← Back to list
Job

Security Operations Analyst (Cyber Defense Operations)

Security Engineer • Remote • Full-time • Spain Spain

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst in a global 24/7 SOC. The role focuses on alert triage, threat investigation, log analysis and incident response.

Responsibilities

  • ▹Monitor, triage and investigate security alerts across SIEM, EDR, Microsoft security tools and cloud platforms
  • ▹Analyze logs from Windows, Linux, databases, applications, web servers, firewalls and NIDS/HIDS
  • ▹Investigate suspicious activity, identify root causes and determine remediation or escalation
  • ▹Support incident response, remediation and recovery activities
  • ▹Analyze network and security events using TCP/IP, syslog, firewall and network monitoring data
  • ▹Improve detection quality and reduce false positives through tuning
  • ▹Gather technical information from clients to improve monitoring and detection
  • ▹Prepare and present security reports and technical findings
  • ▹Contribute to SOC procedures, documentation, knowledge bases and quality-control processes

Requirements

  • ▹5+ years of relevant IT/cybersecurity experience, including alert triage and incident support
  • ▹Hands-on experience in a SOC environment
  • ▹Strong experience with SIEM and EDR platforms
  • ▹Advanced log analysis across Windows/Linux, databases, applications and infrastructure
  • ▹Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender
  • ▹Cloud security experience across Azure, AWS and/or GCP
  • ▹Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel or ELK
  • ▹Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike
  • ▹Knowledge of email security, network monitoring and incident response
  • ▹Strong knowledge of Linux, macOS and Windows
  • ▹Fluent English with excellent written and verbal communication

Nice to have

  • ▹Experience on an Incident Response team with Tier-1/Tier-2 incident triage
  • ▹AWS security monitoring experience across IaaS, PaaS or SaaS environments
  • ▹Scripting with Python, PowerShell, Bash, Ruby or similar
  • ▹Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA or MCSE
  • ▹Customer-facing cybersecurity experience

Soft skills

Excellent written and verbal communication

What we offer

  • ▹Hybrid (Valencia, Spain) or remote across EMEA
  • ▹Full-time contract for 6 months, with potential extension
  • ▹Work in a global 24/7 cybersecurity operation with specialists across regions

About the company

Pragmatike is recruiting on behalf of a major international organization.

Languages: Angol: folyékony

Similar jobs