Required: Cisco Network Switches Layer 2 and 3 (Catalyst 9K) – CCNP Level, Expert Level Preferred Routing protocol – OSPF (Catalyst 9K) – CCNP Level, Expert Level Preferred Cisco Switch Stacking (Cat 9K Switches 9600, 9300. 9200) Virtual Routing and Forwarding – (Catalyst 9600) Internetworking Troubleshooting - CCNP Level, Expert Level Preferred High Availability and Disaster Recovery - CCNP Level, Expert Level Preferred Security/Cyber ​​​​Security Skills Required: Cisco Firepower Firewalls (ASA, FTD) - CCNP Level, Expert Level Preferred Palo Alto Firewalls – Specialist Level, Architect Level Preferred Cisco Layer 2 Port Security Network Access Control including Cisco ISE, TACACS etc. Network Detection and Response Network Encryption (Site to Site VPN's) Cisco Secure Client (ASA) Network IPS (Trellix) Network Zero Day (Trellix NX or similar) Host Zero Day (Trellix HX or similar) Cyber ​​Security Network Control Incident Investigation with the assistance of group cyber security experts – Tier 1, Tier 2 to 3 preferred, using LogRhythm SIEM a bonus Host End Point Protection (Symantec) Host IPS Preferred Skills and Knowledge Vulnerability Management (Scanning for Vulnerabilities and classifying the risk, CIS Benchmark Scanning and compliance) – Using Rapid7 a bonus Knowledge of Penetration Testing, understanding of the types of testing and their advantages and disadvantages Security Zone Design and considerations Network and Security Architecture Design and Considerations Understanding of Information Security (Confidentiality, Integrity, Availability), MITER ATT&CK, NIST, ISO 27001, SIEM use cases for key controls etc Risk Management in Cyber ​​Security, SSL Blind spots, what causes them and how to mitigate Malware/Ransomware and how to mitigate along with Penetration testing concepts Understanding of White/Black/Grey Box penetration testing. Developing Security policies and procedures and conducting audits/risk assessments Handling crisis situations during security incidents The role is hybrid 3 days in the office in Central London. The rate for this role will be in the range £500 pd to £650 pd. This is a 3-month assignment. Do send your CV to us in Word format along with your salary and notice period.
Voir cette offre
Freelance
CDI

Offre d'emploiIngénieur Sécurité SOAR

VISIAN
Publiée le
Dynatrace
Python

1 an
Île-de-France, France
ContexteParticiper à la consolidation et à l'optimisation de la chaîne de détection et de réponse aux incidents de sécurité au sein de l'équipe PSIRT EMEA, en assurant la stabilité et la performance des plateformes d'alerting, SOAR et du Global Security Dashboard, ainsi que leur adaptation aux exigences des différents territoires (APAC, AMER). Intégration, évolution et mise en condition opérationnelle des architectures de collecte des logs et de détection d'incidents (SIEM/SOAR). Déploiement et amélioration continue des cas d'usage et des règles de corrélation. Analyse des incidents de sécurité et réponse adaptée. Threat hunting et investigations forensic. Gestion et évolution du Global Security Dashboard. Au sein de la sous‑équipe Automation, les activités principales sont : Évolution et maintenance de la plateforme d'alerting. Évolution et maintenance du moteur SOAR (Security Orchestration Automation and Response). Adaptation des plateformes aux exigences locales (APAC, AMER) et appui aux équipes territoriales. Gestion et évolution des solutions d'allow‑listing et du suivi des formulaires d'investigation. Recueil des besoins d'évolution auprès des membres du PSIRT et des autres équipes sécurité. Intégration, en collaboration avec l'équipe Défense, des outils de sécurité tiers dans la plateforme. Documentation du code et de l'infrastructure, définition et suivi de la roadmap. Amélioration du monitoring et refonte de l'architecture du SIEM.
Voir cette offre

Au service des talents IT

Free-Work est une plateforme qui s'adresse à tous les professionnels des métiers de l'informatique.

Ses contenus et son jobboard IT sont mis à disposition 100% gratuitement pour les indépendants et les salariés du secteur.

Free-workers
Ressources
A propos
Espace recruteurs
2026 © Free-Work / AGSI SAS
Suivez-nous