← Back to list
Job

Security Operations Analyst (SIEM & Threat Detection)

Security Engineer • Remote • Full-time • Spain Spain

Pragmatike is recruiting on behalf of a major international organization for a SIEM and threat detection specialist in a global cybersecurity operations team. The role focuses on SIEM administration, detection engineering and detection optimization rather than traditional SOC monitoring.

Responsibilities

  • ▹Develop, implement, validate, tune and maintain security monitoring and detection capabilities
  • ▹Administer and optimize SIEM platforms across multiple customer environments
  • ▹Manage detection rules and use cases throughout their lifecycle
  • ▹Onboard, integrate, test and validate new security data sources and telemetry feeds
  • ▹Review and improve detection logic, security content and monitoring configurations
  • ▹Work with Threat Intelligence and Incident Response to turn threats into actionable detections
  • ▹Support cybersecurity architecture reviews
  • ▹Build security metrics, dashboards, KPIs and service-performance reports
  • ▹Evaluate detection effectiveness and reduce false positives
  • ▹Maintain SOC procedures, standards and documentation, and prepare technical reports

Requirements

  • ▹5+ years of relevant IT/cybersecurity experience
  • ▹Proven hands-on experience administering a SIEM platform, ideally Splunk or Microsoft Sentinel
  • ▹Strong experience with SIEM/EDR environments and technical security analysis
  • ▹Deep knowledge of Microsoft Security technologies
  • ▹Strong cloud security knowledge across Azure, AWS and/or GCP
  • ▹Experience with platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel or ELK
  • ▹Experience with at least one EDR platform such as Microsoft Defender for Endpoint or CrowdStrike
  • ▹Knowledge of email security, network monitoring and incident response
  • ▹Strong Linux, macOS and Windows knowledge
  • ▹Fluent English with excellent written and verbal communication

Nice to have

  • ▹Experience designing SIEM architecture from initial design through implementation
  • ▹Experience building data-ingestion pipelines for diverse cloud and on-premise log sources
  • ▹AWS security monitoring experience
  • ▹Scripting with Python, PowerShell, Bash, Ruby or similar
  • ▹Security certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA or MCSE
  • ▹Experience working across multiple customer environments

Soft skills

Excellent written and verbal communication

What we offer

  • ▹Hybrid (Valencia, Spain) or remote across EMEA
  • ▹Full-time contract for 6 months, with potential extension

About the company

Pragmatike is recruiting on behalf of a major international organization.

Languages: Angol: folyékony

Similar jobs