
▷ [9/30/2025 A] SOC Incident Response Analyst
1 week ago
SMBC Group is a top-tier global financial group. Headquartered in Tokyo and with a 400-year history, SMBC Group offers a diverse range of financial services, including banking, leasing, securities, credit cards, and consumer finance. The Group has more than 130 offices and 80,000 employees worldwide in nearly 40 countries. Sumitomo Mitsui Financial Group, Inc. (SMFG) is the holding company of SMBC Group, which is one of the three largest banking groups in Japan. SMFG's shares trade on the Tokyo, Nagoya, and New York (NYSE: SMFG) stock exchanges.
In the Americas, SMBC Group has a presence in the US, Canada, Ireland, Mexico, Brazil, Chile, Colombia, and Peru. Backed by the capital strength of SMBC Group and the value of its relationships in Asia, the Group offers a range of commercial and investment banking services to its corporate, institutional, and municipal clients. It connects a diverse client base to local markets and the organization's extensive global network. The Group's operating companies in the Americas include Sumitomo Mitsui Banking Corp. (SMBC), SMBC Nikko Securities America, Inc., SMBC Capital Markets, Inc., SMBC MANUBANK, JRI America, Inc., SMBC Leasing and Finance, Inc., Banco Sumitomo Mitsui Brasileiro S.A., and Sumitomo Mitsui Finance and Leasing Co., Ltd.
This is a hybrid role, requiring the successful candidate to attend our Tralee office.
Role Description
As a Cyber Incident Response Analyst, you will be a key part of a high performing SOC team, with a desire to continually improve and advance our capabilities to protect SMBC Group. You will bring your passion for Cybersecurity to a team of like-minded professionals and leverage this passion to ensure our monitoring and response capabilities are effective and efficient and that we keep pace with a rapidly changing threat landscape.
You will relish your core role in supporting the monitoring and response of cyber security alerts and incidents by digging into and investigating them to find the root cause and identifying the gap in controls that allowed a threat to reach that point in the kill chain. If you identify an incident, you will lead that technical analysis, tracking down the actions of that threat actor as part of the incident response, while supported by the wider Incident response process and members of the SOC and CSIRT teams. If you identify a false positive, you will drive the effort to tune or refine our detections, or to drive improvements to our preventative controls to prevent a recurrence, freeing more time for the SOC to focus on improving our skills and capabilities. With your knowledge and expertise, you will develop and hone the SOC through work-product review, mentoring, and ownership of projects to develop the technical capabilities of the SOC.
As part of a wider team of SOC analysts, you are able to focus on an area you are passionate about, or if sufficiently experienced, take the lead. You will develop deep expertise and expand our capabilities in domains ranging from across Purple Teaming, Threat hunting, Digital Forensics and Incident Response (DFIR), Security Automation, Detection Engineering and Threat Intelligence and share this knowledge to develop the depth of knowledge of the SOC. As part of a Financial Group with offices and data centers across the Globe, you will have access and exposure to leading technologies and tools. If there is a gap in our toolset, you can help us identify and bridge that gap by acting as Subject Matter Expert to do so. You will bring fresh ideas, challenge the status quo, and seek always to answer - how can we improve?
This role is best suited for candidates who enjoy and have experience within SOC or CSIRT teams and enjoy investigating and finding the root of an issue or incident and working on getting the most from leading edge security toolsets and platforms and processes. Candidates who excel will think critically to find ways to resolve security challenges. This role would suit an experienced and self-motivated cyber security professional with strong technical skills and knowledge combined with a passion for cyber security.
Note: Expectation is to be onsite once a month for this role.
Role Objectives
• Act as technical lead in the development and enhancement of capabilities such as Cyber Monitoring & Response/Purple Teaming/Threat Hunting/Digital Forensics/Incident Response
• Act as an escalation point for the analysis of security alerts or technical response to security events and incidents
• Review and guide the SOC personnel for well-written, complete, and thorough analysis
• Mentor and guide more junior SOC personnel sharing your knowledge and expertise.
• Develop and improve monitoring & response playbooks.
• Conduct proactive threat hunting and DFIR activities.
• Develop deep expertise in our monitoring systems and technology to act as an SME in working with our detection engineering and automation teams to enhance our abilities to prevent, detect & respond.
• Identify and test new adversary TTPs and our ability to detect and respond to them.
• Identify opportunities for efficiency, work hand in hand with Security Automation team to automate and improve our response processes.
• Assist in the implementation and ongoing support of security systems, acting as an SME for SOC related projects.
• Execute tasks or support projects to enhance team's capabilities.
• Assist in defining SOC requirements for information technology projects.
• Act as a role model and set the standard for technical analysis within the SOC.
• Providing strong mentorship and guidance to more junior SOC team members by acting and leading by example. Bring a positive outlook and seek to motivate and inspire your fellow team members.
• Demonstrate comprehensive understanding of cyber security best practices, risk vectors, mitigation techniques and protection software. Display knowledge of network security concepts and tools such as firewalls, proxy servers, email security and suspicious traffic flows. Exhibit analytical ability to lead incident response and mitigation efforts as well as identify key areas for improvement from post-incident analysis. Show ability to convey cyber security polices and concepts to employees and lead training efforts to ensure all employees follow recommended best practices relating to cyber security.
• Strong understanding of MITRE ATT&CK Cyber Kill Chain and similar frameworks.
• Strong knowledge of security controls related to the detection, analysis, and response (SIEM, EDR, NDR, XDR, UEBA).
• Strong knowledge of Windows and Linux systems, Active Directory, Cloud technologies.
Qualifications and Skills
• 5+ years of experience in cyber security experience required, ideally in a SOC, DFIR, or CSIRT role.
• Strong verbal and written communication skills with experience in documenting their work to a high level.
• Professional Certifications an advantage but not essential if have requisite role knowledge, GCIH, GNFA, GFCA, Certified Ethical Hacker (CEH), OSCP, CISSP or similar certifications a plus.
• Must be self-directed with the ability to work independently.
• Ability to multi-task and remain productive in a service-driven and results oriented environment.
• Demonstrated strong organizational, analytical, and problem-solving skills.
Additional Requirements
SMBC's employees participate in a hybrid workforce model that provides employees with an opportunity to work from home, as well as, from an SMBC office. SMBC requires that employees live within a reasonable commuting distance of their office location. Prospective candidates will learn more about their specific hybrid work schedule during their interview process.
SMBC provides reasonable accommodations during candidacy for applicants with disabilities consistent with applicable federal, state, and local law. If you need a reasonable accommodation during the application process, please let us know at accommodations@smbcgroup.com.
#J-18808-Ljbffr
-
Junior SOC Analyst Remote, Ireland
4 days ago
Dublin, Ireland SonicWall Full timeOverview SonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company. We provide security across cloud, hybrid, and traditional environments, protecting against cybercrime with real-time threat intelligence and a threat research center. For more information, visit www.sonicwall.com or...
-
SOC Analyst
1 week ago
Dublin, Ireland Ekco Full timeOverview Join to apply for the SOC Analyst role at Ekco Founded in 2016, Ekco is one of the fastest growing cloud solution providers in Europe. We specialise in enabling companies to progress along the path of cloud maturity, managing transformation and driving better outcomes from our clients’ existing technology investments. We take businesses to the...
-
Senior Soc Analyst
5 days ago
Dublin, Ireland Alldus International Consulting Ltd Full timeOverviewSenior SOC AnalystLocation:Dublin, Ireland(Hybrid)Contract Duration:6–12 months, with possible extensionHours:Full-time (40 hours/week)Rate:Competitive and commensurate with experienceOur client, a global consultancy, are hiring a Senior SOC Analyst to join their growing cyber security team on a 6–12 month contract.The successful candidate will...
-
Manager - Incident Response
3 weeks ago
Dublin, Dublin City, Ireland KPMG International Limited Full timeOverviewWhen you join KPMG Ireland, you are joining a community of over 4,200 employees who collectively work together, both in person and virtually, to achieve their full potential.We are known as an organisation who want you to come as you are and do work that truly matters. Joining KPMG Ireland is an opportunity to enhance your career, not only in the...
-
SOC Manager
1 week ago
Dublin, Ireland SonicWall Full timeSonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company, ensuring our partners and their customers are never alone in the fight against cybercrime. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall...
-
Dublin Pike, Ireland Integrity360 Full timeLocation: Dublin, Ireland About Us Integrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm,...
-
▷ Only 24h Left! Manager
2 weeks ago
Dublin, Ireland KPMG International Limited Full timeOverview When you join KPMG Ireland, you are joining a community of over 4,200 employees who collectively work together, both in person and virtually, to achieve their full potential. We are known as an organisation who want you to come as you are and do work that truly matters. Joining KPMG Ireland is an opportunity to enhance your career, not only in the...
-
Cyber Incident Response Lead
1 week ago
Dublin, Ireland Cyber UK Full timeCompany Description Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Cyber Security Incident Responder
4 weeks ago
Dublin, Dublin City, Ireland eir Ireland Full timeOverviewRole Title: Cyber Security Incident ResponderBusiness Area: Security ServicesAbout This Role: The Security Operations Centre (SOC) houses the cyber security team responsible for monitoring and analysing an organisation's security posture on an ongoing basis. The SOC team's goal is to provide 24x7x365 capabilities to detect, analyse, and respond to...
-
[9/12/2025 A] Cyber Threat Detection
3 weeks ago
Dublin, Ireland CPL Full timeJob Title: Cyber Threat Detection & Response Analyst About the Role We are seeking an experienced Cyber Threat Detection & Response Analyst to join the team at ESB. In this role, you will be responsible for monitoring, investigating, and responding to cyber threats that may impact networks, systems, and data. You’ll also support proactive threat hunting,...