Security Operations Analyst (SIEM & Threat Detection)
Pragmatike
Per potersi candidare bisogna risiedere sul posto. Visualizza offerte di lavoro simili qui sotto.
h3Location: Valencia, Spain, Hybrid OR Remote across EMEA /h3h3Employment: Full-Time Contract /h3h3Duration: 6 months, with potential extension /h3h3Language: Fluent English required /h3h3Industry: Cybersecurity / SIEM / Cloud Security /h3h3About The Opportunity /h3pPragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst specializing in SIEM and Threat Detection. You’ll join a global Cybersecurity Operations team focused on building, operating, and continuously improving the security monitoring capabilities protecting international organizations and their technology environments. Unlike a traditional SOC monitoring role, this position has a strong focus on SIEM administration, detection engineering, security content, data-source onboarding, use-case lifecycle management, and detection optimization. You’ll work closely with Threat Intelligence, Incident Response, and Cybersecurity Operations teams to turn security requirements and emerging threats into effective, measurable detection capabilities. /ph3What You’ll Do /h3ulliDevelop, implement, validate, tune, and maintain security monitoring and detection capabilities. /liliAdminister and optimize SIEM platforms across multiple customer environments. /liliManage security detection rules and use cases throughout their lifecycle. /liliOnboard, integrate, test, and validate new security data sources and telemetry feeds. /liliReview and improve detection logic, security content, and monitoring configurations. /liliCollaborate with Threat Intelligence and Incident Response teams to translate threats into actionable detection capabilities. /liliSupport cybersecurity architecture reviews and provide recommendations to improve security monitoring. /liliBuild and maintain security metrics, dashboards, KPIs, and service-performance reports. /liliEvaluate detection effectiveness and identify opportunities to reduce false positives. /liliContribute to quality assurance, process reviews, control validation, and corrective actions. /liliMaintain SOC procedures, standards, documentation, knowledge bases, and operational guidance. /liliPrepare technical reports, findings, and recommendations for internal and external stakeholders. /li /ulh3What We’re Looking For /h3ulli5+ years of relevant IT/cybersecurity experience. /liliProven hands-on experience administering a SIEM platform, ideally Splunk or Microsoft Sentinel. /liliStrong experience with SIEM/EDR environments and technical security analysis. /liliDeep knowledge of Microsoft Security technologies. /liliStrong cloud security knowledge across Azure, AWS, and/or GCP. /liliExperience with platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK. /liliExperience with at least one EDR platform such as Microsoft Defender for Endpoint or CrowdStrike. /liliKnowledge of email security, network monitoring, and incident response. /liliStrong Linux, macOS, and Windows knowledge. /liliFluent English with excellent written and verbal communication skills. /li /ulh3Nice to Have /h3ulliExperience designing SIEM architecture from initial design through implementation. /liliExperience building data-ingestion pipelines for diverse cloud and on-premise log sources. /liliAWS security monitoring experience. /liliScripting experience with Python, PowerShell, Bash, Ruby, or similar. /liliSecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE. /liliExperience working across multiple customer environments. /li /ulh3Why Join /h3ulliWork beyond traditional SOC monitoring and contribute to the engineering and optimization of security detection capabilities. /liliGain exposure to large-scale SIEM, EDR, cloud, and threat-detection environments. /liliWork directly with Threat Intelligence, Incident Response, and Cybersecurity Operations teams. /liliHelp shape detection use cases, monitoring architecture, and operational processes. /liliWork on cybersecurity services supporting multiple international organizations. /li /ulpPragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation. In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration. /p #J-18808-Ljbffr
- ...Headquartered in Paris and operating globally, Talan combines... ...against evolving cyber threats. You’ll be part of a 24x7 Security Operations Centre (SOC)... ...contribute to improving threat detection, incident response and... ...security alerts across SIEM, EDR, Microsoft Security...SIEMTempo pieno
- ...partner is looking for a Senior Threat Intelligence Analyst, Hacks based in Italy. As... ...cryptocurrency hacks and security incidents. You will own... ...major hacks, from initial detection and investigation through... ...coordinate a small contractor team operating across time zones and...ConsigliatoTempo pieno
- ...RDQ327R180 Staff Security Engineer, Incident Response The Incident... ...is to respond to security threats, incidents and investigations... ...as part of a distributed 24×7 operations and on-call schedule. You... ...applications. Working knowledge of a SIEM and SOAR. Experience...SIEMTempo pieno
35.000 € - 45.000 €
...networking, storage, identity, security, monitoring, backup e... ...i requisiti tecnici, operativi e di sicurezza.... ...Trust, least privilege, secure by design e defense in... ...alerting e dashboard operative. Conoscenza di... ...integrazione con SOC/SIEM. Esperienza con Infrastructure...SIEMTempo pienoLavoro ibridoDisponibilità immediataRemoto50000 $ - 80000 $
...all applications and next steps. Our partner is looking for an Operations Strategy Associate based in Italy. This is a high-impact,... ...leadership depending on business priorities and your strengths. You’ll operate in a fast-paced, ambiguous environment where initiative,...ConsigliatoTempo pienoStage/TirocinioRemotoOrario flessibile- ...workloads and business applications. You will design and adopt a secure and compliant cloud environment along with the implementation of... ...in cloud security and compliance - Familiarity with SIEM and SOAR solutions - Deep understanding of authorization protocols...SIEMLavoro da remoto
- ...position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Strategic Operations Specialist based in Italy. You will play a key role in keeping critical operational and investment workflows organized, efficient...Tempo pienoRemoto
- ...listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Junior Finance & Operations Specialist based in Italy. This remote role offers an opportunity to build hands-on experience across finance, accounting,...Tempo pienoRemoto
- ...applications and next steps. Our partner is looking for an Onboarding Operations Specialist based in Italy. As an Onboarding Operations... ...compliance. - Maintain employee data with a strong focus on accuracy, security, confidentiality, and adherence to applicable data-handling...Tempo pieno
- ...is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Remote Event Operations Specialist based in Italy. As a Remote Event Operations Specialist, you’ll support the coordination and delivery of high-impact,...Pagamento giornalieroRemotoOrario flessibile
- ...partner company, who manages all applications and next steps. Our partner is looking for a Senior Accounts Receivable & Revenue Operations Specialist based in Italy. This role offers the opportunity to take ownership of the full revenue cycle within a fast-growing roofing...Tempo pienoRemoto
