A complete application in a minute — tailored resume and cover letter, ready to send.
BeOne ищет опытного SOC аналитика для руководства анализом SIEM, телеметрии и сетевого трафика, выявления угроз и IOC.
Будет настройка правил обнаружения, координация работы SOC инструментов (SIEM, EDR, IDS/IPS, SOAR, firewall), участие в аудитах и обучении, наставничество младших аналитиков и работа в сменах 14:00–22:00 по времени Польши.
BeOne develops medicines and is dedicated to fighting cancer, helping make more affordable medicines available to patients around the world.
Lead advanced analysis of SIEM alerts, endpoint telemetry, network traffic, and threat intelligence Identify patterns, anomalies, and emerging threats requiring deeper investigation Develop and tune detection rules, correlation logic, and alerting thresholds to reduce false positives Oversee the configuration, optimization, and health of SOC tools, including SIEM, EDR, IDS/IPS, SOAR, and firewalls Help evaluate new security technologies and contribute to architecture decisions Automate repetitive tasks and workflows using scripting or SOAR platforms Contribute to audits, risk assessments, and security control evaluations Help develop and refine security policies, standards, and playbooks Participate in on-call rotations and serve as an escalation point for critical events Oversee junior SOC analysts' work, providing guidance, performance feedback, and technical support to ensure accurate analysis, effective incident response, and professional development Act as a subject-matter expert in cross-team security discussions Communicate complex security issues to leadership in clear, actionable terms Lead and coordinate SOC team response activities, ensuring efficient escalation, proper task delegation, and timely resolution of critical security incidents
3+ Years of hands-on experience in a SOC or equivalent security role, including exposure to incident response and threat analysis Strong understanding of the Cyber Kill Chain, MITRE ATT&CK Framework, and modern threat actor techniques Experience with security event monitoring and triage, including log and network traffic analysis Solid knowledge of endpoint security, network security fundamentals, and operating systems Ability to conduct forensic analysis and identify indicators of compromise (IOCs) Strong verbal and written communication skills for technical and non-technical audiences Knowledge of compliance frameworks such as NIST and ISO 27001 and their operational implications Relevant certifications such as GCIH, GCFA, or CompTIA CySA+ Proficiency with security technologies such as SIEM, EDR, IDS/IPS, vulnerability management, and log analysis tools Strong problem-solving and analytical skills, with a proactive approach to threat detection and mitigation Ability to work in a fast-paced, dynamic environment while balancing multiple priorities Commitment to continuous learning and staying updated on cybersecurity trends and technologies Familiarity with Python, PowerShell, or Bash for analyzing security data, parsing logs, and identifying potential threats or anomalies during investigations Bachelor's Degree or equivalent practical experience
Salary range in Poland: 259,100 - 323,900 PLN Working hours: 2pm - 10pm