
SOC Analyst – WAAP
Posted 23 hours ago

Posted 23 hours ago
This is a fully remote position, open to applicants in Poland, +1 more country.
• Oversee WAAP and DDoS activity across customer accounts utilizing dashboards, alerts, and traffic analysis.
• Assess false positives by examining traffic flagged by security protocols and either confirming or dismissing them.
• Generate weekly threat summaries for each customer and post-incident DDoS reports in clear, customer-friendly language.
• Notify and escalate attacks impacting customers to Engineering or Support with appropriate context.
• Adhere to the escalation runbook.
• Assist in customer onboarding by implementing standard security configurations based on customer profiles and playbooks.
• Comply with the reaction-time Service Level Agreement (SLA).
• Contribute to and sustain runbooks for consistent and repeatable responses.
• Collaborate with Threat Researchers, managing operational security tasks to allow them to concentrate on in-depth analysis.
• Knowledge of web security basics: WAF, DDoS, bots, and the OWASP Top 10.
• A strong foundation in HTTP, TCP/IP, and TLS.
• Proficient in analyzing logs and interpreting dashboards; capable of identifying anomalies in traffic.
• Ability to differentiate between malicious and legitimate traffic and evaluate false positives.
• Proficient written English for customer-facing documentation.
• Dependable, detail-oriented, and composed under pressure during incidents.
• Willingness to participate in a shift/on-call rotation.
• Prior experience in SOC L1/L2 or a related field is advantageous.
• Basic knowledge of query/scripting: SQL-like log queries, regex, and some Python is beneficial.
• Familiarity with CDN/WAF platforms such as Cloudflare, Akamai, Imperva, F5, or Radware is a plus.
• Exposure to SIEM/alerting tools and on-call systems like PagerDuty is a bonus.
• Security certifications such as CompTIA Security+ are advantageous but not mandatory.
• In-depth threat research, exploit development, and malware reverse-engineering are not required.
• Competitive salary.
• Flexible working hours.
• Options for hybrid or remote work, depending on your position.
• Opportunity to work from anywhere globally for up to 45 days each year.
• Private medical insurance for you and your family.*
• Additional paid vacation and sick leave days.*
• Support for significant life events and celebrations.
• Language courses offered.
• Modern, inviting offices with snacks, beverages, and entertainment.*
• Team sports and social activities.*
UltraViolet Cyber
Get handpicked remote jobs straight to your inbox weekly.