Senior IT Security Specialist Automation

NORDEA Bank Abp SA Oddział w Polsce

Warszawa

Hybrid

PLN 180,000 - 240,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid working model
Diversity and inclusion
Opportunities for growth

Job summary

NORDEA Bank Abp SA Oddział w Polsce poszukuje doświadczonego specjalisty ds. bezpieczeństwa do projektowania i wdrażania zautomatyzowanych playbooków obsługujących detekcję i reakcję w środowisku SOAR. Praca w zespole odpowiedzialnym za zabezpieczenia w Polsce.

Wymagane jest min. 3–5 lat praktycznego doświadczenia z SOAR, biegła znajomość Pythona i/lub PowerShell, a także doświadczenie z AI/ML w zastosowaniach bezpieczeństwa i z platformami EDR/XDR. Praca w modelu hybrydowym.

Qualifications

  • Analytical mindset i umiejętność rozwiązywania problemów w identyfikowaniu zdarzeń bezpieczeństwa.
  • Doświadczenie w tworzeniu playbooków automatyzacji i dedykowanych działań.
  • Minimum 3–5 lat pracy z platformami SOAR (PSA/Chronicle/Splunk).
  • Znajomość Pythona i/lub PowerShell.
  • Praktyczne doświadczenie z AI/ML w zastosowaniach bezpieczeństwa.
  • Znajomość EDR/XDR i interfejsów API.

Responsibilities

  • Projektowanie i implementacja zautomatyzowanych playbooków detekcji i reakcji przy użyciu SOAR i innych platform bezpieczeństwa.
  • Tworzenie inteligentnych playbooków i skryptów automatyzujących kontekst danych incydentów.
  • Integracja modeli LLM i AI generatywnej w procesy detekcji i reagowania.
  • Współpraca z zespołami monitoringu i IR w celu dostarczenia rozwiązań detekcji i reagowania.

Skills

Analytical mindset
Problem solving
Security event detection
Playbook development
Ownership
Python
PowerShell
AI/ML for security
EDR/XDR APIs
Cloud security / IaC
Autonomous security agents (nice to

Education

Bachelor's degree in CS/InfoSec or related field

Tools

Palo Alto xSOAR/xSIAM
Splunk SOAR
Google Chronicle SOAR

Job description

Nasze wymagania:
  • Analytical mindset, strong problem solving abilities to identify security events and patterns
  • Attention to details and methodical approach when developing playbooks
  • Strong sense of ownership, proactively driving tasks fully owning responsibilities end-to-end
  • Technical precision in playbook development to balance detection accuracy with operational efficiency
  • Curiosity and adaptability to stay up to date with evolving threat landscapes and emerging attack technique
  • Bachelor's degree in Computer Science, Information Security, Cyber Security or related technical field, or equivalent work experience
  • 3-5 + years hands-on experience with SOAR platforms (Palo Alto xSOAR/xSIAM, Splunk SOAR, Google Chronicle SOAR)
  • Strong programming skills in Python and/or PowerShell
  • Practical experience with implementing AI/ML models for security use cases
  • Proficiency with EDR/XDR platforms and their APIs
  • Experience with cloud security (AWS, Azure, GCP) and infrastructure as a code
Mile widziane:
  • Experience building autonomous security agents or AI-driven security solutions
  • Background in DevSecOps and CI/CD security automation
  • Advanced certifications such as GCIH, GCFA, GIAC GDAT, CIISP or vendor specific SOAR certifications
Zakres obowiązków:
  • Design and implement automated detection and response playbooks using SOAR and other security platforms
  • Develop intelligent playbooks and automation scripts that enrich incidents with comprehensive contextual data, perform automated actions helping to maintain optimal mean time to detect and mean time to response
  • Integrate large language models (LLMs) and generative AI into detection and response processes
  • Collaborate with monitoring teams and incident response to provide intelligent solutions into detection and response processes
Oferujemy:
  • Collaboration. Ownership. Passion. Courage. These are the values that guide us in how we work and how we make decisions - and that we imagine you share with us.
  • People are driven by many different factors. For some, it's to take their career to the next level. For others, it's to break new ground within their area of expertise - in other words, with us, you will always move forward.
  • A culture that fosters performance and growth in one of the largest Nordic banks, offering various opportunities to evolve, develop and learn from brilliant colleagues with diverse backgrounds in a vibrant working environment.
  • Hybrid working model - we believe in the value of bringing people together and at the same time we embrace the freedom of flexibility.
  • Diversity and inclusion are a natural part of our daily work. We know that an inclusive workplace is a sustainable one. We genuinely believe that our diverse backgrounds, experiences, characteristics and traits make us stronger together. Every day we strive to find new ways to improve diversity and inclusion within our community e.g. we have signed the European Diversity Charters in the countries where we operate to show our commitment and engage with others to continue learning and improving.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIEM SOAR Engineer
SIEM SOAR Engineer

EY (dawniej Ernst & Young) • Warszawa

Hybrid
PLN 180,000 - 260,000
Flexible working model
Hybrid/remote options
Private healthcare
+4
Senior Security Engineer (Red Team)
Senior Security Engineer (Red Team)

Atos Poland Global Services Sp. z o.o. • Województwo kujawsko-pomorskie

Hybrid
PLN 670,000 - 894,000
Hybrid working model
Analityczka / Analityk ds. SOC (L1)
Analityczka / Analityk ds. SOC (L1)

Polskie Elektrownie Jądrowe sp. z o.o. • Warszawa

Hybrid
PLN 60,000 - 90,000
Praca hybrydowa
Atrakcyjne wynagrodzenie
Benefity pozapłacowe
Senior Cybersecurity Penetration Tester – Mobile, Web, Infrastructure
Senior Cybersecurity Penetration Tester – Mobile, Web, Infrastructure

ITDS Polska Sp. z o.o. • Kraków

Hybrid
PLN 180,000 - 260,000
Stable cooperation and good conditions
Developing expertise in financial行业
Social events and international环境
+4
Inżynier Systemowy SIEM/SOAR – SOC & Detekcja
Inżynier Systemowy SIEM/SOAR – SOC & Detekcja

Comtegra SA • Warszawa

On-site
PLN 167,000 - 279,000
Senior Identity and Access Management Security Engineer – Cloud and Zero Trust
Senior Identity and Access Management Security Engineer – Cloud and Zero Trust

ITDS Polska Sp. z o.o. • Kraków

Hybrid
PLN 210,000 - 320,000
Stabilne zatrudnienie i długoterminowa
Praca w międzynarodowym środowisku
Karta medyczna
+3
Mid-Level Data Analyst – Cybersecurity & Azure Data Lake
Mid-Level Data Analyst – Cybersecurity & Azure Data Lake

ITDS Polska Sp. z o.o. • Kraków

Hybrid
PLN 120,000 - 180,000
Stable cooperation
Medical package
Multisport program
+3
Technical Support Engineer
Technical Support Engineer

DAGMA • Katowice

Hybrid
PLN 110,000 - 180,000
Możliwość pracy w modelu hybrydowym
Umowa o pracę
Opieka medyczna
+4
SOC Analyst (WAAP)
SOC Analyst (WAAP)

G-CORE INNOVATIONS SOCIETE A RESPONSABILITE LIMITEE • Kraków

Hybrid
PLN 90,000 - 130,000
Competitive compensation
Hybrid/remote options
Global remote work (up to 45 days/yr)
+5
Senior Security Engineer (AI)
Senior Security Engineer (AI)

Sopra Steria Polska Sp. z o.o. • Katowice

On-site
PLN 180,000 - 240,000
Luxmed
Medicover Sport
Worksmile
+9