SOC Analyst – WAAP

Posted 23 hours ago

This is a fully remote position, open to applicants in Poland, +1 more country.

📋 Description

• Oversee WAAP and DDoS activity across customer accounts utilizing dashboards, alerts, and traffic analysis.

• Assess false positives by examining traffic flagged by security protocols and either confirming or dismissing them.

• Generate weekly threat summaries for each customer and post-incident DDoS reports in clear, customer-friendly language.

• Notify and escalate attacks impacting customers to Engineering or Support with appropriate context.

• Adhere to the escalation runbook.

• Assist in customer onboarding by implementing standard security configurations based on customer profiles and playbooks.

• Comply with the reaction-time Service Level Agreement (SLA).

• Contribute to and sustain runbooks for consistent and repeatable responses.

• Collaborate with Threat Researchers, managing operational security tasks to allow them to concentrate on in-depth analysis.


⛳️ Requirements

• Knowledge of web security basics: WAF, DDoS, bots, and the OWASP Top 10.

• A strong foundation in HTTP, TCP/IP, and TLS.

• Proficient in analyzing logs and interpreting dashboards; capable of identifying anomalies in traffic.

• Ability to differentiate between malicious and legitimate traffic and evaluate false positives.

• Proficient written English for customer-facing documentation.

• Dependable, detail-oriented, and composed under pressure during incidents.

• Willingness to participate in a shift/on-call rotation.

• Prior experience in SOC L1/L2 or a related field is advantageous.

• Basic knowledge of query/scripting: SQL-like log queries, regex, and some Python is beneficial.

• Familiarity with CDN/WAF platforms such as Cloudflare, Akamai, Imperva, F5, or Radware is a plus.

• Exposure to SIEM/alerting tools and on-call systems like PagerDuty is a bonus.

• Security certifications such as CompTIA Security+ are advantageous but not mandatory.

• In-depth threat research, exploit development, and malware reverse-engineering are not required.


🏝️ Benefits

• Competitive salary.

• Flexible working hours.

• Options for hybrid or remote work, depending on your position.

• Opportunity to work from anywhere globally for up to 45 days each year.

• Private medical insurance for you and your family.*

• Additional paid vacation and sick leave days.*

• Support for significant life events and celebrations.

• Language courses offered.

• Modern, inviting offices with snacks, beverages, and entertainment.*

• Team sports and social activities.*

People also viewed

UltraViolet Cyber1 day ago

Senior SOC Analyst – MDR

US flagUnited States OnlyFull-timeSecurity Operations
ApplyView job
Commit1 day ago

SOC Analyst

MX flagMexico OnlyFull-timeSecurity Operations
ApplyView job
Commit1 day ago

SOC Analyst

MX flagMexico OnlyFull-timeSecurity Operations
ApplyView job
Commit2 days ago

SOC Analyst

PH flagPhilippines OnlyFull-timeSecurity Operations
ApplyView job
bridge3512 days ago

Security Operations Engineer

EuropeFull-timeSecurity Operations
ApplyView job
THEOS Cyber2 days ago

DFIR Specialist – Senior SOC Analyst

HK flagHong Kong, +3 more countriesFull-timeSecurity Operations
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers