-
H&M

Cyber Defence Analyst – eCom

H&M
Sweden · Full-time · Mid-Senior

Job Description

Working in the H&M Cyber Defense Center eCom, you will work with world class tooling for threat hunting, detection and response based on cloud technology (For example, Azure Sentinel, Defender for Endpoint, Defender for O365, GCP SCC, Akamai, and more) with a dedicated team of DevOps engineers constantly develop tooling to support analysis, response and automations.

Our Cyber Defense Center is the beating heart in the defense of our company, combining intelligence, monitoring, incident response and threat hunting with an engineering mindset to make the most out of people and technology.

As a Cyber Security Analyst in our Cyber Defense Center eCom team, you play a key role in H&M Group’s Cyber Defense. You understand cyber security threats and the threat landscape. You will act to detect, analyze and respond to cyber-attacks, manage incidents and reduce risk to customers, colleagues, partners and the company. You will work with the team to improve the capabilities to reduce response time but at the same time maintain quality. We are taking advantage of the latest technology in intelligence and automation. Ultimately the aim is to bring value to our business by reducing risk!

What You’ll Do

In this role you will be responsible for:

  • Analyze security incidents, alerts, and events .
  • Investigate incidents according to SOP: s and best practice .
  • Perform remediation activities according to SOP: s and best practice.
  • Interaction with stakeholders to support investigation and remediation .
  • Escalation of major incidents according to SOP: s
  • Support major incident response activities.
  • Improve and develop detection, whitelisting, SOP:s, and automation for incident and alert handling.


Qualifications

  • Can explain the principles of threat intelligence, modelling and assessment.
  • Can explain the principles of a computer system, network and storage security architecture and how these can be used to reduce information risk
  • Have experience with operating as a member of an CSIRT or SOC.
  • Have experience with Incident management, investigation and response.
  • Have experience with developing custom detection in either Bot Management, SIEM or EDR solutions and understands the logic behind it.
  • Knowledge of network communication, cloud infra, OS, API:s and applications.
  • + 3 years of experience as a Security Analyst or similar area.


Specific competence

  • Experience with SIEM and logging environments for threat analysis, investigation, threat hunting and triage analysis on various security solution such as WAF, Bot Management, EDR.
  • Understand attack mitigations and improvements related to OWASP
  • Experience with Content Delivering Networks (CDN)
  • Experience in cloud-based computing on large scale (preferably Microsoft Azure, but also GCP or AWS)
  • Understanding of threat landscape, trends and act proactively on threat intelligence
  • Good understanding of fundamental infrastructure components, network concepts, Operating Systems (Windows & Linux), DNS, etc.
  • Willing to work in a team-oriented environment and flexibility to work in a demanding environment, sometimes under time-pressure.


Additional Information

WHO WE ARE

H&M is a fashion brand that offers the latest styles and inspiration, from fashion pieces and unique designer collaborations to affordable wardrobe essentials. Our business idea is fashion & quality at the best price in a sustainable way. Learn more about H&M here.

WHY YOU’LL LOVE WORKING HERE

Benefits

We offer all our employees at H&M Group attractive benefits with extensive development opportunities around the globe. All our employees receive a staff discount card, usable on all our H&M Group brands in stores and online. Brands covered by the discount are H&M (Beauty and Move included), COS, Weekday, Monki, H&M HOME, & Other Stories, ARKET, Afound. In addition to our staff discount, all our employees are included in our H&M Incentive Program – HIP. You can read more about our H&M Incentive Program here.

In addition to our global benefits, all our local markets offer different competitive perks and benefits. Please note that they may differ between employment type and countries.

Inclusion & Diversity

H&M is a part of H&M Group. At H&M Group, we’re determined to create and maintain inclusive, diverse and equitable workplaces throughout our organisation. Our teams should consist of a variety of people that share and combine their knowledge, experience and ideas. Having a diverse workforce leads to a positive impact on how we address challenges, on what we perceive possible and on how we choose to relate to our colleagues and customers all over the world. Hence all diversity dimensions are taken into consideration in our recruitment process.

We are committed to a recruitment process that is fair, equitable, and based on competency. We therefore kindly ask you to not attach a cover letter in your application.

Key Skills

Ranked by relevance

cloud incident response siem gcp cyber security designer storage devops linux owasp o365 aws dns
Login to Apply
Posted
Mar 27, 2025
Type
Full-time
Level
Mid-Senior
Location
Stockholm
Company
H&M

Industries

Retail

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
lululemon
Related

Senior Cybersecurity Analyst- Identity Governance

2026-05-19

Full-time
Not Applicable
Canada
Retail
Information Technology
View Job Details
The Home Depot Canada
Related

Data Scientist (Askuity division)

2026-05-26

Full-time
Not Applicable
Canada
Retail
Engineering
View Job Details
THE ICONIC
Related

Lead Software Engineer

2026-05-20

Full-time
Not Applicable
Australia
Retail
Engineering