Security Operations Analyst (Cyber Defense Operations)

Pragmatike

Paris

Hybride

EUR 70 000 - 90 000

Plein temps

Il y a 2 heures
Soyez parmi les premiers à postuler
Générateur de candidature

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Passez les filtres ATS

Résumé du poste

Pragmatike is seeking a Security Operations Analyst to join a global 24/7 Cybersecurity Operations team. You will monitor, triage, investigate, and respond to cyber threats across enterprise, cloud, network, and endpoint environments.

This hands-on role emphasizes alert triage, threat investigation, log analysis, and incident response. You will work with cybersecurity specialists across regions to strengthen detection quality and incident handling.

Qualifications

  • 5+ years of relevant IT/cybersecurity experience with security alert triage and incident support.
  • Hands-on experience in a SOC environment.
  • Strong experience with SIEM and EDR platforms.
  • Advanced log analysis across Windows/Linux, databases, apps, and infrastructure.
  • Solid knowledge of Microsoft Security tech, incl. Sentinel and Defender.
  • Cloud security experience across Azure, AWS and/or GCP.
  • Experience with SIEMs such as Splunk, QRadar, ArcSight, MS Sentinel, or ELK.
  • Experience with at least one EDR such as Defender for Endpoint or CrowdStrike.
  • Knowledge of email security, network monitoring, and incident response.
  • Strong Linux, macOS, and Windows knowledge.
  • Fluent English with excellent written and verbal communication skills.

Responsabilités

  • Monitor, triage and investigate security alerts across SIEM/EDR and cloud tools.
  • Analyze logs from Windows, Linux, databases, apps, and networks.
  • Investigate suspicious activity, determine root causes, and escalate when needed.
  • Support incident response, remediation and recovery activities.
  • Collaborate with IR and other teams to manage threats.
  • Analyze events using TCP/IP, syslog, firewall, and network data.
  • Identify opportunities to improve detection and reduce false positives.
  • Gather technical info from clients to improve monitoring and detection.
  • Prepare security reports and technical findings for stakeholders.
  • Contribute to SOC procedures, docs, and quality controls.
  • Implement corrective actions from feedback to improve service quality.

Connaissances

SOC experience
Incident response
Log analysis
Threat monitoring
Fluent English

Outils

SIEM platforms (Splunk, QRadar, ArcSight, MS Sentinel, ELK)
EDR platforms (Defender for Endpoint, CrowdStrike)
Microsoft Defender for Endpoint

Description du poste

Location: Valencia, Spain, Hybrid OR Remote across EMEA

Employment: Full-Time Contract

Duration: 6 months, with potential extension

Language: Fluent English required

Industry: Cybersecurity / Cloud / Enterprise Security

About The Opportunity

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst to join a global Cybersecurity Operations team. You’ll be part of a 24/7 Security Operations Centre (SOC) responsible for monitoring, detecting, investigating, and responding to cyber threats across enterprise, cloud, network, and endpoint environments. This is a hands‑on security role focused on alert triage, threat investigation, log analysis, incident response, and security monitoring, working alongside cybersecurity specialists distributed across multiple regions.

What You’ll Do
  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.
  • Investigate suspicious activity, identify root causes, and determine appropriate remediation or escalation.
  • Support incident response, remediation, and recovery activities.
  • Work closely with Incident Response and other cybersecurity teams to manage security threats.
  • Analyze network and security events using TCP/IP, syslog, firewall, and network monitoring data.
  • Identify opportunities to improve detection quality and reduce false positives through tuning and optimization.
  • Gather technical information from clients to improve security monitoring and detection.
  • Prepare and present security reports, summaries, and technical findings.
  • Contribute to SOC procedures, documentation, knowledge bases, and quality-control processes.
  • Review operational feedback and implement corrective actions to continuously improve service quality.
What We’re Looking For
  • 5+ years of relevant experience in IT/cybersecurity, including security alert triage and incident support.
  • Hands‑on experience working in a SOC environment.
  • Strong experience with SIEM and EDR platforms.
  • Advanced log analysis skills across Windows/Linux, databases, applications, and infrastructure.
  • Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender.
  • Experience with cloud security across Azure, AWS, and/or GCP.
  • Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.
  • Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.
  • Knowledge of email security, network monitoring, and incident response.
  • Strong knowledge of Linux, macOS, and Windows.
  • Fluent English with excellent written and verbal communication skills.
Nice to Have
  • Experience working on an Incident Response team with Tier-1/Tier-2 incident triage.
  • AWS security monitoring experience across IaaS, PaaS, or SaaS environments.
  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar.
  • Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.
  • Customer-facing cybersecurity experience.
Why Join
  • Work inside a global 24/7 cybersecurity operation protecting international organizations.
  • Gain exposure to large-scale cloud, SIEM, EDR, network, and endpoint security environments.
  • Collaborate with cybersecurity specialists across multiple regions and disciplines.
  • Work directly on real-world threat detection and incident response.
  • Build experience across a broad enterprise security technology stack.

Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.

In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.

Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

Security Operations Analyst — 24/7 SOC (Remote/Hybrid, EMEA)
Security Operations Analyst — 24/7 SOC (Remote/Hybrid, EMEA)

Pragmatike • Paris

Hybride
EUR 70 000 - 90 000
L2 SOC Analyst
L2 SOC Analyst

Integrity360 • Paris

Sur place
EUR 58 000 - 78 000
Prinicipal (L3) SOC Analyst
Prinicipal (L3) SOC Analyst

Integrity360 • Paris

Sur place
EUR 70 000 - 110 000
Prinicipal (L3) SOC Analyst
Prinicipal (L3) SOC Analyst

Integrity360 • Paris

Sur place
EUR 65 000 - 95 000
L2 SOC Analyst
L2 SOC Analyst

Integrity360 • Paris

Sur place
EUR 50 000 - 75 000
Cyber Security Engineer
Cyber Security Engineer

Leap29 • France

Sur place
EUR 70 000 - 100 000
Remote work in France
On-call rotation pay
Senior Security Operations Engineer
Senior Security Operations Engineer

Lever, Inc. • France

À distance
EUR 70 000 - 110 000
Fully remote
Health benefits
Pension plan
+8
Senior Security Operations Engineer
Senior Security Operations Engineer

Capital Fund Management (CFM) • Paris

Sur place
EUR 60 000 - 80 000
SOC Engineer
SOC Engineer

Europcar • Paris

Sur place
EUR 65 000 - 90 000
Staff Security Researcher
Staff Security Researcher

Lever, Inc. • France

À distance
EUR 90 000 - 140 000
Fully remote Europe
Health & pension
Wellness days
+1