CyberSecurity Specialist

SEIDOR

Warszawa

On-site

PLN 180,000 - 260,000

Full time

11 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

SEIDOR in Warsaw seeks a CyberSecurity L&M Service Specialist with 6+ years of security experience. You will develop monitoring standards, design SIEM use cases, and lead detection engineering across Windows/Linux, cloud and on-prem environments.

The role emphasizes risk assessment, incident response, and collaboration with stakeholders to improve security operations and documentation. Join a team delivering proactive security services.

Qualifications

  • 6+ years of experience in cybersecurity and security operations.
  • Secure SDLC; Windows/Linux and network security; enterprise controls and telemetry.
  • MITRE ATT&CK and D3FEND familiarity; secure scripting and CI/CD practices.

Responsibilities

  • Logging and monitoring: develop and maintain dashboards, KPIs, reports, and monitoring architectures.
  • SIEM engineering: integrate log sources, normalize data, optimize components and licensing, perform health checks.
  • Detection engineering: design and test monitoring use cases and correlation rules aligned with MITRE ATT&CK.
  • Security operations: configure, secure, maintain, and upgrade cybersecurity systems; implement controls.
  • Risk and incident response: assess risks, remediate audit findings, provide forensic analysis, support incident handlers.
  • New-system onboarding: identify logs, recommend tools, develop detection rules.
  • Reporting and documentation: deliver SOC reports, track remediation, maintain security playbooks.
  • Stakeholder collaboration: coordinate monitoring design with customers, system owners, and security teams.

Skills

6+ years experience
Security expertise
MITRE ATT&CK
D3FEND
CI/CD Azure DevOps
Cribl Stream
Splunk Enterprise
SOAR
UBA
Architecture & documentation
Vendor evaluation
Stakeholder management
Threat hunting
Incident response

Education

CISSP
CCSP
GPEN
Splunk Enterprise Admin
Splunk Enterprise Security Admin
TOGAF 9
Equivalent credentials

Tools

Cribl Stream
Splunk Enterprise
Enterprise Security
SOAR
UBA
Azure DevOps

Job description

We are a large company with a start-up spirit. We organize ourselves into expert knowledge Units that collaborate with each other.

That's why we are looking for curious individuals who are motivated by challenges and eager to grow personally and professionally, to join our team and make a positive impact on the world through technology.

ARE YOU UP FOR THE CHALLENGE?

We want you to be a part of our team, from Warsaw, as a CyberSecurity L&M Service Specialist.

WHAT WILL YOU DO IN YOUR DAY-TO-DAY?
  • Logging and monitoring: Develop and maintain standards, policies, dashboards, KPIs, reports, and monitoring architectures.
  • SIEM engineering: Integrate log sources, normalize valuable security data, optimize SIEM components and licensing, and perform regular platform health checks.
  • Detection engineering: Design, test, and improve monitoring use cases and correlation rules aligned with MITRE ATT&CK.
  • Security operations: Integrate, configure, secure, maintain, and upgrade cybersecurity systems while implementing and monitoring operational controls.
  • Risk and incident response: Assess risks and threats, remediate audit findings, provide forensic analysis, and support incident handlers.
  • New-system onboarding: Identify required logs and artifacts, recommend complementary monitoring tools, and develop relevant detection rules.
  • Reporting and documentation: Deliver actionable SOC reports and alerts, track remediation actions, and maintain security plans, procedures, technical documentation, and playbooks.
  • Stakeholder collaboration: Coordinate monitoring design and improvements with customers, system owners, and security operations engineering teams.
WHAT DO WE EXPECT FROM YOU?

The consultant must demonstrate experience in:

- 6+ years of experience

  • Certifications: At least three internationally recognized certifications - subject to Contracting Authority approval from CISSP, CCSP, GPEN, Splunk Enterprise Admin, Splunk Enterprise Security Admin, TOGAF 9, or equivalent credentials.
  • Security expertise: Secure SDLC; Windows/Linux and network security; enterprise controls and telemetry; penetration testing and red teaming; defensive monitoring, incident triage, threat hunting, and detection engineering; vulnerabilities, emerging threats, and exploit techniques.
  • Frameworks and automation: Practical knowledge of MITRE ATT&CK and D3FEND; secure scripting; troubleshooting; Infrastructure as Code and CI/CD using Azure DevOps.
  • Security platforms: Administration, integration, and lifecycle management of Cribl Stream, Splunk Enterprise, Enterprise Security, SOAR, and UBA - including data ingestion, correlation-search tuning, and automated playbooks.
  • Architecture and documentation: Design of security-monitoring capabilities supported by HLDs, LLDs, technical blueprints, reports, policies, procedures, and business cases.
  • Strategy and stakeholder management: MSSP and vendor evaluation, cybersecurity roadmap development, executive presentations, funding justification, and stakeholder alignment.
Will you join us in humanizing technology?
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CyberSecurity Logging & Monitoring Service Specialist
CyberSecurity Logging & Monitoring Service Specialist

Altherias • Warszawa

Hybrid
PLN 150,000 - 210,000
CyberSecurity Service & L&M Specialist
CyberSecurity Service & L&M Specialist

Aricoma • Warszawa

On-site
PLN 110,000 - 165,000
On-site in Warsaw
HO relocation possibility
Cybersecurity Risk Manager
Cybersecurity Risk Manager

SEIDOR • Warszawa

On-site
PLN 180,000 - 280,000
System Security Specialist
System Security Specialist

Totum Partners • Warszawa

Hybrid
PLN 120,000 - 180,000
Hybrid work
Competitive salary
Benefits package
+1
CyberSecurity Logging & Monitoring (L&M) Service Specialist
CyberSecurity Logging & Monitoring (L&M) Service Specialist

TechTree • Warszawa

On-site
PLN 240,000 - 360,000
Cyber Security Engineer
Cyber Security Engineer

Interact Software • Poland

On-site
PLN 120,000 - 180,000
Cybersecurity Specialist
Cybersecurity Specialist

ipracujzdalnie.pl • Katowice

Hybrid
PLN 120,000 - 170,000
Attractive remuneration
Hybrid work
Advanced technology stack
+1
CyberSecurity L&M Service Specialist (Warsaw, 80% remote) – Frontex at The Whiteam
CyberSecurity L&M Service Specialist (Warsaw, 80% remote) – Frontex at The Whiteam

The Whiteam • Warszawa

Hybrid
PLN 180,000 - 240,000
CyberSecurity L&M Service Specialist (Warsaw, 80% remote) – Frontex
CyberSecurity L&M Service Specialist (Warsaw, 80% remote) – Frontex

TheWhiteam • Warszawa

Hybrid
PLN 180,000 - 240,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Michael Page • Województwo pomorskie

Hybrid
PLN 80,000 - 110,000
Competitive salary
Annual bonus
Life insurance
+2