-
Deutsche Bank

Chronicle Specialist (Cyber Threat)

Deutsche Bank
Romania · Part-time · Mid-Senior

Integrated in Deutsche Bank’s Chief Security Office (CSO), the Information Security Threat Operations team is responsible for mitigating these risks. The Information Security Threat Operations team enables the business of Deutsche Bank by providing agile security operational capabilities.


You will be responsible for the full range of tasks associated with the detection of cyber threats in a fast-paced environment for Deutsche Bank’s cloud workloads, using cloud based SIEM/SOAR solutions. Our Cloud Operations team is focused on helping develop Deutsche Bank’s new cloud architecture, platforms/systems, organizational and operational processes to allow for the detection of cyber threats. Once established the focus will shift stronger into the development to detect new threats and perform threat hunting while incorporating change in an evergreen cloud environment.


This will involve maintaining a close dialogue with various units and stakeholders for the purpose of detecting and assessing potential risks to critical business infrastructure and services.


Activities:

  • You will be expected to be able to identify areas for improvement and take accountability to drive security topics forward within and outside the team.
  • In this role, you will also contribute to the development of Security Information and Event Management (SIEM) content, focusing on the Cloud Platform, including detection use cases, reports, network and asset model management, dashboards, rules/logic, documentation, and process establishment.
  • Collaborate with other security specialists and experts to support the architecture, design and implementation of services and processes to support our mission of detecting cyber threats.
  • Work in close cooperation with Cyber Intelligence, Incident Response, and the Security Operations Centre for the purpose of extending and strengthening the division’s capabilities relating to threat analytics for cloud service.
  • This will include managing and overseeing a range of sophisticated tools and services aimed at detecting cyber threats/incidents and responding to them in a determined manner.


Knowledge and Experience:

  • Minimum 3 years hands-on experience with GCP/AWS or alternatively MS Azure.
  • Having at least 1-year experience in developing, modifying, enhancing, and fine-tuning detection and alerting/threat hunting use-cases in any type of SIEM solution (Splunk, LogRhythm, QRadar) or at least 6 months of experience of working with cloud based SIEM solutions (Splunk, Chronicle, Sentinel).
  • Experience with industry known detection query languages: YARA, YARA-l, SPL, etc.
  • Familiarity with Cyber Security Incident Response or computer forensic processes, or a strong interest and capability to learn the fundamentals of security operations within a short time.
  • Experience of automating smaller tasks in a short amount of time, e.g., with scripting languages such as GCP CLI, PowerShell, Go, Python, etc.
  • Experience with assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes (secure software development /Application Security, data protection, cryptography, key management, identity and access management, network security) within SaaS, IaaS, PaaS, and other cloud environments
  • Have at least 3 years’ work experience in the fields of either: Encryption; IAM (Identity & Access Management), Security Monitoring & Incident Response, Network Security, Pen Testing, Security Operation, Application Security.


Education and Certifications:

  • Bachelor’s or master’s degree from an accredited college or university with a focus on cloud and network technology, software development, or IT security.
  • Certifications as CompTIA Security +, Google Cloud, Azure platforms can be considered a plus but they’re not mandatory.
  • Any relevant Cyber Security Certifications.


About us/about Deutsche Bank:

Deutsche Bank is an equal opportunity employer who seeks to recruit and appoint the best available person for a job regardless of marital status, sex (including pregnancy), age, religion, belief, race, nationality and ethnic or national origin, colour, sexual orientation or disability.


Before applying, please read our data protection policy: https://dbprivacy.ro/candidati.html?lang=ro

Key Skills

Ranked by relevance

cloud incident response siem network security cyber security splunk identity and access management powershell python qradar saas paas gcp
Login to Apply
Posted
Jan 18, 2025
Type
Part-time
Level
Mid-Senior
Location
Bucharest

Industries

Banking IT Services IT Consulting

Categories

Information Technology Engineering Business Development

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
LHV
Related

Product Engineer (Investment Platform)

2026-05-28

Full-time
Mid-Senior
Estonia
IT Services
Engineering
View Job Details
Deutsche Bank
Related

Information Security Analyst (f/m/x)

2026-05-14

Full-time
Not Applicable
Romania
Financial Services
Information Technology
View Job Details
LHV
Related

Andmeinsener

2026-05-28

Full-time
Mid-Senior
Estonia
Banking
Engineering