Mid-Level Cybersecurity Analyst

Jobtailor

Deutschland

Remote

EUR 70.000 - 100.000

Vollzeit

Vor 4 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Eine zielgenaue Bewerbung für diesen Job — ein maßgeschneiderter Lebenslauf und ein Anschreiben, die genau zur Stellenanzeige passen.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Jobtailor is seeking a Security Operations Specialist to monitor, investigate and respond to security events across SIEM/EDR/XDR tooling in a regulated environment. You will support vulnerability management, hardening, and incident response while collaborating with multiple teams to maintain robust security controls.

The role emphasizes technical documentation, playbook development, and compliance, with opportunities to advance automation and threat hunting in a pharmaceutical-industry setting.

Qualifikationen

  • Hands-on experience in security operations, alert investigation, and incident response support.
  • Experience with SIEM, EDR/XDR, and vulnerability management tools.
  • Experience with the vulnerability management lifecycle, including risk-based prioritization and remediation validation.
  • Knowledge of networks, protocols, Windows, Linux, and Active Directory applied to security analysis.
  • Experience administering security tools, tuning rules and policies, and applying secure configurations (hardening).
  • Ability to prepare technical documentation, playbooks, and metrics and collaborate with technology teams.
  • Experience automating routines using Artificial Intelligence, Python, PowerShell, APIs, or SOAR.
  • Experience with cloud security and identity solutions such as Entra ID and SOC environments.
  • Experience creating and improving detection rules and conducting proactive threat investigations (threat hunting).
  • Experience working in regulated environments, preferably in the pharmaceutical industry.
  • Certifications related to security operations or the tools used by the organization are a plus.

Aufgaben

  • Monitor security events and alerts; triage, analyze, investigate, classify and handle threats.
  • Investigate suspicious behavior by correlating data across SIEM, EDR/XDR, firewalls, email security, identity, networks, and other controls.
  • Support vulnerability management activities: identify, classify, prioritize, assign, track remediation and validation.
  • Prioritize vulnerabilities by severity, exposure, exploitability, business relevance, and known exploits.
  • Operate and maintain security tools, configurations, policies, and agents.
  • Create and review security rules, policies, alerts, exceptions and configurations.
  • Assist hardening of servers, workstations, systems, devices and components.
  • Ensure adherence to baselines and best practices; track deviations and remediation.
  • Assist incident response: investigation, containment, eradication, recovery and evidence collection.
  • Contribute to root-cause analyses and post-incident actions; define corrective measures.
  • Develop technical documentation, procedures, playbooks, workflows, standards, baselines, inventories and records.
  • Prepare reports and metrics on vulnerabilities, alerts, incidents and tools.
  • Collaborate with Infrastructure, Networks, Cloud, Workplace, Systems, Architecture, Service Desk and vendors.
  • Support security aspects of projects and changes by assessing controls.
  • Monitor vulnerability trends, threats and indicators of compromise.
  • Contribute to automation and operational efficiency across cybersecurity processes.
  • Assist audits, security assessments and compliance with technical evidence.

Kenntnisse

Security operations
Incident response support
Vulnerability management
SIEM/EDR/XDR
Cloud security
Threat hunting
Automation
Python
PowerShell
Technical documentation

Ausbildung

Bachelor's degree in Computer Science/Information Security

Tools

SIEM
EDR/XDR
Vulnerability management tools
Cloud security solutions
Identity solutions

Jobbeschreibung

  • Continuously monitor security events and alerts, performing triage, analysis, investigation, classification, and handling
  • Investigate suspicious behavior by correlating data from SIEM, EDR/XDR, firewalls, email security, identity, network, and other security controls
  • Execute and track vulnerability management activities, including identification, classification, prioritization, assignment, remediation tracking, and remediation validation
  • Prioritize vulnerabilities based on technical severity, exposure, exploitability, business relevance, and known exploits
  • Operate, administer, and maintain security tools, monitoring availability, configurations, integrations, policies, rules, versions, and agents
  • Create and review security rules, policies, alerts, exceptions, and configurations
  • Support the hardening of servers, workstations, systems, devices, and other technology components
  • Assess adherence to security baselines and best practices, identifying deviations and tracking remediation
  • Support incident response, including investigation, containment, eradication, recovery, and evidence collection
  • Support root-cause analyses and post-incident activities, defining corrective and preventive actions
  • Develop and maintain technical documentation, procedures, playbooks, workflows, standards, baselines, evidence, inventories, and records
  • Prepare reports and metrics on vulnerabilities, alerts, incidents, tools, hardening, and security controls
  • Collaborate with Infrastructure, Networks, Cloud, Workplace, Systems, Architecture, Service Desk, and vendor teams
  • Support infrastructure and systems projects and changes by assessing security and recommending controls
  • Monitor information on vulnerabilities, threats, attack techniques, and indicators of compromise
  • Contribute to automation, improved coverage, and operational efficiency across Cybersecurity processes
  • Support audits, security assessments, and compliance processes by providing technical evidence
Requirements
  • Bachelor’s degree in Computer Science, Information Systems, Software Engineering, Systems Analysis and Development, Information Security, or a related field
  • Hands-on experience in security operations, alert investigation, and incident response support
  • Experience with SIEM, EDR/XDR, and vulnerability management tools
  • Experience with the vulnerability management lifecycle, including risk-based prioritization and remediation validation
  • Knowledge of networks, protocols, Windows, Linux, and Active Directory, applied to security analysis
  • Experience administering security tools, tuning rules and policies, and applying secure configurations (hardening)
  • Ability to prepare technical documentation, playbooks, and metrics and collaborate with technology teams
  • Experience automating routines using Artificial Intelligence, Python, PowerShell, APIs, or SOAR
  • Experience with cloud security and identity solutions such as Entra ID and SOC environments
  • Experience creating and improving detection rules and conducting proactive threat investigations (threat hunting)
  • Experience working in regulated environments, preferably in the pharmaceutical industry
  • Certifications related to security operations or the tools used by the organization are a plus
Core Competencies

Demonstrates expertise in security operations, incident response, and vulnerability management, with a strong focus on technical documentation and collaboration across technology teams. Proficient in utilizing security tools and automating processes to enhance operational efficiency and compliance.

Highest-signal resume keywords
  • Security Operations
  • Incident Response Support
  • Vulnerability Management
  • SIEM/EDR/XDR Tools
  • Cloud Security
Hard Skills
  • Vulnerability Management Lifecycle
  • Security Analysis
  • Technical Documentation
  • Threat Hunting
  • Risk-Based Prioritization
  • Secure Configurations
  • Automation with Python
  • Automation with PowerShell
  • Network Protocols
  • Active Directory
Soft Skills
  • Collaboration
  • Analytical Thinking
  • Problem Solving
Industry Keywords
  • Pharmaceutical Industry
  • Regulated Environments
  • Security Assessments
  • Compliance Processes
Tools & Technologies
  • SIEM
  • EDR/XDR
  • Vulnerability Management Tools
  • Cloud Security Solutions
  • Identity Solutions
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

IT Security Analyst – Level 1
IT Security Analyst – Level 1

Jobtailor • Deutschland

Vor Ort
EUR 45.000 - 65.000
SecOps Engineer
SecOps Engineer

Jobtailor • Deutschland

Remote
EUR 70.000 - 100.000
Cyber Security Analyst I – Wednesday to Saturday, Noon to 10p ET shift
Cyber Security Analyst I – Wednesday to Saturday, Noon to 10p ET shift

Jobtailor • Deutschland

Remote
EUR 38.000 - 54.000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Deutschland

Vor Ort
EUR 90.000 - 140.000
Security Engineer – Vulnerability Management
Security Engineer – Vulnerability Management

Jobtailor • Deutschland

Remote
EUR 70.000 - 110.000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Jobtailor • Deutschland

Remote
EUR 90.000 - 130.000
Vulnerability Management / Incident Response Specialist
Vulnerability Management / Incident Response Specialist

Hhw Group • Deutschland

Vor Ort
EUR 70.000 - 90.000
Associate SOC Engineer
Associate SOC Engineer

Jobtailor • Deutschland

Remote
EUR 50.000 - 70.000
Senior Cyber Defense Analyst – SOC Analyst
Senior Cyber Defense Analyst – SOC Analyst

Jobtailor • Karlsruhe

Vor Ort
EUR 60.000 - 80.000
Cybersecurity Analyst
Cybersecurity Analyst

Jobtailor • Deutschland

Vor Ort
EUR 65.000 - 90.000