Security Operations Analyst (SIEM & Threat Detection)

Pragmatike

España

Híbrido

EUR 52.000 - 70.000

Jornada completa

Hace 2 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

No envíes un currículum genérico — crea un currículum y una carta de presentación adaptados a este puesto concreto.

Supera los filtros ATS

Descripción de la vacante

Pragmatike in Valencia, Spain, seeks a Security Operations Analyst specializing in SIEM and Threat Detection to join a global cybersecurity team. The role focuses on SIEM administration, detection engineering, security content, data-source onboarding, use-case lifecycle, and detection optimization across EMEA.

You’ll work with Threat Intelligence, Incident Response, and Cybersecurity Operations to translate threats into effective detection capabilities, building dashboards and KPIs for

Formación

  • 5+ years of IT/cybersecurity experience.

Responsabilidades

  • Develop, implement, validate, tune, and maintain security monitoring and detection capabilities.

Conocimientos

5+ years IT/cybersecurity experience
Fluent English
Written communication
Verbal communication

Herramientas

Splunk
Microsoft Sentinel
QRadar
ArcSight
ELK
Microsoft Defender for Endpoint
CrowdStrike

Descripción del empleo

Location: Valencia, Spain, Hybrid OR Remote across EMEA
Employment: Full-Time Contract
Duration: 6 months, with potential extension
Language: Fluent English required
Industry: Cybersecurity / SIEM / Cloud Security

About the Opportunity

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst specializing in SIEM and Threat Detection.

You’ll join a global Cybersecurity Operations team focused on building, operating, and continuously improving the security monitoring capabilities protecting international organizations and their technology environments.

Unlike a traditional SOC monitoring role, this position has a strong focus on SIEM administration, detection engineering, security content, data-source onboarding, use-case lifecycle management, and detection optimization.

You’ll work closely with Threat Intelligence, Incident Response, and Cybersecurity Operations teams to turn security requirements and emerging threats into effective, measurable detection capabilities.

What You’ll Do
  • Develop, implement, validate, tune, and maintain security monitoring and detection capabilities.

  • Administer and optimize SIEM platforms across multiple customer environments.

  • Manage security detection rules and use cases throughout their lifecycle.

  • Onboard, integrate, test, and validate new security data sources and telemetry feeds.

  • Review and improve detection logic, security content, and monitoring configurations.

  • Collaborate with Threat Intelligence and Incident Response teams to translate threats into actionable detection capabilities.

  • Support cybersecurity architecture reviews and provide recommendations to improve security monitoring.

  • Build and maintain security metrics, dashboards, KPIs, and service-performance reports.

  • Evaluate detection effectiveness and identify opportunities to reduce false positives.

  • Contribute to quality assurance, process reviews, control validation, and corrective actions.

  • Maintain SOC procedures, standards, documentation, knowledge bases, and operational guidance.

  • Prepare technical reports, findings, and recommendations for internal and external stakeholders.

What We’re Looking For
  • 5+ years of relevant IT/cybersecurity experience.

  • Proven hands-on experience administering a SIEM platform, ideally Splunk or Microsoft Sentinel.

  • Strong experience with SIEM/EDR environments and technical security analysis.

  • Deep knowledge of Microsoft Security technologies.

  • Strong cloud security knowledge across Azure, AWS, and/or GCP.

  • Experience with platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.

  • Experience with at least one EDR platform such as Microsoft Defender for Endpoint or CrowdStrike.

  • Knowledge of email security, network monitoring, and incident response.

  • Strong Linux, macOS, and Windows knowledge.

  • Fluent English with excellent written and verbal communication skills.

Nice to Have
  • Experience designing SIEM architecture from initial design through implementation.

  • Experience building data-ingestion pipelines for diverse cloud and on-premise log sources.

  • AWS security monitoring experience.

  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar.

  • Security certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.

  • Experience working across multiple customer environments.

Why Join
  • Work beyond traditional SOC monitoring and contribute to the engineering and optimization of security detection capabilities.

  • Gain exposure to large-scale SIEM, EDR, cloud, and threat-detection environments.

  • Work directly with Threat Intelligence, Incident Response, and Cybersecurity Operations teams.

  • Help shape detection use cases, monitoring architecture, and operational processes.

  • Work on cybersecurity services supporting multiple international organizations.

Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.

In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • España

Híbrido
EUR 42.000 - 62.000
Security Operations Analyst – SIEM & Threat Detection
Security Operations Analyst – SIEM & Threat Detection

QCS Staffing Ltd • Valencia

Presencial
EUR 42.000 - 64.000
SIEM & Threat Detection Specialist (Hybrid/Remote)
SIEM & Threat Detection Specialist (Hybrid/Remote)

Pragmatike • España

Híbrido
EUR 52.000 - 70.000
Senior Security Engineer (SIEM)
Senior Security Engineer (SIEM)

NextLink Group • Sant Cugat del Vallès

Presencial
EUR 60.000 - 90.000
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)

Tamarind Intelligence • Madrid

Híbrido
EUR 70.000 - 100.000
Remote work 4 days / week
Healthcare benefits
Meal vouchers
+2
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)

Ambit Iberia • Sant Cugat del Vallès

Híbrido
EUR 90.000 - 130.000
Ticket restaurant
Medical insurance
Public transport ticket
+3
SIEM Engineer & Architect
SIEM Engineer & Architect

Capitole • España

Presencial
EUR 50.000 - 70.000
Flexible working hours
Training programs up to €1,200/year
Private health insurance
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)

Ambit Iberia • Barcelona

Híbrido
EUR 60.000 - 90.000
Meal vouchers
Medical insurance
Public transport ticket
+3
Security Operations Analyst - Defence Operations
Security Operations Analyst - Defence Operations

QCS Staffing Ltd • Valencia

Presencial
EUR 40.000 - 60.000
SOC Security Analyst – 24/7 Cyber Defense
SOC Security Analyst – 24/7 Cyber Defense

Pragmatike • España

Híbrido
EUR 42.000 - 62.000