About Neo4j
Neo4j is the leader in Graph Database & Analytics, helping organizations uncover hidden patterns and relationships across billions of data connections deeply, easily, and quickly. Customers use Neo4j to gain a deeper understanding of their business and reveal new ways of solving their most pressing problems. Over 84% of Fortune 100 companies use Neo4j, along with a vibrant community of 250,000+ developers, data scientists, and architects across the globe.
At Neo4j, we’re proud to build the technology that powers breakthrough solutions for our customers. These solutions have helped NASA get to Mars two years earlier, broke the Panama Papers for the ICIJ, and are helping Transport for London to cut congestion by 10% and save $750M a year. Some of our other notable customers include Intuit, Lockheed Martin, Novartis, UBS, and Walmart.
Neo4j experienced rapid growth this year as organizations looking to deploy generative AI (GenAI) recognized graph databases as essential for improving it’s accuracy, transparency, and explainability. Growth was further fueled by enterprise demand for Neo4j’s cloud offering and partnerships with leading cloud hyperscalers and ecosystem leaders. Learn more at neo4j.com and follow us on LinkedIn.
Our Vision
At Neo4j, we have always strived to help the world make sense of data.
As business, society and knowledge become increasingly connected, our technology promotes innovation by helping organizations to find and understand data relationships. We created, drive and lead the graph database category, and we’re disrupting how organizations leverage their data to innovate and stay competitive.
The Role
Working with the Security Operations Lead, in this role you will operate our security operations capability so that it provides an appropriate monitoring, detection, investigation and response capability. Using a range of tools, working with your security engineering colleagues, you will be part of a team building a SOC service that supports our client and internal services.
Core Responsibilities
You will be responsible for:
- Incident triage, analysis, response and investigations based on alerts.
- Monitoring and responding to endpoint detection and response.
- Investigating detected, suspicious behaviours and escalating as appropriate.
- Proactively investigating alerts and suspicious activities, following through to gain a full understanding of the behaviour.
- Adding context to a confirmed incident to aid understanding and response.
- Supporting the development of incident handling procedures.
- Supporting incident/crisis management.
- Identifying, documenting and developing detections.
- Building and developing incident playbooks.
- Creating reports and visualisations of attacks.
- Tracking trends for metrics and reporting.
- Briefing the CISO on alert findings and their impact on the business.
- Continuously working to decrease false positives.
- Maintaining the detection rules database.
Competencies
To be successful in this role you should:
- Have a minimum of 5 years experience or knowledge in security operations or related roles.
- Enjoy the challenge of delivering security into business operations.
- Work independently to perform analyses and investigations
- Have experience or knowledge of working in modern cloud environments, such as AWS, GCP or Azure.
- Have experience using Security Information Event Management (SIEM) and related technologies.
- Have experience using Endpoint Detection & Response (EDR) and related technologies.
- Have strong analytical and investigation skills.
- Be proficient in several programming languages, including Python, and/or PHP.
- Have excellent written and verbal communication skills as well as receptive listening skills, with ability to present complex ideas in a clear, concise fashion to technical and non-technical audiences.
- Proactively contribute ideas to the development of security at Neo4j.
- Have an awareness of hacking techniques and trends and investigation or awareness of Cyber Threat Intelligence in a business context.
Nice To Have
- A software development background is desirable.
- Appropriate certifications or relevant experience in SOC operations.