Security Operations Analyst (Cyber Defense Operations)

Pragmatike

España

Híbrido

EUR 42.000 - 62.000

Jornada completa

Hace 2 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Una candidatura completa en un minuto — currículum adaptado y carta de presentación, listos para enviar.

Supera los filtros ATS

Descripción de la vacante

Pragmatike is seeking a Security Operations Analyst to join a global 24/7 SOC, monitoring, detecting, and responding to cyber threats across enterprise, cloud, network, and endpoints. You will triage alerts, analyze logs, and coordinate incident response in a 6-month contract across EMEA.

You will work with SIEM/EDR tools, Microsoft Defender/Sentinel, and cloud platforms (Azure/AWS/GCP), requiring fluent English and strong communication skills.

Formación

  • 5+ years of IT/cybersecurity experience with security alert triage and incident support.
  • Hands-on experience in a SOC environment.
  • Strong experience with SIEM and EDR platforms.
  • Advanced log analysis across Windows/Linux/databases/apps/infrastructure.
  • Knowledge of Microsoft security technologies (Sentinel/Defender).
  • Experience with cloud security (Azure/AWS/GCP).
  • Experience with SIEM platforms (Splunk/QRadar/ArcSight/Microsoft Sentinel/ELK).
  • Experience with at least one EDR (Defender for Endpoint or CrowdStrike).
  • Knowledge of email security, network monitoring, and incident response.
  • Strong knowledge of Linux, macOS, and Windows.
  • Fluent English with excellent communication skills.

Responsabilidades

  • Monitor, triage, and investigate security alerts across SIEM/EDR and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, and applications.
  • Investigate suspicious activity, identify root causes, and determine remediation/escalation.
  • Support incident response, remediation, and recovery activities.
  • Collaborate with Incident Response and other security teams to manage threats.
  • Analyze network and security events using TCP/IP, syslog, firewall data.
  • Identify opportunities to improve detection quality and reduce false positives.
  • Gather technical information from clients to improve monitoring.
  • Prepare and present security reports and findings.
  • Contribute to SOC procedures, docs, knowledge bases, and QA processes.
  • Review operational feedback and implement improvements.

Conocimientos

SOC experience
Threat detection
Incident response
Log analysis
Security reporting

Herramientas

SIEM
EDR
Microsoft Defender for Endpoint
Microsoft Sentinel
Splunk/QRadar/ArcSight/ELK

Descripción del empleo

Location: Valencia, Spain, Hybrid OR Remote across EMEA
Employment: Full-Time Contract
Duration: 6 months, with potential extension
Language: Fluent English required
Industry: Cybersecurity / Cloud / Enterprise Security

About the Opportunity

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst to join a global Cybersecurity Operations team.

You’ll be part of a 24/7 Security Operations Centre (SOC) responsible for monitoring, detecting, investigating, and responding to cyber threats across enterprise, cloud, network, and endpoint environments.

This is a hands‑on security role focused on alert triage, threat investigation, log analysis, incident response, and security monitoring, working alongside cybersecurity specialists distributed across multiple regions.

What You’ll Do
  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.

  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.

  • Investigate suspicious activity, identify root causes, and determine appropriate remediation or escalation.

  • Support incident response, remediation, and recovery activities.

  • Work closely with Incident Response and other cybersecurity teams to manage security threats.

  • Analyze network and security events using TCP/IP, syslog, firewall, and network monitoring data.

  • Identify opportunities to improve detection quality and reduce false positives through tuning and optimization.

  • Gather technical information from clients to improve security monitoring and detection.

  • Prepare and present security reports, summaries, and technical findings.

  • Contribute to SOC procedures, documentation, knowledge bases, and quality-control processes.

  • Review operational feedback and implement corrective actions to continuously improve service quality.

What We’re Looking For
  • 5+ years of relevant experience in IT/cybersecurity, including security alert triage and incident support.

  • Hands‑on experience working in a SOC environment.

  • Strong experience with SIEM and EDR platforms.

  • Advanced log analysis skills across Windows/Linux, databases, applications, and infrastructure.

  • Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender.

  • Experience with cloud security across Azure, AWS, and/or GCP.

  • Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.

  • Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.

  • Knowledge of email security, network monitoring, and incident response.

  • Strong knowledge of Linux, macOS, and Windows.

  • Fluent English with excellent written and verbal communication skills.

Nice to Have
  • Experience working on an Incident Response team with Tier-1/Tier-2 incident triage.

  • AWS security monitoring experience across IaaS, PaaS, or SaaS environments.

  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar.

  • Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.

  • Customer‑facing cybersecurity experience.

Why Join
  • Work inside a global 24/7 cybersecurity operation protecting international organizations.

  • Gain exposure to large‑scale cloud, SIEM, EDR, network, and endpoint security environments.

  • Collaborate with cybersecurity specialists across multiple regions and disciplines.

  • Work directly on real‑world threat detection and incident response.

  • Build experience across a broad enterprise security technology stack.

Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.

In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Security Operations Analyst (SIEM & Threat Detection)
Security Operations Analyst (SIEM & Threat Detection)

Pragmatike • España

Híbrido
EUR 52.000 - 70.000
SOC Security Analyst – 24/7 Cyber Defense
SOC Security Analyst – 24/7 Cyber Defense

Pragmatike • España

Híbrido
EUR 42.000 - 62.000
Security Operations Analyst - Defence Operations
Security Operations Analyst - Defence Operations

QCS Staffing Ltd • Valencia

Presencial
EUR 40.000 - 60.000
Security Analyst - Tier 1.
Security Analyst - Tier 1.

NAGRA • Madrid

Presencial
EUR 29.000 - 42.000
Shift compensation
Meal allowance
Life insurance
+3
Security Operations Analyst – SIEM & Threat Detection
Security Operations Analyst – SIEM & Threat Detection

QCS Staffing Ltd • Valencia

Presencial
EUR 42.000 - 64.000
Cybersecurity incidence response senior analyst (SOC L2/L3) for an international IT Hub
Cybersecurity incidence response senior analyst (SOC L2/L3) for an international IT Hub

Agrupa Global Talent • Barcelona

Híbrido
EUR 50.000 - 70.000
Competitive compensation
Health and dental insurance
Lunch vouchers
+1
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)

Tamarind Intelligence • Madrid

Híbrido
EUR 70.000 - 100.000
Remote work 4 days / week
Healthcare benefits
Meal vouchers
+2
IT Security Analyst
IT Security Analyst

Signode • Bellprat

Presencial
EUR 38.000 - 54.000
Senior Security Engineer (SIEM)
Senior Security Engineer (SIEM)

NextLink Group • Sant Cugat del Vallès

Presencial
EUR 60.000 - 90.000
SIEM & Threat Detection Specialist (Hybrid/Remote)
SIEM & Threat Detection Specialist (Hybrid/Remote)

Pragmatike • España

Híbrido
EUR 52.000 - 70.000