Senior Cloud Security Operations Analyst (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Cloud Security Operations Analyst (Cloud Security): Protecting Pega’s commercial cloud assets and offerings through continuous monitoring and incident response with an accent on proactive, automated detection and mitigation tactics. Focus on identifying indicators of compromise, conducting adversarial threat hunts, and developing high-confidence detection use cases in AWS and GCP.
Location: Poland (inferred from salary currency)
Salary: 197,600 - 295,400 PLN annually
Company
A leader in customer engagement and digital process automation providing a commercial SaaS platform to global clients.
What you will do
- Perform security monitoring and investigations of Pega Cloud commercial environments using various security tools.
- Lead incident response activities, including identification, containment, eradication, and recovery of security events.
- Conduct adversarial threat hunts to identify evidence of attacker presence not caught by existing detections.
- Develop SOPs, policies, and playbooks for CSOC detection and analysis methodologies.
- Collaborate with threat detection teams to create high-confidence Splunk notables for known and emerging threats.
- Build dashboards and reports to maintain and improve situational awareness of the cloud security posture.
Requirements
- 3+ years of experience in cloud architecture, infrastructure, and security, specifically with AWS and/or GCP.
- 3+ years in operational SIEM roles, focusing on analysis, investigations, and incident response.
- 3+ years of experience with EDR/XDR platforms and related response techniques.
- Operational experience performing investigations within Linux, Windows, and Kubernetes (EKS/GKE) environments.
- Solid working knowledge of the MITRE ATT&CK framework (cloud matrix) and OWASP Top 10.
- Bachelor’s degree in Cybersecurity, Computer Science, Data Science, or a related field.
Nice to have
- Experience with Google Chronicle SIEM.
- Proficiency in Python, Linux shell/bash, or PowerShell scripting.
Culture & Benefits
- Competitive global benefits program including bonus incentives and employee equity.
- Continuous learning and professional development opportunities.
- Innovative, inclusive, agile, and flexible work environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →