Senior Cybersecurity Analyst – Cyber Defense Operations

Posted Sep 29

This is a fully remote position, open to applicants in Romania.

📋 Description

• Monitor, evaluate, and investigate security alerts across SIEM, EDR, Microsoft Security, and cloud environments.

• Examine potential cyber threats and security incidents, determining root causes and suitable remediation measures.

• Analyze logs from Windows, Linux, databases, applications, web servers, firewalls, and network security systems.

• Collaborate closely with Incident Response teams and cybersecurity experts to contain and mitigate threats.

• Utilize and maintain security monitoring and detection tools, assisting in enhancing detection quality and minimizing false positives.

• Generate clear security reports, incident summaries, and technical findings for clients.

• Oversee security-related tickets and ensure that incidents are thoroughly documented.

• Contribute to the enhancement of SOC processes, procedures, documentation, and knowledge bases.

• Engage directly with clients to understand their environments and optimize security monitoring.

• Stay informed about emerging threats, technologies, and cybersecurity best practices.

• Operate within a 24x7 Security Operations Centre alongside cybersecurity specialists from around the globe.


⛳️ Requirements

• Over 5 years of experience in IT, Cybersecurity, or Security Operations.

• Practical experience working in a SOC environment, involving security alert triage and incident investigation.

• Comprehensive knowledge of SIEM and EDR technologies.

• Familiarity with platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, or ELK.

• Experience with Microsoft Security technologies, including Defender for Endpoint, Microsoft 365, Sentinel, Azure Security, and XDR.

• Strong understanding of Azure, AWS, and/or GCP.

• Experience with at least one EDR solution, such as Microsoft Defender for Endpoint or CrowdStrike.

• In-depth knowledge of networking and TCP/IP.

• Excellent experience in analyzing security logs across Windows and Linux environments.

• Understanding of email security, network monitoring, and incident response.

• Experience in managing and processing security tickets.

• Proficient spoken and written English skills.

• Experience working in an Incident Response team, especially at Tier I/II, is an advantage.

• Experience monitoring AWS environments, including IaaS, PaaS, and SaaS, is a plus.

• Scripting experience with Python, PowerShell, Bash, Ruby, or similar languages is a plus.

• Cybersecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE are advantageous.

• Experience in a global, distributed SOC is a plus.


🏝️ Benefits

• Full-time and permanent employment contract or contractor mode.

• Opportunities for professional growth and learning.

• Chance to join a multicultural team and work in an international environment.

• Private medical insurance.

• Life insurance.

• Lunch and transport card as part of the flexible remuneration package.

• Online language classes.

• Smart Office Pack.

People also viewed

It4us Cyber Security1 day ago

Blue Team Analyst – SOC

BR flagBrazil OnlyFreelanceSecurity Operations
ApplyView job
Pax81 day ago

Security Operations Engineer

US flagColorado OnlyFull-timeSecurity Operations
ApplyView job
NCC Group2 days ago

SOC Analyst

GB flagUnited Kingdom OnlyFull-timeSecurity Operations
ApplyView job
NCC Group2 days ago

SOC Analyst

GB flagUnited Kingdom OnlyFull-timeSecurity Operations
ApplyView job
EDB2 days ago

Director of Security Operations – Engineering

US flagUnited States OnlyFull-timeSecurity Operations
ApplyView job
SPS Commerce3 days ago

Manager II, Security Operations

US flagMinnesota OnlyFull-timeSecurity Operations$133.8k – $204.1k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers