Cybersecurity IT Specialist, EU (remote) - International client
Job role: Cybersecurity IT Specialist, expertise in Splunk.
Key knowledge required: Splunk. Minimum experience: 3 to 5 years.
Studies required: Technical Engineer.
Language: English (C1). Location: EU (remote).
DESCRIPTION
We are seeking a Cybersecurity IT Specialist with strong expertise in Splunk to join a multifunctional security operations team. The role focuses on SIEM monitoring, incident response (L1/L2), and support of security tools including endpoint, email, and vulnerability management platforms. The position requires 3–5 years of experience, a technical engineering background, and fluent English. Shift rotation and on‑call availability are required.
Key responsibilities
- Monitor, analyze, and triage security alerts using Splunk SIEM.
- Perform L1/L2 incident response: investigation, containment, reporting, and ticket handling.
- Support EDR (Carbon Black), email security (Proofpoint), and vulnerability management (Tenable) operations.
- Develop and maintain detection use cases, playbooks, and log/source integrations.
- Execute agent‑based and agentless vulnerability scans and coordinate remediation follow‑up.
- Create operational KPIs and contribute to written incident reports.
- Collaborate with internal stakeholders during security events.
IT skills
- Splunk SIEM (parsing, dashboards, alerting, use case development).
- Carbon Black (EDR), Proofpoint (email security), Tenable (vulnerability scanning).
- Incident response (L1/L2), alert triage, ticketing workflows, playbook documentation, KPI/report creation.
- Technical engineering degree, 3–5 years of experience, English fluency, shift rotation, on‑call duties.
Language
Location
Rate