Information Security Analyst at Garanti BBVA International
1AC, , Netherlands -
Full Time


Start Date

Immediate

Expiry Date

11 Oct, 25

Salary

0.0

Posted On

11 Jul, 25

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

User Provisioning, Rbac, Access Control, Communication Skills, Active Directory, Access, Security, Analytical Skills, Simulations, Information Technology, Computer Science, Microsoft, Azure Active Directory

Industry

Information Technology/IT

Description

We are seeking a proactive and detail-focused Information Security Analyst with 0-2 years of experience to support our Identity and Access Management (IAM) and security operations functions. In this role, you will manage user access lifecycle activities across business applications, handle role and rights assignments, and support privileged access and physical token management.You will also assist with access recertification, design logical access control models, and contribute to security monitoring by handling alerts from SIEM, Microsoft Defender, and Data Loss Prevention (DLP) tools. Your responsibilities will include participating in phishing simulations, analyzing potential security incidents, and supporting audit and compliance requests, helping to maintain a secure and compliant IT environment.
This role offers a great opportunity to develop your skills in security governance, incident response, and enterprise access management within a collaborative and dynamic team.

SKILLS/QUALIFICATIONS:

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (Must have)
  • PREFERRED:Around 2 years of hands-on experience supporting Identity and Access Management (IAM) processes, including user provisioning, role assignments, and access recertificationPractical knowledge of role-based access control (RBAC) and logical access modelsExperience working with IAM and Privileged Access Management (PAM) tools such as OneIdentity or similar solutionsFamiliarity with security monitoring tools like SIEM platforms, Microsoft Defender, and Data Loss Prevention (DLP) solutions, including alert triaging and incident escalationUnderstanding of Microsoft 365, Azure Active Directory, and Active Directory environmentsParticipation in security incident response activities, including phishing simulations and analysis of reported suspicious emailsSupport for audit requests and compliance documentation related to access controlsStrong analytical skills with attention to detail in managing access rights and security alertsEffective communication skills to collaborate with technical teams and non-technical stakeholdersProactive learner with a growing knowledge of cybersecurity best practices and enterprise security frameworks
Responsibilities
  • Managing Identity and Access Management (IAM) tasks for Joiners/Mover/Leavers process ) including user creation, user deletion, password reset, role assignments for more than 60 business applications
  • Handling role/right creations
  • Handling access control matrixes
  • Limit increase/decrease tasks in SWIFT, T24, POM
  • Managing Privileged Access Management (PAM) tool
  • Managing OneIdentity access control tool
  • Handling periodical user and role recertification processes including privileged users, external users, applications, databases etc.
  • Assisting to design logical access control models, including role-based access control, on specific domains such as Microsoft 365 suite, Azure AD, and active directory
  • Helping audit requests
  • Handling physical token and card requests (business applications such as Target2, Euroclear)
  • Managing Data Loss Prevention (DLP) tool and handling alerts
  • Helping to create new SIEM rules
  • Handling SIEM alerts for security incidents
  • Handling Microsoft Defender and Purview alerts
  • Handling bi-monthly phishing simulations, monitoring results and creating reports
  • Helping to manage security awareness programme
  • Analysing possible phishing emails reported by end users
  • Participating security incident response activities
Loading...