CSIRT Analyst - Cybersecurity
- Employment type
- Temporary
- Location
- Lancy
- First posted
- 07 August 2026
- 100%
- Temporary
- -, 1212 Grand-Lancy
Experis SA, the IT branch of ManpowerGroup, is a leader in recruiting specialized IT profiles. We offer flexible solutions: temporary missions, permanent placements, project management, and professional training. Our expertise covers digital transformation, cybersecurity, cloud, infrastructure, and more. Thanks to our global reach combined with a pragmatic and personalized approach, we effectively support professionals and companies in achieving their goals.
CSIRT Analyst - Cybersecurity
Experis SA, the IT branch of ManpowerGroup, is a leader in recruiting specialized IT profiles. We offer flexible solutions: temporary missions, permanent placements, project management, and professional training. Our expertise covers digital transformation, cybersecurity, cloud, infrastructure, and more. Thanks to our global reach combined with a pragmatic and personalized approach, we effectively support professionals and companies in achieving their goals.
We are looking for an experienced CSIRT Analyst to join a Cyber Defense team within a large international financial organization based in Geneva.
This strategic mission, with an initial duration of one year (renewable), aims to strengthen cyber incident response capabilities within a highly sensitive and regulated environment.
Your responsibilities
In this key role within the CSIRT, you will be required to:
- Ensure CSIRT operational activities: detection, qualification, investigation, and remediation of security incidents.
- Lead cyber crisis cells: activation of the emergency plan, multi-team coordination.
- Produce technical and executive reports for management.
- Conduct complex investigations and document the actions taken.
- Perform Threat Intelligence monitoring, including the analysis of attack techniques (MITRE ATT&CK).
- Participate in vulnerability management and patch management.
- Contribute to continuous improvement: CSIRT playbooks, lessons learned, best practices.
- Take part in table-top exercises and internal/external audits.
- 100% on-site position due to the sensitivity of the activities (no teleworking).
Skills sought:
Professional skills
- Proven experience in cyber incident management and incident response (CSIRT/SOC).
- Expertise in security investigation (logs, suspicious activities, attack chain).
- Knowledge of the Swiss regulatory framework (FINMA, LPD) is an asset.
- Knowledge or mastery of DLP solutions is a plus.
- Technical skills
- Mastery of SIEM / EDR / SOAR solutions.
- Very good skills in log analysis.
- Cloud knowledge (Azure, AWS, or equivalent).
- Scripting: Python, Bash, PowerShell.
- Good notions in malware analysis and forensics are an asset.
- Knowledge of pentest is an asset.
- Interpersonal skills
- Ability to coordinate technical and business teams.
- Communication ease and pedagogical skills.
- High resistance to stress and ability to make decisions in critical situations.
- Leadership in crisis cells.
- Team spirit and sense of sharing.
- Education & experience
- Master (or equivalent) in cybersecurity / computer science.
- 7+ years of experience in cyber incident response.
- Certifications appreciated: OSCP, CISSP, GCIH, GCFA, CHFI, CEH, ISO 27035, SANS FOR508-
Languages
French & English: professional level required.
Why join us?
Strategic project within a large international organization.
High-level cyber environment, exposed to complex issues.
Dynamic team, in continuous improvement, with a strong security culture.
Automatically translated from the original.
Posted 6 weeks ago