Senior SOC Engineer

SmartRecruiters, Inc.

Terrassa

Presencial

EUR 65.000 - 90.000

Jornada completa

hace 33 horas
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Get a reply from this recruiter — a resume and cover letter tailored to exactly what they’re hiring for.

Supera los filtros ATS

Descripción de la vacante

Syntegon Telstar S.R.U is seeking a hands-on Senior SOC Engineer for our Terrassa (Barcelona) office to help design, build, and continuously improve the security operations center. You’ll own the engineering backlog across SIEM, SOAR, EDR/XDR, and log pipelines, developing high-fidelity detections and reliable data infrastructure.

Working closely with the SOC Leader and analysts, you’ll serve as a technical escalation point for complex incidents and help strengthen the SOC through automation,

Formación

  • 5–8+ years in cybersecurity with 3+ years in a SOC engineering, detection engineering, or senior analyst role.
  • Deep hands-on expertise with SIEM platforms including query authoring and detection rule development.
  • Proven experience building SOAR playbooks and automating security workflows.
  • Strong knowledge of attacker TTPs and the MITRE ATT&CK framework, with the ability to translate them into detection logic.
  • Experience with log onboarding, data normalisation, and pipeline management at scale.
  • Solid understanding of EDR/XDR, NDR, cloud telemetry, and identity signals.
  • Scripting or development skills (e.g., Python, PowerShell, KQL) for automation and tooling integration.
  • Clear written and verbal communication with the ability to document technical content for varied audiences.

Responsabilidades

  • Design, develop, and maintain detection content across SIEM, EDR/XDR, and NDR platforms, aligned to MITRE ATT&CK TTPs, owning the full use case lifecycle from requirements through to tuning and deprecation.
  • Build and optimise SOAR playbooks and automated response workflows, identifying and implementing automation opportunities across triage, enrichment, containment, and evidence collection.
  • Own the onboarding of new log sources and manage data ingestion pipelines for cost-effectiveness, completeness, and reliability.
  • Act as Tier 3 technical escalation for complex investigations and high-severity incidents, supporting forensic analysis, malware triage, and root cause determination.
  • Maintain the health, performance, and reliability of core SOC platforms and evaluate new tooling aligned to the SOC's maturity roadmap.
  • Partner with IT, Cloud, Network, and Identity teams to improve log coverage and response integration, and mentor Tier 1–2 analysts on detection logic and tooling.
  • Ensure detection and engineering controls support relevant compliance requirements and maintain audit-ready documentation across platforms and pipelines.

Conocimientos

SIEM rule development
Detection engineering
SOAR playbooks
Automation workflows
MITRE ATT&CK
Log onboarding
Data pipeline management
EDR/XDR knowledge
Scripting: Python/PowerShell/KQL

Herramientas

Python
PowerShell
KQL

Descripción del empleo

Company Description

Syntegon Telstar S.R.U is a company belonging to the Syntegon Group, which operates worldwide with 7,300 colleagues at 49 locations in over 20 countries.is a company belonging to the Syntegon Group, which operates worldwide.
As a brand specialising in the development of GMP consulting, engineering, construction and integrated process equipment projects, we serve companies linked to the life sciences market (pharmaceutical and biotechnology, healthcare, cosmetics, veterinary and food industries), as well as hospitals, laboratories and research centres. We also offer solutions using vacuum and high vacuum technologies for traditional and high-tech industries in the energy and aerospace sectors, as well as scientific experimentation.

Job Description

We are looking for a hands-onSenior SOC Engineerto join our team at our offices inTerrassa (Barcelona)to help design, build, and continuously improve the technology that powers our Security Operations Center. In this role, you’ll own the engineering backlog across SIEM, SOAR, EDR/XDR, and log pipelines—developing high-fidelity detections, efficient workflows, and resilient security data infrastructure.

Working closely with the SOC Leader and analyst teams, you’ll serve as a technical escalation point for complex incidents and help strengthen the SOC through automation, process improvement, and reliable engineering solutions. The ideal candidate combines strong security engineering expertise with a practical, collaborative approach and a passion for enabling analysts to respond more effectively.

Key Responsibilities
  • Design, develop, and maintain detection content across SIEM, EDR/XDR, and NDR platforms, aligned to MITRE ATT&CK TTPs, owning the full use case lifecycle from requirements through to tuning and deprecation.
  • Build and optimise SOAR playbooks and automated response workflows, identifying and implementing automation opportunities across triage, enrichment, containment, and evidence collection.
  • Own the onboarding of new log sources and manage data ingestion pipelines for cost-effectiveness, completeness, and reliability.
  • Act as Tier 3 technical escalation for complex investigations and high-severity incidents, supporting forensic analysis, malware triage, and root cause determination.
  • Maintain the health, performance, and reliability of core SOC platforms and evaluate new tooling aligned to the SOC's maturity roadmap.
  • Partner with IT, Cloud, Network, and Identity teams to improve log coverage and response integration, and mentor Tier 1–2 analysts on detection logic and tooling.
  • Ensure detection and engineering controls support relevant compliance requirements and maintain audit-ready documentation across platforms and pipelines.
Qualifications

Required Qualifications:

  • 5–8+ years in cybersecurity with 3+ years in a SOC engineering, detection engineering, or senior analyst role.
  • Deep hands-on expertise with SIEM platforms including query authoring and detection rule development.
  • Proven experience building SOAR playbooks and automating security workflows.
  • Strong knowledge of attacker TTPs and the MITRE ATT&CK framework, with the ability to translate them into detection logic.
  • Experience with log onboarding, data normalisation, and pipeline management at scale.
  • Solid understanding of EDR/XDR, NDR, cloud telemetry, and identity signals.
  • Scripting or development skills (e.g., Python, PowerShell, KQL) for automation and tooling integration.
  • Clear written and verbal communication with the ability to document technical content for varied audiences.

Preferred Qualifications:

  • Certifications: GIAC (GCIA, GCED, GCIH, GCFA, GMON), Microsoft SC-200, or equivalent cloud security certifications.
  • Experience with threat hunting methodologies and proactive adversary detection.
  • Exposure to offensive security, red teaming, or purple team exercises.
  • Experience in OT/ICS security environments (if relevant to the business).
  • Familiarity with data privacy, eDiscovery, and chain-of-custody requirements during investigations.
Additional Information

Availability to travel (approximately 10–20%) when required (HQ in Germany).

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior SOC Analyst
Senior SOC Analyst

SmartRecruiters, Inc. • Terrassa

Presencial
EUR 55.000 - 75.000
Senior SOC Engineer – SIEM, SOAR & Detection Automation
Senior SOC Engineer – SIEM, SOAR & Detection Automation

SmartRecruiters, Inc. • Terrassa

Presencial
EUR 65.000 - 90.000
Senior SOC Analyst
Senior SOC Analyst

Syntegon Technology GmbH • Terrassa

Presencial
EUR 54.000 - 76.000
Senior SOC Analyst
Senior SOC Analyst

SQUAD - Cabinet de conseils et d’expertises • Barcelona

Presencial
EUR 60.000 - 90.000
Personalized growth opportunities
Participation in internal events
Visibility at industry conferences
+1
SOC Analyst
SOC Analyst

Defion • Barcelona

Híbrido
EUR 35.000 - 50.000
Flexible Compensation Plan
Continuous training and certifications
Private health insurance
Senior SOC Analyst: Lead Incident Response & Threat Hunting
Senior SOC Analyst: Lead Incident Response & Threat Hunting

SmartRecruiters, Inc. • Terrassa

Presencial
EUR 55.000 - 75.000
MxDR SOC Engineer
MxDR SOC Engineer

Accenture España • Málaga

Híbrido
EUR 45.000 - 60.000
MxDR SOC Engineer
MxDR SOC Engineer

Accenture PLC • Málaga

Híbrido
EUR 40.000 - 60.000
Senior SOC Lead – Incident Response & Threat Hunting
Senior SOC Lead – Incident Response & Threat Hunting

Syntegon Technology GmbH • Terrassa

Presencial
EUR 54.000 - 76.000
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • Elche

Híbrido
EUR 45.000 - 67.000