Назад
Company hidden
4 дня назад

Senior Cybersecurity Analyst (Cyber Defense Operations)

Формат работы
remote (только Europe)
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Spain/Europe
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cybersecurity Analyst (Cyber Defense Operations) (SIEM/EDR/SOC): Monitoring, investigating, and responding to security incidents across SIEM, EDR, Microsoft Security, cloud, network, and operating-system environments with an accent on threat detection, incident investigation, and remediation. Focus on analyzing complex security logs, improving detection quality, coordinating incident containment, and documenting technical findings for clients.

Location: Remote from Spain or any other European country; conditions also mention Cairo. The role supports a 24x7 Security Operations Centre.

Company

International consulting group specializing in innovation and business transformation through technology, with expertise across data, cloud, applications, management consulting, and cybersecurity.

What you will do

  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft Security, and cloud environments.
  • Investigate cyber threats and incidents, identify root causes, and recommend remediation actions.
  • Analyze logs from Windows, Linux, databases, applications, web servers, firewalls, and network security systems.
  • Work with Incident Response teams and cybersecurity specialists to contain and resolve threats.
  • Maintain detection and monitoring tools, improve detection quality, reduce false positives, and manage security tickets.
  • Prepare incident summaries, security reports, technical findings, documentation, and knowledge-base updates while working with clients.

Requirements

  • 5+ years of experience in IT, cybersecurity, or security operations.
  • Hands-on SOC experience, including security alert triage and incident investigation.
  • Strong knowledge of SIEM and EDR technologies, including platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, or ELK.
  • Experience with Microsoft Security technologies, Azure, AWS and/or GCP, and at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.
  • Strong networking and TCP/IP knowledge, with experience analyzing Windows and Linux security logs, email security, network monitoring, incident response, and security tickets.
  • Excellent spoken and written English required.

Nice to have

  • Incident Response experience, particularly at Tier I/II level.
  • AWS monitoring experience across IaaS, PaaS, and SaaS environments.
  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar technologies.
  • Cybersecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.
  • Experience working in a global, distributed SOC.

Culture & Benefits

  • Full-time permanent employment or contractor mode.
  • Remote work from Spain or another European country.
  • Professional growth and learning opportunities.
  • Multicultural and international working environment.
  • Private medical insurance, life insurance, flexible remuneration with lunch and transport cards, online language classes, and a Smart Office Pack.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →