Senior Cybersecurity Analyst – Cyber Defense Operations

Posted 1 day ago

This is a fully remote position, open to applicants in Spain.

📋 Description

• Oversee, triage, and examine security alerts across SIEM, EDR, Microsoft Security, and cloud platforms.

• Investigate potential cyber threats and security incidents, determining root causes and suitable remediation measures.

• Analyze logs from Windows, Linux, databases, applications, web servers, firewalls, and network security systems.

• Collaborate closely with Incident Response teams and cybersecurity experts to contain and resolve threats.

• Utilize and maintain security monitoring and detection tools, enhancing detection accuracy and minimizing false positives.

• Generate security reports, incident summaries, and technical findings for clients.

• Manage security-related tickets, ensuring that incidents are accurately documented.

• Enhance SOC processes, procedures, documentation, and knowledge bases.

• Interact directly with clients to comprehend their environments and optimize security monitoring.

• Stay informed about emerging threats, technologies, and cybersecurity best practices.


⛳️ Requirements

• 5+ years of experience in IT, Cybersecurity, or Security Operations.

• Hands-on experience in a SOC environment, encompassing security alert triage and incident investigation.

• Strong knowledge of SIEM and EDR technologies.

• Proficiency with Microsoft Sentinel, Splunk, QRadar, ArcSight, or ELK.

• Experience with Microsoft Security technologies, such as Defender for Endpoint, Microsoft 365, Sentinel, Azure Security, and XDR.

• Solid understanding of Azure, AWS, and/or GCP.

• Experience with at least one EDR solution, like Microsoft Defender for Endpoint or CrowdStrike.

• Strong knowledge of networking and TCP/IP.

• Extensive experience analyzing security logs in Windows and Linux environments.

• Familiarity with email security, network monitoring, and incident response.

• Experience in managing and processing security tickets.

• Excellent proficiency in spoken and written English.

• Previous experience in an Incident Response team, particularly at Tier I/II, is an advantage.

• Familiarity with monitoring AWS environments, including IaaS, PaaS, and SaaS, is beneficial.

• Scripting experience with Python, PowerShell, Bash, Ruby, or similar languages is a plus.

• Cybersecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE are advantageous.

• Experience in a global, distributed SOC is a plus.


🏝️ Benefits

• Opportunities for professional growth and learning.

• Chance to join a multicultural team and work in an international setting.

• Private medical insurance.

• Life insurance.

• Lunch and transport card as part of a flexible remuneration package.

• Online language classes.

• Smart Office Pack.

• Remote work options from Spain or another European country.

People also viewed

Talan17 hours ago

Security Operations Analyst – SIEM Operations, Threat Detection

CZ flagCzechia OnlyFull-timeSecurity Operations
ApplyView job
Pragmatike18 hours ago

Security Operations Analyst – SIEM, Threat Detection

ES flagSpain OnlyFreelanceSecurity Operations
ApplyView job
Supply Chimp20 hours ago

SOC Analyst Level 2

PH flagPhilippines OnlyFull-timeSecurity OperationsPHP 65k – PHP 80k/month
ApplyView job
Pragmatike1 day ago

Security Operations Analyst – Cyber Defense Operations

ES flagSpain, +5 more countriesFull-timeSecurity Operations
ApplyView job
Pragmatike1 day ago

Security Operations Analyst – Cyber Defense

IN flagIndia, +4 more countriesFull-timeSecurity Operations
ApplyView job
Talan1 day ago

Security Operations Analyst – SIEM Operations, Threat Detection

PL flagPoland OnlyFull-timeSecurity Operations
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers