SOC Analyst – WAAP

Posted Sep 8

This is a fully remote position, open to applicants in Poland.

📋 Description

• Oversee WAAP and DDoS activities across customer accounts utilizing dashboards, alerts, and traffic analysis.

• Evaluate false positives by examining traffic flagged by security policies and validating or rejecting them.

• Generate weekly threat summaries for each customer and provide post-incident DDoS reports in clear, customer-friendly language.

• Notify and escalate attacks impacting customers to Engineering or Support with appropriate context.

• Adhere to the escalation runbook.

• Assist in customer onboarding by implementing standard security configurations tailored to each customer's profile.

• Comply with the reaction-time SLA.

• Contribute to and uphold runbooks to ensure consistent and repeatable responses.

• Collaborate with Threat Researchers by providing clean, triaged signals and managing routine security operations.


⛳️ Requirements

• Knowledge of web security fundamentals, including WAF, DDoS, bots, and OWASP Top 10.

• Strong understanding of HTTP, TCP/IP, and TLS protocols.

• Proficient in analyzing logs and interpreting dashboards.

• Capability to identify anomalies in traffic.

• Skill in differentiating between malicious and legitimate traffic while reasoning about false positives.

• Proficient in clear written English for customer-facing documentation.

• Dependable, detail-oriented, and composed under pressure during incidents.

• Willingness to participate in a shift/on-call rotation.

• Previous SOC L1/L2 or related experience is advantageous.

• Basic knowledge of query/scripting, including SQL-like log queries, regex, and some Python is beneficial.

• Familiarity with CDN/WAF platforms such as Cloudflare, Akamai, Imperva, F5, or Radware is a plus.

• Experience with SIEM, alerting tools, and PagerDuty-style on-call environments is desirable.

• Security certifications like CompTIA Security+ are a bonus, though not mandatory.


🏝️ Benefits

• Competitive salary package.

• Flexible working hours.

• Options for hybrid or remote work, based on the role.

• Opportunity to work from anywhere in the world for up to 45 days each year.

• Private medical insurance for you and your family.*

• Additional paid vacation and sick leave days.*

• Support for significant life moments and celebrations.

• Language learning courses.

• Modern, inviting office spaces with snacks, drinks, and entertainment.*

• Team sports and social activities.*

People also viewed

Talan1 day ago

Security Operations Analyst – SIEM Operations, Threat Detection

CZ flagCzechia OnlyFull-timeSecurity Operations
ApplyView job
Pragmatike1 day ago

Security Operations Analyst – SIEM, Threat Detection

ES flagSpain OnlyFreelanceSecurity Operations
ApplyView job
Supply Chimp1 day ago

SOC Analyst Level 2

PH flagPhilippines OnlyFull-timeSecurity OperationsPHP 65k – PHP 80k/month
ApplyView job
Pragmatike1 day ago

Security Operations Analyst – Cyber Defense Operations

ES flagSpain, +5 more countriesFull-timeSecurity Operations
ApplyView job
Pragmatike1 day ago

Security Operations Analyst – Cyber Defense

IN flagIndia, +4 more countriesFull-timeSecurity Operations
ApplyView job
Talan1 day ago

Security Operations Analyst – SIEM Operations, Threat Detection

PL flagPoland OnlyFull-timeSecurity Operations
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers