← Back to list
Job · Senior

Senior Cybersecurity Analyst (Cyber Defense Operations)

Security Engineer • Senior • Hybrid • Full-time • Romania Bucharest, Romania

Join a global 24x7 Security Operations Centre (SOC) team that monitors, investigates and responds to security incidents. A hands-on role that directly improves threat detection and incident response.

Responsibilities

  • ▹Monitor, triage and investigate security alerts across SIEM, EDR, Microsoft Security and cloud environments
  • ▹Investigate potential cyber threats and security incidents, identifying root causes and appropriate remediation actions
  • ▹Analyze logs from Windows, Linux, databases, applications, web servers, firewalls and network security systems
  • ▹Work closely with Incident Response teams and cybersecurity specialists to contain and resolve threats
  • ▹Use and maintain security monitoring and detection tools, improving detection quality and reducing false positives
  • ▹Prepare clear security reports, incident summaries and technical findings for clients
  • ▹Manage security-related tickets and ensure incidents are properly documented
  • ▹Contribute to improving SOC processes, procedures, documentation and knowledge bases
  • ▹Work directly with clients to understand their environments and optimize security monitoring
  • ▹Stay up to date with emerging threats, technologies and cybersecurity best practices

Requirements

  • ▹5+ years of experience in IT, Cybersecurity or Security Operations
  • ▹Hands-on experience in a SOC environment, including security alert triage and incident investigation
  • ▹Strong knowledge of SIEM and EDR technologies
  • ▹Experience with platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight or ELK
  • ▹Experience with Microsoft Security technologies: Defender for Endpoint, Microsoft 365, Sentinel, Azure Security and XDR
  • ▹Strong understanding of Azure, AWS and/or GCP
  • ▹Experience with at least one EDR solution, such as Microsoft Defender for Endpoint or CrowdStrike
  • ▹Strong knowledge of networking and TCP/IP
  • ▹Excellent experience analyzing security logs across Windows and Linux environments
  • ▹Knowledge of email security, network monitoring and incident response
  • ▹Experience managing and processing security tickets

Nice to have

  • ▹Experience working in an Incident Response team, particularly Tier I/II
  • ▹Experience monitoring AWS environments, including IaaS, PaaS and SaaS
  • ▹Scripting experience with Python, PowerShell, Bash, Ruby or similar
  • ▹Cybersecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA or MCSE
  • ▹Experience working in a global, distributed SOC

Soft skills

ProactivityCollaborationClear reporting

What we offer

  • ▹Full-time permanent employment contract or contractor mode
  • ▹Remote location in Spain or any other European country
  • ▹Professional growth and learning opportunities
  • ▹Multicultural team in an international environment
  • ▹Private medical insurance, life insurance, lunch and transport card as part of the flexible remuneration pack, and online language classes
  • ▹Smart Office Pack

About the company

Talan is an international consulting group specializing in innovation and business transformation through technology. It has over 7,200 consultants in 21 countries and is headquartered in Paris.

Languages: Angol: kiváló szóban és írásban

Similar jobs