Senior Security Detection and Response Analyst (TIER 2 Analyst)

Trustwave

Poland

Hybrid

PLN 150,000 - 210,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Life insurance
Medical insurance
Lunch card
Annual bonus
Employee assistance program
Pension scheme

Job summary

LevelBlue is seeking a Cyber Threat Engineer in Poland to join the Threat Detection and Response team. You will monitor, investigate, and respond to complex security incidents 24/7, collaborating with DFIR colleagues and client security teams.

The role requires strong knowledge of EDR, Unix/Linux and Windows administration, and excellent communication skills to handle escalations and mentor analysts within TDR.

Qualifications

  • Knowledge of cyber investigation and incident handling best practices.
  • Experience with Endpoint Detection and Response.
  • Experience administering Unix/Linux and Windows systems.
  • Understanding of exploit and remediation techniques.
  • Threat hunting and investigation experience.
  • Web services administration knowledge.
  • Familiarity with log collection and analysis tools.

Responsibilities

  • Analyze escalated, complex security cases.
  • Resolve technical problems in managed security solutions.
  • Document and improve monitoring processes.
  • Tune devices based on customer needs.
  • Baseline threat detection in client environments.
  • Test and improve EDR/IR policies.
  • Support DFIR and client security teams during incidents.
  • Follow security policies and escalation procedures.

Skills

Cyber investigation
EDR
Unix/Linux admin
Exploit remediation
Threat hunting
Web services admin
Log analysis

Education

High school diploma
College degree a plus

Tools

Palo Alto Cortex XDR
CrowdStrike Falcon
SentinelOne

Job description

LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world’s most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. LevelBlue combines AI-powered security operations, advanced threat intelligence, and elite human expertise to provide the most comprehensive portfolio of strategic advisory, managed security, offensive security, and incident response services. A Cyber Threat Engineer is a member of the Threat Detection and Response (TDR) team within LevelBlue Managed Security Services (MSS). This team specifically will act as the monitoring and response extension of a Digital Forensics and Incident Response Services (DFIR) team to provide 24/7 monitoring. In addition to possessing technical knowledge, a Threat Engineer interacts extensively with customers and partners using polite professional etiquette and serves as a technical point of escalation within TDR.POLAND-based required!

Duties
  • Analyze escalated, complex cases involving a pattern of security events from endpoint detection and response technologies.
  • Resolve intractable technical problems within managed security solutions as part of a sustained improvement project.
  • Create, improve, and document processes for the management and monitoring of security solutions.
  • Tune devices for blocking and reporting based on customer business need.
  • Baseline threat detection devices for complex and potentially breached customer environments.
  • Test and improve endpoint detection, protection, and response policies.
  • Take responsibility for customer satisfaction and overall success of managed services.
  • Timely respond to questions and concerns of the DFIR and client security teams concerning incident investigation and response.
  • Adhere to policies, procedures, and security best practices.
  • Resolve problems independently and understand appropriate documentation and escalation procedures.
  • Perform rotating on-call duties (nights/weekend rotations).
  • Act as a mentor and escalation point for analysts within the Threat Detection and Response team.
Skills & Knowledge Requirements
  • Cyber investigation and incident handling best practices
  • Endpoint Detection and Response
  • Unix/Linux and Windows system administration
  • Current exploit and remediation techniques
  • Threat Hunting and Investigation
  • Web Services Administration
  • Log collection and analysis tools
Desired experience
  • Advanced Palo Alto Cortex XDR
  • Intrusion analysis experience
  • Incident handling and documentation
  • Excellent customer service skills
  • Excellent analytical thinking and problem‑solving skills
  • Strong oral and written communication skills
  • Self‑managed and team oriented
  • Deadline and detail oriented
  • Highly motivated
Additional Qualifications
  • Required: English: Demonstrated Fluency
  • Preferred: Intermediate to advanced experience in Information Security related areas
  • Certified in Security related Industry, Vendor or Professional Certification- GCIA, GCIH, Security+, OSCP, or CEH preferred.
Certified in Vendor Specific Incident Handling and Investigation Certifications
  • Palo Alto Networks Systems Engineer: Cortex Associate
  • Palo Alto Networks Systems Engineer: Cortex Professional
  • Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
  • SentinelOne Incident Response
  • Crowdstrike Certified Falcon Responder (CCFR)
Education

A high school diploma or equivalent is required; a college or university degree is a plus.

What We Offer
  • contract of employment
  • sport card/ co-financing of vacation
  • life insurance
  • medical insurance
  • lunch card
  • annual bonus
  • employee assistance program (EAP)
  • the employee pension scheme (PPE)
Eligibility

This role is open to candidates legally authorized to work in Poland.

Company Culture

At LevelBlue, we support flexible work and bring people together in person for key moments based on role, team, and business needs.

LevelBlue is committed to a culture of respect, inclusion, and equal opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other status protected under applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Engineer - Global Threat Operations
Cyber Threat Engineer - Global Threat Operations

LevelBlue • Poland

Hybrid
PLN 120,000 - 180,000
Life insurance
Medical insurance
Sport card
+4
Cyber Threat Engineer - Global Threat Operations
Cyber Threat Engineer - Global Threat Operations

Trustwave • Poland

On-site
PLN 130,000 - 210,000
Sport card
Vacation co-financing
Life insurance
+5
Cyber Threat Engineer - Global Threat Operations
Cyber Threat Engineer - Global Threat Operations

LevelBlue, LLC. • Poland

Remote
PLN 180,000 - 260,000
contract of employment
sport card
life insurance
+5
Team Lead - Principal Security Detection & Response Analyst Team Lead
Team Lead - Principal Security Detection & Response Analyst Team Lead

LevelBlue • Poland

Hybrid
PLN 180,000 - 240,000
Contract of employment
Sport card
Life insurance
+5
Team Lead - Principal Security Detection & Response Analyst Team Lead (German or French Speaker)
Team Lead - Principal Security Detection & Response Analyst Team Lead (German or French Speaker)

LevelBlue • Poland

On-site
PLN 170,000 - 210,000
Contract of employment
Sport card
Life insurance
+5
Cyber Threat Analyst - Global Threat Operations
Cyber Threat Analyst - Global Threat Operations

Trustwave • Poland

On-site
PLN 120,000 - 170,000
Contract of employment
Sport card
Life insurance
+5
Team Lead - Principal Security Detection & Response Analyst Team Lead (German or French Speaker)
Team Lead - Principal Security Detection & Response Analyst Team Lead (German or French Speaker)

Trustwave • Poland

On-site
PLN 180,000 - 300,000
Sport card
Life insurance
Medical insurance
+4
Team Lead - Principal Security Detection & Response Analyst Team Lead
Team Lead - Principal Security Detection & Response Analyst Team Lead

LevelBlue, LLC. • Poland

Hybrid
PLN 180,000 - 260,000
Contract of employment
Sport card/ co-financing of vacation
Life insurance
+5
STM Team Lead
STM Team Lead

Trustwave • Poland

On-site
PLN 180,000 - 240,000
Contract of employment
Sport card/ co-financing of vacation
Life insurance
+5
STM Team Lead
STM Team Lead

LevelBlue • Poland

On-site
PLN 180,000 - 260,000
Contract of employment
Sport card
Life insurance
+5