- Company Name
- DAVIDSON CONSULTING
- Job Title
- Ingénieur Threat et Cybersécurité (H/F)
- Job Description
-
**Job Title**
Threat and Cybersecurity Engineer (H/F)
**Role Summary**
Deliver end‑to‑end cybersecurity consulting for clients and Davidson’s internal services. Execute SOC/CSIRT functions, threat analysis, incident response, forensics, automation, playbook development, and CTI enrichment. Optionally perform vulnerability management, risk assessment, patch prioritization, and hardening across production environments.
**Expectations**
Operate independently in a fast‑paced, client‑facing environment. Demonstrate deep technical proficiency, continuous learning, and proactive threat monitoring. Communicate findings to stakeholders, recommend mitigation measures, and contribute to cross‑team collaboration. Maintain up‑to‑date knowledge of SIEM, SOAR, EDR, firewalls, DDoS defenses, and operating systems.
**Key Responsibilities**
- Analyze security threats, parse logs, reduce false positives, and define detection rules in SIEM tools (QRADAR, Splunk, ELK).
- Manage incident response workflows, conduct post‑mortems, and automate reporting/CTI tasks.
- Maintain and expand playbooks, develop CTI tools (IOC/IOA), and automate routine tasks.
- Scan assets with scanners (Rapid7, Nessus, Qualys), analyze reports, and prioritize remediation.
- Coordinate patching and hardening, interact with vendors, and lead risk assessments.
- Support enterprise security solutions (CrowdStrike, Varonis, CyberArk, etc.) and advise on architecture.
**Required Skills**
- Proficiency in SIEM (QRADAR, Splunk, ELK), SOAR, EDR, anti‑DDoS, and vulnerability scanners.
- Strong knowledge of Windows and Linux/UNIX systems.
- Experience with firewalls, proxies, reverse proxies, password vaults, and identity platforms.
- Incident response, forensics, playbook creation, and automation scripting (PowerShell, Python, Bash).
- Excellent written and verbal communication, teamwork, and critical thinking.
- Curiosity, continuous learning, and proactive threat hunting mindset.
**Required Education & Certifications**
- Bachelor’s or Master’s degree (Bac+5) in Cybersecurity, Information Security, or related field.
- 2–5 years operational experience in production security environments.
- Relevant certifications preferred (CISSP, CEH, CompTIA Security+, CISM, or equivalent).