
Senior Cybersecurity Analyst – Cyber Defense Operations
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Spain.
• Oversee, assess, and investigate security alerts across SIEM, EDR, Microsoft Security, and cloud environments.
• Examine potential cyber threats and security incidents, determining root causes and suitable remediation strategies.
• Analyze logs from Windows, Linux, databases, applications, web servers, firewalls, and network security systems.
• Collaborate closely with Incident Response teams and cybersecurity experts to contain and resolve threats.
• Utilize and maintain security monitoring and detection tools, aiding in the enhancement of detection quality and reduction of false positives.
• Create clear security reports, incident summaries, and technical findings for clients.
• Manage security-related tickets and ensure proper documentation of incidents.
• Contribute to the enhancement of SOC processes, procedures, documentation, and knowledge bases.
• Engage directly with clients to understand their environments and optimize security monitoring.
• Stay informed about emerging threats, technologies, and cybersecurity best practices.
• Over 5 years of experience in IT, Cybersecurity, or Security Operations.
• Practical experience working in a SOC environment, including security alert triage and incident investigation.
• In-depth knowledge of SIEM and EDR technologies.
• Experience with platforms like Microsoft Sentinel, Splunk, QRadar, ArcSight, or ELK.
• Proficiency in Microsoft Security technologies, including Defender for Endpoint, Microsoft 365, Sentinel, Azure Security, and XDR.
• Strong understanding of Azure, AWS, and/or GCP.
• Experience with at least one EDR solution, such as Microsoft Defender for Endpoint or CrowdStrike.
• Solid knowledge of networking and TCP/IP.
• Extensive experience analyzing security logs across Windows and Linux environments.
• Familiarity with email security, network monitoring, and incident response.
• Experience managing and processing security tickets.
• Excellent spoken and written English skills.
• Plus: Experience working in an Incident Response team, especially Tier I/II.
• Plus: Experience monitoring AWS environments, including IaaS, PaaS, and SaaS.
• Plus: Scripting experience with Python, PowerShell, Bash, Ruby, or similar languages.
• Plus: Cybersecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.
• Plus: Experience in a global, distributed SOC environment.
• Full-time and permanent employment contract or contractor mode.
• Remote work option available in Spain or any other European country.
• Opportunities for professional growth and learning.
• Chance to join a multicultural team and work in an international setting.
• Private medical insurance.
• Life insurance.
• Lunch and transport card included as part of the flexible remuneration package.
• Online language classes.
• Smart Office Pack.
Talan
Pragmatike
Supply Chimp
Pragmatike
Get handpicked remote jobs straight to your inbox weekly.