SOC Engineer
Job DescriptionMISSION:Ensure EMG’s digital assets, cloud platforms, applications, infrastructure, APIs, and data ecosystems are continuously monitored, protected, and defended against cyber threats.The SOC Engineer is responsible for:Building and tuning security detectionsOperating EMG’s SIEM/SOAR platforms (Splunk, cloud-native tools)Handling cyber investigations and forensics activitiesEnhancing visibility across cloud, on-prem, and application layersSupporting threat hunting, response, and vulnerability remediationEnsuring alignment with EMG security policies, CISO directives, and regulatory obligationsThis role is essential for maintaining EMG’s cybersecurity resilience in a hybrid and modernized technology landscape.MAIN RESPONSABILITIES:1. Security Monitoring & Detection Engineering Develop and maintain detection rules, dashboards, alerts, correlation logic, and analytics within:Splunk (SIEM)SOAR (such as n8n)cloud-native SIEM/SOC toolsendpoint detection tools (EDR/XDR)identity logs Build detections and emerging threat patterns. Configure, monitor and troubleshoot security infrastructure devices and services such as EDR, DLP or CASB Identify opportunities for, and promote automation and new technical solutions and security tools to help mitigate security vulnerabilities and improve efficiency2. Incident Investigation & Threat Response Perform L3 investigation of security alerts, including:anomalous authentication eventssuspicious network activitiesendpoint compromisescloud misconfigurationsAPI misuse or credential abuse Execute containment and remediation actions in collaboration with cybersecurity teams, IT Ops and Engineering teams Produce clear incident reports and contribute to RCA and continuous improvement. Establishing disaster recovery procedures and conducting breach of security drills.3. Threat Hunting Conduct proactive threat hunts using:log patternsanomalous behavior detectionthreat intel feedshistorical investigationscloud & API-specific threat vectors Identify gaps in security visibility and propose instrumentation improvements.4. Security Logging & Observability Integration Ensure complete and reliable logging coverage across:Cybersecurity tools (EDR, DLP, etc.)APIscloud workloadsnetwork trafficdatabasesCI/CD systems (GitLab) Work with Observability teams to ensure correlated visibility (Dynatrace + Splunk).5. Vulnerability & Attack Surface Support Support vulnerability management by correlating findings with real activity logs. Validate remediation and track exploitation attempts related to EMG systems. Assist IT Ops and Engineering teams to prioritize and mitigate vulnerabilities.6. Cyber Security Controls Validation Validate enforcement of cybersecurity standards (E.g., Zero Trust, MFA, encryption, identity governance). Test security controls effectiveness through simulations or red-team collaboration.7. Documentation, Playbooks & Knowledge Sharing Maintain SOC runbooks, response playbooks, detection documentation, and forensic procedures. Identify and communicate current and emerging security threats8. Collaboration Across IT & Business Work closely with:CISO (governance, escalation, risk alignment)Cybersecurity Architecture ManagerIAM teamsCloud & Production ServicesNetwork & Infrastructure OpsDomain Engineering Teams Ensure consistent communication and coordination during incidents and monitoring activities.IDEAL EXPERIENCE:3-8 years in SOC, security operations, detection engineering, incident response, or cyber defense roles.Hands-on experience with Splunk SIEM, SOAR tools, EDR/XDR, and cloud logging.Understanding of cloud security (AWS/GCP), API security, microservices architecture.SKILLS & COMPETENCIES:Strong log analysis, correlation, and detection engineering ability.Understanding of attacker techniques, threat vectors, malware behavior, identity attacks.Ability to operate during high-pressure security incidents.Knowledge of IAM flows, network security, and container security.OTHER PERSONAL CHARACTERISTICS:Analytical, methodical, and rigorous.Calm under pressure; reliable during crises.Highly ethical and trustworthy.Curious and proactive in threat intelligence and detection improvement.Risk-oriented: ability to detect, assess risks, and propose realistic solutionsBusiness-focused: ability to understand business prioritiesEuropcar Mobility GroupEuropcar Mobility Group is a global mobility player, with 75 years of mobility services expertise and a leading position in Europe. “We help to change the way you move” is what we stand for and brings us together.We offer to individuals and businesses a wide range of car and van rental services, be it for a few hours, a few days, a week, a month or more, on-demand or on subscription, relying on a fleet of more than 250.000 vehicles, equipped with the latest engines including an increasing share of electric vehicles.Our brands address differentiated needs, use cases and expectations: Europcar - a global leader of car rental and light commercial vehicle rental, with a premium positioning, Goldcar - a frontrunner at providing low-cost car rental services in Europe, and Fox-Rent-A-Car, one of the main players in the car rental market in the US, with a "value for money" positioning.Customers’ satisfaction is at the heart of the Group’s ambition and that of our more than 8,000 employees, everywhere we deliver our mobility solutions, thanks to a strong network in over 130 countries.More info at: SummaryLocation: ParisType: Full time
Emplois Recommandés
People Business Partner
Shine is the financial copilot for entrepreneurs and small business owners. Founded by serial entrepreneurs Rico Andersen and Martin Hegelund, Shine is a leading European fintech unicorn on a miss…
Manipulateur d'électroradiologie médicale - CDD
Vous intégrerez un bel établissement, de taille humaine (146 lits) situé dans un quartier vivant. Vous rejoindrez le service de radiologie, intervenez en radiologie conventionnelle, Scanner et int…
Angiologue F/H -- Paris 75009
Présentation de l'entrepriseRetrouvez plus de 4000 offres d'emploi santé sur notre site et application mobile Jober Group. Profitez d'un réseau de 2000 partenaires sur toute la France, d'une équip…
Consultant risk front office commodities & derivatives - Freelance
Taux journalier (TJM): TJM HT max 527 € (hors éventuels frais de mission, à discuter avec le client) Mission de l’équipe : Au sein d’une activité spécialisée dans l’exécution et le clearing de produ…
Adjoint de Magasin Eram Forum des Halles H/F
Vous souhaitez vous engager dans un nouveau projet ? Nous vous proposons d'être notre nouvel Adjoint (h/f) Accompagné par votre Responsable, nous attendons de vous : # De former un véritable duo a…
Médecin Généraliste F/H - 38% CA + 10% de CP Paris 75009
A propos de La Solution Médicale: Vous êtes un praticien, en activité, en début ou en fin de carrière ou encore étudiant et vous cherchez un poste dans un centre médical?? La Solution Médicale est l'…
Product Manager / Chef de Projet SIRH - Oracle HCM - Freelance
Taux journalier (TJM): 645 Dans le cadre de l’évolution de son SIRH, un grand acteur français recherche un Product Manager / Chef de Projet SIRH expérimenté , avec une forte expertise Oracle HCM …
Website Product Manager - Growth
Our mission and customers: We are creating the freedom for SMEs to succeed by delivering Europe's leading finance workspace with banking at its core, augmented by financial tools. We are proud to b…
Account Executive B2B H/F - Cloud privé
Les missions principales pour le poste Account Executive B2B H/F - Cloud privéNotre client est un acteur international des services technologiques, proposant notamment aux entreprises une solution de …
Head of IT AI & Innovation - F/H
Descriptif de la sociétéINGENIANCE est une ESN spécialisée en finance de marché, banque et assurance depuis plus de 18 ans. Nous accompagnons les grands acteurs bancaires et assurantiels français sur …