← Back to list

Job
Security Operations Analyst (Cyber Defense Operations)
Security Engineer
• Remote
• Full-time
•
Spain
Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst in a global 24/7 SOC. The role focuses on alert triage, threat investigation, log analysis and incident response.
Responsibilities
- ▹Monitor, triage and investigate security alerts across SIEM, EDR, Microsoft security tools and cloud platforms
- ▹Analyze logs from Windows, Linux, databases, applications, web servers, firewalls and NIDS/HIDS
- ▹Investigate suspicious activity, identify root causes and determine remediation or escalation
- ▹Support incident response, remediation and recovery activities
- ▹Analyze network and security events using TCP/IP, syslog, firewall and network monitoring data
- ▹Improve detection quality and reduce false positives through tuning
- ▹Gather technical information from clients to improve monitoring and detection
- ▹Prepare and present security reports and technical findings
- ▹Contribute to SOC procedures, documentation, knowledge bases and quality-control processes
Requirements
- ▹5+ years of relevant IT/cybersecurity experience, including alert triage and incident support
- ▹Hands-on experience in a SOC environment
- ▹Strong experience with SIEM and EDR platforms
- ▹Advanced log analysis across Windows/Linux, databases, applications and infrastructure
- ▹Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender
- ▹Cloud security experience across Azure, AWS and/or GCP
- ▹Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel or ELK
- ▹Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike
- ▹Knowledge of email security, network monitoring and incident response
- ▹Strong knowledge of Linux, macOS and Windows
- ▹Fluent English with excellent written and verbal communication
Nice to have
- ▹Experience on an Incident Response team with Tier-1/Tier-2 incident triage
- ▹AWS security monitoring experience across IaaS, PaaS or SaaS environments
- ▹Scripting with Python, PowerShell, Bash, Ruby or similar
- ▹Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA or MCSE
- ▹Customer-facing cybersecurity experience
Soft skills
Excellent written and verbal communication
What we offer
- ▹Hybrid (Valencia, Spain) or remote across EMEA
- ▹Full-time contract for 6 months, with potential extension
- ▹Work in a global 24/7 cybersecurity operation with specialists across regions
About the company
Pragmatike is recruiting on behalf of a major international organization.
Languages: Angol: folyékony
Similar jobs

Job
Security Operations Analyst (SIEM Operations and Threat Detection)
Talan
Data Science
+8
💰 Salary: not specified
🏢 On-site
València
🗣️ EN

Job
Security Operations Analyst (SIEM Operations and Threat Detection)
Talan
Data Science
+8
💰 Salary: not specified
🔀 Hybrid
Vigo
🗣️ EN

Job
Security Operations Analyst (SIEM & Threat Detection)
Pragmatike
+4
💰 Salary: not specified
🌍 Remote
🗣️ EN

Job
Cybersecurity Consultant (German & English Speaking) - EY GDS Spain - Hybrid
EY
Powershell
+3
💰 Salary: not specified
🏢 On-site
Malaga
🗣️ EN

Job
Cybersecurity Analyst - RDT Security Platforms
Roche
+7
💰 Salary: not specified
🏢 On-site
Madrid
🗣️ EN

Job
Infrastructure Security Engineer – London
SpaceXAI
AI/MLCloudformation
+8
💰 Salary: not specified
🏢 On-site
Dublin
🗣️ EN