> job detail
B
👽Other
Senior Analyst, Cyber Defense Operations (Belgrade, RS, 11070)
Ball · Belgrade, RS, 11070
// classified as
Other (Adjacent or hard to classify.)
posted
<1d ago
location
Belgrade, RS, 11070
languages
—
tools
—
> description
<p> </p>
<p><span style="font-size:10.0pt;font-family:arial, helvetica, sans-serif">At Ball, integrity and trust are the foundation of who we are. Guided by our core values—"We Care. We Work. We Win.”—we create a culture where every voice matters and every idea drives progress. </span><br><span style="font-size:10.0pt;font-family:arial, helvetica, sans-serif">Further your career at Ball, a world leader in manufacturing sustainable aluminium packaging. Achieve extraordinary things when you join our team, and make a difference in your professional development, the community, and around the globe! </span><br><span style="font-size:10.0pt;font-family:arial, helvetica, sans-serif">Create a new future. Apply Today. </span></p><p> </p>
<p><strong><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Position overview:</span></strong></p>
<p> </p>
<p style="margin:0.0in;font-size:10.0pt;color:black"><span style="font-family:Arial">The Senior Security Analyst is responsible for executing and coordinating advanced cybersecurity defense activities to detect, analyze, and respond to cyber threats impacting Ball Corporation’s global IT and OT</span><span style="font-family:'Cambria Math'">‑</span><span style="font-family:Arial">adjacent environments. The role is r</span><span style="font-family:Arial">eporting to the Director of Cyber Defense Operations, and it serves as a senior technical practitioner and operational leader, supporting threat detection, incident response, attack surface management, and vulnerability management. The Senior Security Analyst works closely with internal cybersecurity teams and a Managed Security Service Provider (MSSP) to ensure timely threat response, risk</span><span style="font-family:'Cambria Math'">‑</span><span style="font-family:Arial">based prioritization, and effective communication during cybersecurity events.</span></p>
<p style="margin:0.0in;font-size:10.0pt;color:black"> </p>
<p style="margin:0.0in;font-size:10.0pt;color:black"><strong><span style="font-family:Arial">Key responsiblities include:</span></strong></p>
<p style="margin:0.0in;font-size:10.0pt;color:black"> </p>
<div>
<ul style="margin-top:0.0in;margin-bottom:0.0in" type="disc">
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Perform advanced security monitoring, investigation, and incident response activities across enterprise environments</span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Act as a senior escalation point for cybersecurity incidents, supporting triage, containment, eradication, and recovery efforts</span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Support the Attack Surface Management (ASM) program by analyzing exposure data, validating findings, and coordinating remediation actions</span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif"><span style="font-size:10.0pt">Execute Vulnerability Management activities, including vulnerability analysis, risk</span><span style="font-size:10.0pt">‑</span><span style="font-size:10.0pt">based prioritization, and remediation tracking</span></span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif"><span style="font-size:10.0pt">Coordinate day</span><span style="font-size:10.0pt">‑</span><span style="font-size:10.0pt">to</span><span style="font-size:10.0pt">‑</span><span style="font-size:10.0pt">day operational activities with the MSSP, including alert handling, investigations, and escalation management</span></span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Support development, maintenance, and execution of incident response playbooks and procedures</span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif"><span style="font-size:10.0pt">Participate in cyber incident simulations, tabletop exercises, and post</span><span style="font-size:10.0pt">‑</span><span style="font-size:10.0pt">incident reviews</span></span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Document incidents, investigations, and lessons learned to improve detection and response maturity</span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;font-family:arial, helvetica, sans-serif"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt">Provide technical input into cyber defense metrics, dashboards, and operational reporting</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Calibri;font-size:10.0pt">Provide technical input into cyber defense metrics, dashboards, and operational reporting</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:9.0pt;color:black">Support cybersecurity monitoring and response activities across global regions and time zones</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:9.0pt;color:black">Coordinate with regional IT, OT, and business teams during incident response and remediation efforts</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:9.0pt;color:black">Account for regional operational and regulatory considerations during investigations and response activities</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:9.0pt;color:black">Ensure consistent execution of cyber defense processes while supporting regional operational needs</span></li>
</ul>
<p style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;color:black"> </p>
<p style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;color:black"> </p>
<p style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;color:black"><span style="font-size:10.0pt"><strong><span style="font-family:Arial;color:black">What are we looking for?</span></strong></span></p>
<p style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;color:black"> </p>
<p style="margin:0.0in;margin-left:0.375in;font-family:Arial;font-size:9.0pt;color:black"><span style="font-size:10.0pt"> </span></p>
<ul style="margin-top:0.0in;margin-bottom:0.0in" type="disc">
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Bachelor’s degree in Information Security, Computer Science, or a related technical discipline required</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Minimum of 6–10 years of experience in cybersecurity operations, security monitoring, or incident response roles</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Experience supporting enterprise or industrial environments preferred</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Relevant cybersecurity certifications preferred</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Strong collaboration skills across cybersecurity, IT, OT, and external service providers</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Knowledge of cybersecurity threats, attack techniques, and defensive controls</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Understanding of incident response processes and escalation models</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Familiarity with attack surface management and vulnerability management concepts</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Awareness of OT</span><span style="font-family:'Cambria Math';font-size:10.0pt">‑</span><span style="font-family:Arial;font-size:10.0pt">related cyber risks and safety considerations</span></li>
<li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle;color:black"><span style="font-family:Arial;font-size:10.0pt">Understanding of how cyber defense activities support enterprise risk reduction, resilience, and regulatory posture</span></li>
<li style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;color:black;font-size:10.0pt">Fluent English language </li>
</ul>
<p style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;color:black;font-size:10.0pt"> </p>
<p style="margin-top:0.0px;margin-bottom:0.0px;vertical-align:middle;color:black;font-size:10.0pt"> </p>
</div><p> </p>
<p><span style="font-size:10.0pt">Ball Corporation is an Equal Opportunity Employer. We actively encourage applications from everybody, regardless of gender, age, ethnicity, faith, ability, or orientation. Our products range from infinitely recyclable aluminium cans, cups to aerosol bottles solutions that enable our customers to contribute to a better world. <br>Each of us has a deep commitment to diversity and inclusion which is the foundation of our culture of belonging. Everyone at Ball is making a difference by doing what we love. Because what we create may change, but what we will always make is a difference. <br>Please note the advertised job title might vary from the job title on the contract due to local job title structure and global HR systems. </span></p>
<p><span style="font-size:10.0pt">No agencies please.</span></p>