Назад
Company hidden
14 часов назад

SOC Analyst (Cybersecurity)

3 500 - 6 500€
Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
France/Poland/Spain +21 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SOC Analyst (Cybersecurity): Investigating and triaging security alerts across endpoint, network, email, and identity systems with an accent on Microsoft 365, Entra ID, SIEM investigations, and incident escalation. Focus on writing detection queries, tuning SIEM use cases, analyzing phishing and account-compromise threats, and supporting shift-based cyber defense operations.

Location: Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Hungary, Italy, Latvia, Lithuania, Luxembourg, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, or the Netherlands

Salary: EUR 3,500–6,500 gross per month. Final compensation depends on experience, location, and professional growth.

Company

hirify.global provides cybersecurity and digital services for international organizations and works with clients across multiple industries, including FinTech, healthcare, retail, and telecommunications.

What you will do

  • Investigate alerts escalated from L1/L2 across endpoint, network, email, and identity environments.
  • Determine whether alerts are true incidents, assess scope, and escalate confirmed incidents to Incident Response.
  • Investigate phishing, suspicious sign-ins, and account-compromise threats in Microsoft 365 and Entra ID.
  • Propose detection tuning and new SIEM use cases based on investigation findings.
  • Write detailed case notes and periodic security reports.
  • Participate in shifts and on-call rotations.

Requirements

  • 4+ years of cybersecurity experience, including 1–2 years in a Tier 2 SOC role.
  • Hands-on experience with at least one major SIEM, such as Microsoft Sentinel, Splunk, QRadar, or Elastic, and at least one EDR/XDR tool.
  • Investigation experience across endpoint, network, email, and identity environments, including Microsoft 365 and Entra ID.
  • Ability to write queries in KQL, SPL, or an equivalent language.
  • Working knowledge of MITRE ATT&CK and common attack techniques.
  • Upper-Intermediate English or higher, readiness for shift work and on-call rotation, and a clean record for background verification.

Nice to have

  • CySA+, SC-200, BTL1/BTL2, or GCIH certification.
  • Threat hunting, MSSP, or multi-tenant SOC experience.
  • SOAR experience and network traffic analysis with Wireshark, Zeek, or IDS/IPS.
  • Scripting experience in Python or PowerShell.

Culture & Benefits

  • Opportunities to work with leaders in FinTech, healthcare, retail, telecommunications, and other industries.
  • Mentoring, onboarding, professional development, and opportunities to change projects or develop expertise in a new business domain.
  • Additional earnings of up to EUR 1,000 per month through company activities, included in the annual bonus.
  • Access to a continuously updated corporate training portal and certification compensation.
  • Private health insurance and sports compensation depending on the type of employment, plus employee referral and corporate social programs.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →