跳到内容

通用信息

地点:Bucharest, Romania 
角色 ID
212859
工作人员类型
Regular Employee
工作室/部门
CT - Security
弹性工作安排
Hybrid

Description & Requirements

Electronic Arts 打造更高层次的娱乐体验,激励世界各地的玩家和粉丝。在这里,每个人都是故事的主角。活跃社群,畅联全球。这里充满创造力,鼓励新观点,注重好创意。这是一支人人都能让游戏成为现实的团队。

Position Overview

Provide 24×7 monitoring for security alerts and incidents (eyes on the glass). Work with different security tools to analyze data to confirm or infirm an incident and assist with all Intellectual Property (IP) incidents. The Security Operations Analyst is the first point of contact for EA internal security inquiries and collaborates with all security pillars and IT teams to resolve ongoing security incidents. Participate in building new detections based on observed trends and create searches, visualizations, dashboards, and alerts.

Responsibilities:

  • Monitor/detect/investigate security alerts received from EDR, IDS/IPS, SaaS/IaaS, and malware protection tools into the SIEM.
  • Monitor email and slack for security notifications or requests.
  • Execute response actions per playbook (e.g., isolation, blocking, credential resets) and escalate per workflow.
  • Participate in shifts/on‑call to ensure 24×7 coverage.
  • Track potential security incidents in the ticketing platform, own and drive resolution.
  • Perform daily follow‑ups on outstanding cases.
  • Coordinate with other EA teams to resolve or escalate security alerts.
  • Investigate incidents detected in SIEM and those reported by users over email/Slack.
  • Suggest improvements to processes and workflows.
  • Assist with security tools/endpoint agent deployments.
  • Meet SLAs for internal tickets and track SLAs for tickets opened to other teams.
  • Send security notifications to users when required.
  • Support security automation tools with information on new incident types/patterns observed.
  • Provide root cause analysis where possible.
  • Escalate incidents/alerts to the next level per agreed workflows.
  • Provide support services to internal users for deployed endpoint solutions.
  • Use diverse tools to gather information necessary to resolve incidents.
  • Investigate cloud logs for anomalies.
  • Test new security alerts that are candidates for 24×7 monitoring and propose new alerts for implementation.

 

Required Skills:

  • Understanding of security principles and common security techniques/technologies.
  • Experience with virtual environments (ESX, QEMU, VirtualBox, etc.).
  • Experience with endpoint protection solutions.
  • Basic Active Directory knowledge.
  • Incident Response knowledge/experience.
  • Basic networking knowledge.
  • Cloud fundamentals.

 

Nice to Have:

  • Scripting knowledge (bash, Python, PowerShell, etc.).
  • Experience with Security Information and Event Management tools.
  • Industry certifications (e.g., CompTIA Security+, CEH, CCNA).
  • Linux certifications (e.g., LPIC‑1, LFCE).

 

Success Measures (SOC‑aligned):

  • SLA attainment on ticket handling and escalations.
  • MTTA/MTTD within targets for assigned alert classes.
  • Investigation quality (complete timelines, evidence, and accurate classification).
  • Documented process/runbook improvements and alert proposals per quarter.

 



Electronic Arts
我们拥有全面的游戏组合和丰富的体验,在世界各地设有分支机构,而且在整个 EA 提供大量机会。我们非常重视适应能力、韧性、创造力和好奇心。我们提供领导岗位让您发挥潜力,为学习和尝试提供空间,赋能您出色地完成工作并寻求成长的机会。

我们对福利计划采用整体方法,强调身体、情感、财务、职业和社区健康,以支持平衡的生活。我们的套餐专为满足当地需求而量身定做,可能包括医疗保险、心理健康支持、退休储蓄、带薪休假、家事休假、免费游戏等。我们营造和谐的环境,让各个团队始终都能尽展所能。

Electronic Arts 是一个注重机会平等的雇主。在聘用员工时不会考虑其种族、肤色、国籍、血统、生理性别、社会性别、性别认同或表达、性取向、年龄、遗传信息、宗教、身心障碍、医疗状况、怀孕状况、婚姻状况、家庭状况或兵役状况,或任何受法律保护的其他特征。我们也会遵守相关法律,考虑招聘有过犯罪记录的合格应聘者。EA 还会根据适用法律的要求,为合资格的残障人士提供工作场所的便利。