4 дня назад
Agentic Detection & Response Specialist (AI Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Agentic Detection & Response Specialist (AI Security): Building and improving security operations capabilities through advanced incident investigations, detection engineering, security automation, and AI-assisted response with an accent on endpoint, identity, network, cloud, and SIEM environments. Focus on designing detection logic, developing SOAR playbooks, applying agentic security workflows, and reducing alert fatigue through higher-quality investigations and response automation.
Location: Spain; fully remote work
Company
is a global technical consultancy that develops customized software and technology projects, provides specialized consulting and training, and works across areas including artificial intelligence and blockchain.
What you will do
- Lead complex incident investigations and advanced L3 security escalations.
- Analyze endpoint, identity, network, cloud, and SIEM activity to determine scope, impact, and response actions.
- Design and improve detection rules, correlation logic, and investigation queries.
- Develop security automations, integrations, and SOAR playbooks for operational workflows.
- Collaborate with architects and engineers on AI-assisted and agentic security capabilities.
- Improve analyst escalations, detection quality, response efficiency, and alert fatigue.
Requirements
- 6+ years of Security Operations experience with L3 investigations or advanced escalations.
- Strong background in incident response, threat hunting, detection engineering, and security operations.
- Experience with SIEM and EDR/XDR technologies, including Microsoft Sentinel, Microsoft Defender XDR, or equivalent platforms.
- Strong query skills with KQL, SPL, or similar languages, plus scripting and automation experience with Python, PowerShell, APIs, or SOAR technologies.
- Fluent Spanish and English required.
- Ability to own initiatives from idea to implementation and collaborate across technical teams.
Nice to have
- AWS security services experience.
- Experience with Torq, Logic Apps, Azure Functions, or similar automation platforms.
- Security Copilot, AI-assisted investigations, LLMs, agents, or orchestration frameworks exposure.
- Experience in MDR/MSSP environments.
Culture & Benefits
- Fully remote work with a flexible schedule of 35 hours per week.
- Health insurance with dental co-payment, flexible compensation, and a monthly electricity and Internet allowance.
- Training or equipment budget, free Microsoft certifications, and English lessons.
- Birthday day off, gym and sports discounts, team-building events, and additional employee perks.
- Flat, collaborative, multidisciplinary teams with an emphasis on Agile practices, technical excellence, knowledge-sharing, innovation, and transparency.
Hiring process
- Phone screen.
- Two interviews with the team.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Writer
10 дней назад
Staff Detection and Response Engineer (AI Security)
146 000 - 240 000$
8 дней назад
Security Operations Center Engineer (Splunk)
7 дней назад
Senior Specialist, Incident Response (Cybersecurity)
Runway
9 дней назад
Detection & Response Engineer (AI Security)
240 000 - 290 000$
10 дней назад
Senior Detection & Security Automation Engineer
7 дней назад