Senior Security Engineer (SIEM)

NextLink Group

Sant Cugat del Vallès

Presencial

EUR 60.000 - 90.000

Jornada completa

Hace 3 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Consigue una respuesta de este empleador — un currículum y una carta de presentación adaptados exactamente a lo que busca para contratar.

Supera los filtros ATS

Descripción de la vacante

NextLink Group is seeking a Senior Security Engineer (SIEM) to join our CISOC team and work with a leading pharmaceutical client. You will focus on security monitoring, detection development, automation, and reporting using SIEM/XDR technologies.

You will design and tune use cases, develop scripts and integrations, and contribute to threat simulations to improve detection. Collaboration with Security Detection, Incident Response, Risk, and Information Security teams is essential.

Formación

  • Hands-on experience with SIEM/XDR and security monitoring/detection.
  • Experience developing and tuning detection use cases (e.g., MS Sentinel/Defender).
  • Programming/scripting: Python, PowerShell, Bash and API integrations.
  • Good understanding of risk, triage, change management, and remediation.

Responsabilidades

  • Design, implement, and improve SIEM/XDR security use cases with reduced false positives.
  • Develop scripts, integrations, and APIs to enrich SIEM/XDR capabilities.
  • Support simulated threats to test and improve detection use cases.
  • Evolve security technologies per roadmap and work with teams on detection enhancements.
  • Present monitoring status and updates to technical experts and management.
  • Follow SOPs and document security monitoring processes and findings.

Conocimientos

SIEM/XDR
Threat detection
Python
PowerShell
APIs
Bash
English communication

Herramientas

Microsoft Sentinel
Microsoft Defender
ServiceNow

Descripción del empleo

  • Assigned Recruiter(s) Suchitra Garikapati
  • Date Opened 09/17/2026
  • Country Spain
  • Job Posting ID ZR_4444_JOB
What is the mission about?

.

Job Description

At NextLink, we are looking for a Senior Security Engineer (SIEM) to join our team and collaborate closely with one of our most recognized clients in the pharmaceutical sector.

You will join the Cyber Intelligence & Security Operations Center (CISOC) team, focusing on security monitoring and detection capabilities through SIEM/XDR technologies.

The role combines hands‑on security engineering, use case development, automation, detection improvement, reporting, and collaboration with Security Detection, Incident Response, Risk, and Information Security teams.

Main Responsibilities:

  • Design, implement, and continuously improve SIEM/XDR security use cases, including fine-tuning to reduce false positives.
  • Develop and maintain scripts, integrations, and APIs to enrich SIEM/XDR capabilities and automate security monitoring activities.
  • Support the implementation and maintenance of simulated threats / BAS scenarios to test and improve detection use cases.
  • Contribute to the evolution of security technologies in line with the defined roadmap and improve detection capabilities together with Security Detection and Incident Response teams.
  • Act as a point of contact for security monitoring reports and dashboards, presenting status and updates to technical experts and management.
  • Follow defined frameworks, processes, SOPs, and working instructions, ensuring compliant and up-to-date documentation.
  • Collaborate with Risk and Information Security teams on identified risks, remediation, prioritisation, analysis, triage, and security monitoring improvements.
Requirements
  • Proven hands‑on experience with SIEM/XDR technologies and security monitoring/detection activities.
  • Experience developing and fine‑tuning security detection use cases, ideally with technologies such as Microsoft Sentinel or Microsoft Defender.
  • Programming/scripting experience with Python, PowerShell, Bash, or similar, including API integrations.
  • Good understanding of security weaknesses, remediation processes, prioritization, change management, analysis, and triage.
  • Strong analytical thinking, problem-solving, communication, teamwork, agility, and results‑oriented skills.
  • Excellent spoken and written English.
  • Experience working in virtual, international, and multicultural environments.
  • Experience with Breach & Attack Simulation (BAS) and simulated threat creation.
  • Experience with reporting and ticketing platforms such as ServiceNow.
  • Relevant SIEM/XDR certifications, particularly related to Microsoft Sentinel or Microsoft Defender, are a plus.
  • Security certifications such as Security+, CE, GCIH, ECIH, OSCP, or CEH are desirable but not mandatory.
Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)

Ambit Iberia • Sant Cugat del Vallès

Híbrido
EUR 90.000 - 130.000
Ticket restaurant
Medical insurance
Public transport ticket
+3
Senior SIEM/XDR Security Engineer – Detection & Automation
Senior SIEM/XDR Security Engineer – Detection & Automation

NextLink Group • Sant Cugat del Vallès

Presencial
EUR 60.000 - 90.000
SIEM Engineer & Architect
SIEM Engineer & Architect

Capitole • España

A distancia
EUR 50.000 - 70.000
Flexible working hours
Training programs up to €1,200/year
Private health insurance
SOC Engineer
SOC Engineer

Thales • Madrid

Presencial
EUR 52.000 - 74.000
Senior Security Engineer (SIEM) - RDT Security Platforms
Senior Security Engineer (SIEM) - RDT Security Platforms

F. Hoffmann-La Roche AG • Madrid

Presencial
EUR 90.000 - 140.000
Siem Analyst
Siem Analyst

Novcom • Madrid

Presencial
EUR 55.000 - 75.000
SIEM Analyst
SIEM Analyst

FoshTech • Madrid

Presencial
EUR 60.000 - 95.000
Principal Security Engineer, Detection
Principal Security Engineer, Detection

Jobtailor • Madrid

Presencial
EUR 90.000 - 120.000
SOC Technical Lead – Threat Hunting & Incident Response
SOC Technical Lead – Threat Hunting & Incident Response

Thales • Madrid

Presencial
EUR 70.000 - 110.000
Flexible hybrid work
41 days off
Meal vouchers
+3
Cybersecurity Analyst (Siem)
Cybersecurity Analyst (Siem)

Mindmatch • Barcelona

Presencial
EUR 55.000 - 75.000
Proyectos globales de ciberseguridad
Tecnologías SOC y SIEM
Entorno internacional
+1