As an IT Security Analyst, you will be part of a central IT Security team within Argenta. You will play an active role in protecting our critical IT and cloud environments against cyber threats.
An important part of this role is participation in the IT Security on-call rotation:
On-call duty on a rotating basis, approximately one week every 3 to 4 weeks
Each on-call period runs from Monday morning to Monday morning (7 consecutive days)
During this period, you may be called upon to handle incidents, including Priority 1 security incidents
You will act as the primary point of contact for technical analysis and response during serious security incidents, working autonomously
You must be able to analyse situations, make decisions and take action independently
You will work closely with IT Operations, Architecture, the CISO Office and external partners.
1. Cybersecurity Analysis & Detection
Analyse alerts, anomalies and suspicious activity
Develop defence strategies based on secure by design and zero trust principles
Produce security risk and threat reports for both technical and management stakeholders
Implement and monitor preventive security controls
Apply information security standards and frameworks, including ISO, NIST and CIS
2. Incident Response & Crisis Management
Develop, maintain and test incident response playbooks
Actively manage security incidents
Report on incidents to technical and non-technical audiences
Coordinate activities during security crises and escalations
Perform or oversee containment and eradication activities, forensic investigations and post-incident root cause analysis
Collaborate with internal and external parties, including SOC teams, vendors, auditors and CERTs
Support and follow up on penetration testing and vulnerability management
3. Knowledge Management & Continuous Improvement
Actively contribute to knowledge sharing and documentation within the security team
Conduct threat hunting based on real-world threats and relevant threat intelligence
Participate in or support red and blue team exercises
Continuously improve detection systems, incident response processes, reporting and metrics
4. Security Risk Assessment
Conduct security maturity assessments, covering both technical and organisational aspects
Develop and maintain technical security roadmaps
Support risk-based decision-making by IT Architecture and management
Identify and assess risks using structured methodologies, such as STRIDE
Translate technical risks into clear business impacts for non-technical stakeholders
5. Microsoft Security Tools
Use and optimise Microsoft security platforms on a daily basis, including Microsoft Defender solutions (Endpoint, Identity, Cloud, CASB, DLP, etc.) and Azure security controls
Integrate logs, alerts and response workflows
Automate wherever possible, including playbooks, use cases and response workflows