Zeal Group logo

Senior Security Operation Center Analyst

Zeal Group
Full-time
On-site
Shanghai Shanghai China

About us

An award-winning Fintech organization with a dedicated team of 500+ professionals across the globe. With more than 15 offices across the world, we are a people centric company which prides itself on being product oriented for customer success. As we continue the journey of scaling up our business, we are passionate about expanding our multicultural and diverse workforce.

We can offer excellent opportunities to develop your career path and provide you with the tools and support to be successful in your journey with us.

Zeal group of companies (collectively Zeal Group) is a business portfolio comprising regulated financial institutions (trading as ZFX) and fintech companies specializing in multi-asset liquidity solutions in regulated markets backed by proprietary technology, with a presence in all major global locations.

Responsibilities:

Security operation center analyst reports to Head of Platform Services, works with teams across the company to ensure corporate and application security within the whole company.

  • Incident response and investigations
    • analysis of complex security and financial incidents;
    • rapid decision-making during live incidents.
  • Detection and monitoring
    • Use SIEM tools to maintain visibility into real-work attack patterns
    • Continue development and tuning of dashboards and alerts.
  • Attack mitigation and abuse prevention
    • Use tools and services to prevent external attacks like SMS pumping, account take over etc.
    • Continue improving or creating new anti-fraud tools or services
  • Brand protection
    • detection and response to phishing, fake domains, and brand abuse.
  • Vulnerability management support
    • Performing continuous risk analysis and mitigating risks of cloud infrastructure as well as on-premise DC
  • Automation and pipelines
    • building and maintaining SOC integrations to reduce manual workload.
  • Support for internal documentation (standards, manuals, descriptions, etc.)
  • Collaborate with application architects in questions of cyber security requirements and possible solutions
  • Implementation of automated cyber security measures (rolling secrets, analysis of security audit logs, ...)

  • 5+ years of experience in security analytics
  • Solid knowledge in cyber security
  • Excellent analyzing skills based on security audit data, as well as good insights output.
  • Experience to design and develop anti-fraud services based on the output from security analysis.
  • Know how to explore and investigate issues with logging frameworks like opensearch, splunk, loki etc.
  • Experience and skills in Linux, GCP Cloud, Networking and OS fundamentals
  • Know how to mitigate security threats by using tools like Akamai rules etc.
  • Knowledge of managing exploiting vulnerabilities of servers using Qualys or similar tools.
  • Ability to thrive under stressful situations
  • Ability to work with several tasks at the same time
  • Team player with energy and a desire to progress in a fast moving, demanding and progressive environment
  • Fluent oral English