L2 Security Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
L2 Security Analyst (Cybersecurity): Leading deep-dive investigations and incident response for high-severity security threats with an accent on threat hunting, evidence validation, and mentoring L1 analysts. Focus on improving detection workflows, providing on-call escalation support, and ensuring robust incident handling across endpoint, cloud, and network telemetry.
Location: Must be based in Romania (Remote/Hybrid)
Company
is a technology company with 20 years of experience, providing digital evolution and managed services for major brands in retail, manufacturing, and finance.
What you will do
- Lead investigations into high-severity, ambiguous security incidents across diverse telemetry sources.
- Perform targeted threat hunting and hypothesis testing to validate suspicious activity.
- Produce clear, evidence-based investigation records and response recommendations.
- Review escalations from L1 analysts and provide operational guidance to improve case quality.
- Participate in scheduled weekly on-call escalation coverage.
- Identify visibility gaps and propose automation improvements for detection and response playbooks.
Requirements
- Strong hands-on experience in SOC, MDR, or incident response.
- Excellent written and verbal communication in English.
- Must be based in Romania.
- Deep practical knowledge of investigation across endpoint, identity, email, cloud, and network.
- Ability to assess scope, impact, and urgency in complex security cases.
- Responsible AI literacy and ability to validate AI-assisted outputs against source evidence.
Nice to have
- 3-5+ years of experience in cybersecurity operations.
- Hands-on experience with Microsoft Sentinel, Defender XDR, or Cortex XSOAR.
- Strong KQL or scripting experience (PowerShell).
- Operational security certifications (SC-200, SC-100, AZ-500).
- German language proficiency.
Culture & Benefits
- Holistic wellbeing program covering physical, emotional, and social health.
- Flexible work-life fusion approach to support dynamic IT work environments.
- Access to medical benefits, gym support, and personalized fitness options.
- Active community engagement through team events and the Healthy Habits Club.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →