Security Analyst - Tier 1.

NAGRA

Madrid

Presencial

EUR 29.000 - 42.000

Jornada completa

14 días+
Generador de candidaturas

Destaca para este puesto — genera un currículum y una carta de presentación adaptados en cuestión de un minuto.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Shift compensation
Meal allowance
Life insurance
Health insurance
Pension plan
Flexible compensation

Descripción de la vacante

Kudelski Security is seeking a Security Analyst Level 1 in Madrid, Spain. The role is a permanent, full-time position working a 24/7 shift rotation within a multi-client MDR environment, reporting to the SOC Manager.

You will monitor, triage, and validate security alerts, perform initial analysis, and escalate as needed while following SOPs and using AI-assisted workflows to improve efficiency and documentation quality.

Formación

  • Log analysis and detection experience with SIEM/EDR/XDR.
  • Understanding of TCP/IP, security architecture, MITRE ATT&CK.
  • Familiarity with incident response methodologies (NIST/SANS).
  • Fluent in English and Spanish (written and verbal).
  • Willing to work in a 24/7 shift-based operation.

Responsabilidades

  • Monitor and triage security alerts generated by SIEM, EDR/XDR, firewalls, IC/OT, and other security technologies to determine if further investigation or customer action is warranted.
  • Perform first-level incident analysis, validation, and classification following SOPs and playbooks.
  • Escalate confirmed, suspicious, or complex incidents to Tier 2 with clear, structured documentation.
  • Respond to alerts and tickets within defined SLAs and document all investigation steps in the ticketing system.
  • Adhere to internal policies, procedures, and security best practices to protect customer and company data.
  • Participate in shift handovers, ensuring continuity of investigations and clear ownership of next actions.
  • Contribute to customer satisfaction by handling customer interactions professionally and routing requests to appropriate teams.
  • Maintain strong operational discipline: correct priority, categorization, and documentation standards.
  • Threat monitoring & incident handling
  • Validate alert fidelity by reviewing telemetry, context, and enrichment to separate false positives from true security events.
  • Perform initial scoping using approved tools and data sources.
  • Apply containment actions only when authorized by procedures and customer runbooks.
  • Collect and preserve artifacts to support Tier 2 investigations.
  • Support ongoing investigations with timely updates and evidence.
  • Use AI tools to summarize alerts, logs, and timelines to accelerate triage.

Conocimientos

Team player
Detail-oriented
Curious learner
Clear communicator
24/7 shift readiness

Herramientas

SIEM
EDR/XDR

Descripción del empleo

Stimulating. Motivating. Challenging.Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding their assets at a time of increasingly remote communications.

Stimulating. Motivating. Challenging.Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding their assets at a time of increasingly remote communications.

Location

Madrid, Spain

Mission
Your Mission

As a Security Analyst Level 1, you are the first line of defense within our 24x7 Managed Detection & Response (MDR) operations, part of the Cyber Fusion Center (CFC) / SOC. Your mission is to monitor, triage, and validate security alerts, ensuring timely escalation of confirmed threats while maintaining high operational quality across a multi-client SOC environment.

You will operate within clearly defined procedures, using modern security tooling and AI-assisted workflows to improve investigation efficiency, documentation quality, and learning velocity—while adhering strictly to escalation paths, data-handling rules, and security policies. You are based in Madrid, Spain, working a 24/7 shift rotation (morning, evening, night, and weekends) in a permanent, full-time role, reporting to the SOC Manager within a team of 15-20 L1 Analysts.

Responsibilities

Your responsibilities will be:

  • General responsibilities
  • Monitor and triage security alerts generated by SIEM, EDR/XDR, firewalls, IC/OT, and other security technologies to determine if further investigation or customer action is warranted.
  • Perform first-level incident analysis, validation, and classification following SOPs and playbooks.
  • Escalate confirmed, suspicious, or complex incidents to Tier 2 with clear, structured, and complete documentation (what happened, evidence, scope, actions taken, recommended next steps).
  • Respond to alerts and tickets within defined SLAs and document all investigation steps accurately in the ticketing system.
  • Adhere to internal policies, procedures, and security best practices to protect customer and company data.
  • Participate in shift handovers, ensuring continuity of investigations and clear ownership of next actions.
  • Contribute to customer satisfaction by handling customer interactions professionally, communicating critical findings, providing accurate information, and ensuring requests are routed to the appropriate teams for timely resolution and support.
  • Maintain strong operational discipline: correct priority, categorization, and documentation standards.
  • Threat monitoring & incident handling
  • Validate alert fidelity by reviewing available telemetry, context, and enrichment to separate false positives from true security events.
  • Perform initial scoping (impacted host/user, time window, key indicators, related alerts) using approved tools and data sources.
  • Apply predefined containment or response actions only when explicitly authorized by procedures and customer runbooks.
  • Collect and preserve relevant artifacts (e.g., alert context, event IDs, process names, hashes, IPs/domains) to support Tier 2 investigations.
  • Support ongoing investigations by providing timely updates and evidence to senior analysts.
  • Use approved AI tools to summarize alerts, logs, and timelines to accelerate triage.
  • Use AI-assisted enrichment to understand unfamiliar indicators, techniques, or tool outputs.
  • Identify recurring false positives, noisy detections, and tooling limitations; raise improvement suggestions through defined channels.
Requirements / Profile
You are
  • A team-oriented analyst comfortable working in a structured, high-tempo SOC environment.
  • Methodical and detail-oriented, able to remain calm under pressure and manage multiple alerts in parallel.
  • Curious and motivated to learn cybersecurity operations and modern SOC tooling.
  • Clear and professional in written and verbal communication.
  • Willing to work in a 24/7 shift-based operation.
You have
  • More than 1 year of experience in cybersecurity, IT operations, or a related field (internships, labs, or SOC trainings), typically analyzing logs and host data to identify suspicious/abnormal activity.
  • Initial to intermediate exposure to SIEM and/or EDR/XDR platforms for log analysis and detection.
  • Understanding of TCP/IP, security architecture, adversary TTPs, common web attacks, and the MITRE ATT&CK framework.
  • Familiarity with incident response methodologies (NIST/SANS) and fundamentals in networking and operating systems (Windows/Linux).
  • Understanding of appropriate AI usage in security contexts.
  • Basic knowledge of OT and its core concepts.
  • Strong verbal and written communication skills for documenting findings, escalating incidents, and collaborating with customers.
  • Fluent in English and Spanish (written and verbal).
  • Nice to have: CompTIA Security+, CySA+, CEH, or BTL1 (or actively pursuing).
With Kudelski, you can expect
  • Hands-on experience in a global MDR operation with top-tier security tooling.
  • Structured progression path and coaching towards other roles.
  • Training and certification opportunities.
  • Competitive compensation and benefits (including shift compensation/paid overtime, meal allowance, life insurance, health insurance, pension plan, and flexible compensation options).
  • Inclusive, collaborative culture in an international environment.
About Kudelski Security

Kudelski Security is a global Gartner- and Forrester-recognized provider of unique cybersecurity solutions. Our team of security experts delivers end-to-end consulting, technology, managed services, and threat intelligence.

Our MDR/XDR services feature three global state-of-the-art SOCs delivering tailored, intelligence-driven protection. With 2M+ users secured and a leadership team that has built top-tier MSSPs, we provide unmatched expertise to help organizations stay ahead of threats and build strategic cybersecurity programs.

Kudelski Security is an equal opportunity employer. We are committed to creating an inclusive workplace where all individuals are treated fairly and respectfully.

Reference

15808

Publication Date

18-08-2026

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Security Analyst - Tier 2.
Security Analyst - Tier 2.

Kudelski SA • Madrid

Presencial
EUR 45.000 - 65.000
Tuition reimbursement
Generous time off
Diversity & Inclusion
Security Analyst - 24/7 MDR SOC (Madrid)
Security Analyst - 24/7 MDR SOC (Madrid)

NAGRA • Madrid

Presencial
EUR 29.000 - 42.000
Shift compensation
Meal allowance
Life insurance
+3
Security Operations Engineer.
Security Operations Engineer.

NAGRA • Madrid

Presencial
EUR 30.000 - 45.000
Cybersecurity Architect.
Cybersecurity Architect.

NAGRA • Madrid

Presencial
EUR 110.000 - 150.000
Generous time off
Tuition reimbursement
Competitive compensation
SOC Analyst
SOC Analyst

Defion • Barcelona

Híbrido
EUR 35.000 - 50.000
Flexible Compensation Plan
Continuous training and certifications
Private health insurance
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • España

Híbrido
EUR 42.000 - 62.000
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • Valencia

Híbrido
EUR 45.000 - 65.000
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • Elche

Híbrido
EUR 45.000 - 67.000
Tier 2 SOC Analyst - AI-Driven Threat Hunting
Tier 2 SOC Analyst - AI-Driven Threat Hunting

Kudelski SA • Madrid

Presencial
EUR 45.000 - 65.000
Tuition reimbursement
Generous time off
Diversity & Inclusion
Project Manager.
Project Manager.

NAGRA • Madrid

Presencial
EUR 70.000 - 95.000