7 дней назад
Senior Cybersecurity Analyst (Cyber Defense Operations)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cybersecurity Analyst (Cyber Defense Operations) (SIEM/EDR/SOC): Monitoring, investigating, and responding to security incidents across critical environments in a 24x7 Security Operations Centre with an accent on threat detection, log analysis, and cloud security. Focus on investigating root causes, improving detection quality, coordinating incident response, and documenting technical findings for clients.
Location: Lisbon; remote work from Spain or any other European country.
Company
is an international consulting group specializing in innovation, technology, and business transformation, serving global clients across multiple industries.
What you will do
- Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft Security, and cloud environments.
- Investigate cyber threats and incidents, identify root causes, and recommend remediation actions.
- Analyze logs from Windows, Linux, databases, applications, web servers, firewalls, and network security systems.
- Coordinate with Incident Response teams and cybersecurity specialists to contain and resolve threats.
- Maintain monitoring and detection tools, improve detection quality, reduce false positives, and manage security tickets.
- Prepare incident reports and technical findings, improve SOC documentation, and work with clients to optimize security monitoring.
Requirements
- 5+ years of experience in IT, cybersecurity, or security operations.
- Hands-on experience in a SOC environment, including alert triage and incident investigation.
- Strong knowledge of SIEM and EDR technologies, including platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, or ELK.
- Experience with Microsoft Security technologies, Azure, AWS and/or GCP, networking, TCP/IP, and security logging across Windows and Linux.
- Knowledge of email security, network monitoring, incident response, and security ticket management.
- Excellent spoken and written English; remote work must be performed from Spain or another European country.
Nice to have
- Incident Response experience, particularly at Tier I or Tier II level.
- AWS monitoring experience across IaaS, PaaS, and SaaS environments.
- Scripting experience with Python, PowerShell, Bash, Ruby, or similar technologies.
- Cybersecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.
- Experience working in a global, distributed SOC.
Culture & Benefits
- Full-time permanent employment or contractor mode.
- Professional growth and learning opportunities.
- Multicultural international working environment.
- Private medical and life insurance, flexible remuneration with lunch and transport cards, and online language classes.
- Smart Office Pack.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
8 дней назад
Associate SOC Analyst (Cybersecurity)
85 000 - 90 000$
7 дней назад
Threat Analyst 2 (Cybersecurity)
10 дней назад
Threat Analyst 1 (Cybersecurity)
56 000 - 93 000CAD
10 дней назад
Cyber Security Analyst
7 дней назад
Global Cybersecurity Operations Analyst
7 дней назад