Назад
Company hidden
5 дней назад

Cybersecurity Specialist – Incident Response & Threat Detection (XSIAM)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Portugal
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cybersecurity Specialist – Incident Response & Threat Detection (XSIAM) (XSIAM, XSOAR, SIEM): Leading end-to-end incident response and developing detection content for SOC operations with an accent on forensic analysis, threat hunting, phishing investigation, and alert tuning. Focus on investigating complex incidents, building actionable playbooks and runbooks, improving detection coverage, and mentoring analysts.

Location: Paco de Arcos, Portugal; hybrid work with 3 days in the office

Company

hirify.global provides cybersecurity services that help clients manage evolving cyber threats and improve their security posture.

What you will do

  • Analyze, triage, contain, eradicate, and recover from phishing, malware, and SOC-escalated security incidents.
  • Develop and maintain actionable incident response playbooks and runbooks.
  • Create detection use cases and fine-tune alerts to reduce false positives and improve coverage.
  • Conduct forensic investigations, threat hunting, phishing analysis, and root-cause assessments.
  • Prepare incident reports and present technical findings to clients and internal teams.
  • Review analysts’ work, mentor junior team members, and act as an escalation point for complex cases.

Requirements

  • At least 4 years of experience in cybersecurity services, preferably in a SOC or incident response function.
  • Hands-on experience with XDR and SIEM technologies, including Palo Alto XSIAM, XSOAR, and Microsoft Defender.
  • Experience developing playbooks, runbooks, detection use cases, and alert tuning.
  • Strong incident response, forensic analysis, threat hunting, and phishing analysis skills.
  • Experience resolving SOC-reported incidents, reviewing analysts’ work, and mentoring junior colleagues.
  • Strong communication, presentation, and client-facing skills.

Nice to have

  • CCD, BTL1, BTL2, OSCP, Palo Alto Networks XSIAM, or Microsoft SC-200 certifications.

Culture & Benefits

  • Continuous training in current cybersecurity technologies.
  • Work on large and complex projects for major market clients.
  • Access to DXC Learning, Udemy, LinkedIn courses, and certification opportunities.
  • Hybrid work model supporting in-person collaboration and flexibility.
  • Health insurance.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →