SOC Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
SOC Analyst (Cybersecurity): Managing alert triage and threat analysis for an AI infrastructure platform with an accent on high-speed incident response and signal-to-noise optimization. Focus on building reliable triage functions, implementing runbook improvements, and ensuring audit readiness for SOC 2 and ISO 27001.
Location: Hybrid (Madrid or Barcelona, Spain)
Company
is an AI infrastructure startup backed by Y Combinator and a16z, building autonomous AI workforces for global enterprises.
What you will do
- Own the alert queue during coverage hours, prioritizing and dispositioning alerts within SLAs.
- Analyze logs across cloud, identity, and endpoint sources using MITRE ATT&CK.
- Escalate incidents with actionable context and clear English documentation.
- Rigorously follow and propose improvements to operational runbooks.
- Collaborate with SOC Engineers in a weekly feedback loop to tune detection logic.
- Organize and maintain evidence for SOC 2 and ISO 27001 audits.
Requirements
- 2–3 years of experience as a SOC analyst or in a blue team/detection role.
- Hands-on experience with SIEM and EDR for investigation and escalation.
- Proficiency in log analysis across cloud and endpoint sources.
- Working knowledge of MITRE ATT&CK and common attack patterns.
- English: B2+ proficiency required for incident notes and escalation.
- Ability to work on a coverage-hours rotation.
Nice to have
- Experience with AWS, Azure, or GCP consoles.
- Basic scripting skills in Python or Bash.
- Phishing and email threat analysis experience.
- Certifications such as BTL1, GCIH, Security+, or CySA+.
- Prior experience in a SaaS or tech startup environment.
Culture & Benefits
- Competitive salary and equity in a high-growth AI startup.
- Comprehensive healthcare, dental, and vision coverage.
- Culture of extreme ownership, craftsmanship, and first-principles thinking.
- Work with a world-class team of engineers and builders.
- High-autonomy environment focusing on meritocracy and talent density.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →