Junior SOC Analyst
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Junior SOC Analyst (Cybersecurity): Monitor SIEM alerts and perform Tier 1 triage in a high-innovation R&D environment with an accent on security monitoring, incident handling, and playbook execution. Focus on validating alerts, basic root-cause analysis, enriching with threat intel, and collaborating with IT teams for escalations and improvements.
Location: Érd, Hungary (hybrid, 60% home office)
Company
Leading R&D center for powertrain systems with over 500 professionals across multiple Hungarian locations.
What you will do
- Monitor SIEM alerts, triage by severity, risk, and business impact
- Validate alerts, gather context from user/host/network, and conduct basic root-cause analysis
- Execute incident playbooks, contain where approved, and escalate to higher tiers
- Maintain detailed ticketing and documentation for audits
- Enrich alerts with IOCs, threat intel, and pattern recognition
- Collaborate with IT teams on handovers and propose improvements to reduce false positives
Requirements
- Fluent English (written and spoken) essential for incident calls and documentation
- Solid cybersecurity foundations: CIA triad, attack vectors, MITRE ATT&CK
- Basic knowledge of Windows/Linux logs and networking (TCP/IP, DNS, HTTP/S)
- Analytical skills for log interpretation and structured troubleshooting
- Experience or strong interest in Microsoft Sentinel (SIEM) and Defender for Endpoint (EDR/XDR)
- Familiarity with ticketing systems like Jira and alert tuning
Nice to have
- Basic scripting in PowerShell or Python
- Cloud security exposure (Entra ID/Azure AD, AWS CloudTrail)
- IAM/Active Directory fundamentals
- Vulnerability management concepts (CVEs, patching)
Culture & Benefits
- Flexible working time and 60% home office
- Group accident and private medical insurance, free fruits
- Relaxation/fitness room, cafe/restaurant in office
- International projects, business trips with reimbursement
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →