Security Operations Analyst (Cyber Defense Operations)

Pragmatike

Italia

Ibrido

EUR 60.000 - 90.000

Tempo pieno

31 ore fa
Candidati tra i primi
Generatore di candidature

Trasforma questo ruolo in un colloquio — un curriculum e una lettera di presentazione personalizzati in base a ciò che cerca questo datore di lavoro.

Supera i filtri ATS

Descrizione del lavoro

Pragmatike is recruiting for a Security Operations Analyst to join a global SOC within an international organization. You’ll monitor, triage, and investigate security alerts across SIEM, EDR, and cloud platforms, supporting incident response and remediation in a 24/7 environment.

The role focuses on alert triage, threat investigation, log analysis, incident response, and security monitoring across enterprise, cloud, and network environments.

Competenze

  • 5+ years in IT/cybersecurity with incident support and alert triage.
  • Hands-on SOC experience.
  • Advanced log analysis across Windows/Linux, databases and apps.
  • Knowledge of Microsoft security tech including Defender and Sentinel.
  • Cloud security experience across Azure, AWS or GCP.
  • Experience with multiple SIEMs and EDRs as listed above.
  • Knowledge of email security, network monitoring and incident response.
  • Strong knowledge of Linux, macOS, and Windows.

Mansioni

  • Monitor, triage, and investigate security alerts across SIEM/EDR and cloud tools.
  • Analyze host, network logs from Windows, Linux, databases, apps, web servers, firewalls.
  • Investigate suspicious activity, identify root causes, and determine remediation.
  • Support incident response, remediation, and recovery activities.
  • Collaborate with Incident Response and other teams to manage threats.
  • Analyze events using TCP/IP, syslog, firewall, and monitoring data.
  • Suggest improvements to detection and reduce false positives.
  • Gather information from clients to improve monitoring and detection.
  • Prepare security reports, summaries, and technical findings.
  • Contribute to SOC procedures, docs, knowledge bases, and QA processes.
  • Incorporate feedback to continuously improve service quality.

Conoscenze

SOC operations
SIEM expertise
EDR expertise
Log analysis
Incident response
Cloud security
Windows/Linux/macOS
English fluency

Formazione

Bachelor’s degree in Computer Science or related

Strumenti

Splunk
QRadar
ArcSight
Microsoft Sentinel
ELK
Microsoft Defender for Endpoint
CrowdStrike

Descrizione del lavoro

Location: Valencia, Spain, Hybrid OR Remote across EMEA

Employment: Full-Time Contract

Duration: 6 months, with potential extension

Language: Fluent English required

Industry: Cybersecurity / Cloud / Enterprise Security

About The Opportunity

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst to join a global Cybersecurity Operations team.

You’ll be part of a 24/7 Security Operations Centre (SOC) responsible for monitoring, detecting, investigating, and responding to cyber threats across enterprise, cloud, network, and endpoint environments.

This is a hands‑on security role focused on alert triage, threat investigation, log analysis, incident response, and security monitoring, working alongside cybersecurity specialists distributed across multiple regions.

What You’ll Do
  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.
  • Investigate suspicious activity, identify root causes, and determine appropriate remediation or escalation.
  • Support incident response, remediation, and recovery activities.
  • Work closely with Incident Response and other cybersecurity teams to manage security threats.
  • Analyze network and security events using TCP/IP, syslog, firewall, and network monitoring data.
  • Identify opportunities to improve detection quality and reduce false positives through tuning and optimization.
  • Gather technical information from clients to improve security monitoring and detection.
  • Prepare and present security reports, summaries, and technical findings.
  • Contribute to SOC procedures, documentation, knowledge bases, and quality‑control processes.
  • Review operational feedback and implement corrective actions to continuously improve service quality.
What We’re Looking For
  • 5+ years of relevant experience in IT/cybersecurity, including security alert triage and incident support.
  • Hands‑on experience working in a SOC environment.
  • Strong experience with SIEM and EDR platforms.
  • Advanced log analysis skills across Windows/Linux, databases, applications, and infrastructure.
  • Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender.
  • Experience with cloud security across Azure, AWS, and/or GCP.
  • Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.
  • Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.
  • Knowledge of email security, network monitoring, and incident response.
  • Strong knowledge of Linux, macOS, and Windows.
  • Fluent English with excellent written and verbal communication skills.
Nice to Have
  • Experience working on an Incident Response team with Tier-1/Tier-2 incident triage.
  • AWS security monitoring experience across IaaS, PaaS, or SaaS environments.
  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar.
  • Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.
  • Customer‑facing cybersecurity experience.
Why Join
  • Work inside a global 24/7 cybersecurity operation protecting international organizations.
  • Gain exposure to large‑scale cloud, SIEM, EDR, network, and endpoint security environments.
  • Collaborate with cybersecurity specialists across multiple regions and disciplines.
  • Work directly on real‑world threat detection and incident response.
  • Build experience across a broad enterprise security technology stack.

Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.

In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.

Ottieni la revisione del curriculum gratis e riservata.

o trascina qui il file.

Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • Puglia

Ibrido
EUR 70.000 - 110.000
Security Operations Analyst (SIEM & Threat Detection)
Security Operations Analyst (SIEM & Threat Detection)

Pragmatike • Brindisi

Ibrido
EUR 55.000 - 85.000
Security Operations Analyst (SIEM & Threat Detection)
Security Operations Analyst (SIEM & Threat Detection)

Pragmatike • Puglia

Ibrido
EUR 60.000 - 90.000
Security Operations Analyst (SIEM & Threat Detection)
Security Operations Analyst (SIEM & Threat Detection)

Pragmatike • Italia

Ibrido
EUR 70.000 - 110.000
Senior Cybersecurity Analyst - (Cyber Defense Operations)
Senior Cybersecurity Analyst - (Cyber Defense Operations)

SmartRecruiters, Inc. • Turbigo

In loco
EUR 70.000 - 100.000
Private medical insurance
Life insurance
Lunch and transport card
+2
Security Operations Analyst - 24/7 SOC (Remote/EU)
Security Operations Analyst - 24/7 SOC (Remote/EU)

Pragmatike • Italia

Ibrido
EUR 60.000 - 90.000
Senior SIEM & Threat Detection Engineer (Hybrid/Remote)
Senior SIEM & Threat Detection Engineer (Hybrid/Remote)

Pragmatike • Brindisi

Ibrido
EUR 55.000 - 85.000
Cybersecurity analyst - Tier 1
Cybersecurity analyst - Tier 1

ReeVo Cloud & Cyber Security • Catania

Ibrido
EUR 18.000 - 22.000
Buoni pasto
Programmi welfare
Assicurazione sanitaria e contro gliIn
+2
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Arsenalia • Mestre

Ibrido
EUR 35.000 - 50.000
Corporate welfare platform
Work-life kit
Engagement initiatives
+1
CyberSecurity Specialist
CyberSecurity Specialist

K2 Partnering Solutions • Milano

In loco
EUR 60.000 - 90.000