Blue Team Incident Response Expert (SIEM/SOAR)

Amgen Capability Center Portugal

Lisboa

Presencial

EUR 42 000 - 68 000

Tempo integral

Há 12 dias
Gerador de candidaturas

Uma candidatura completa num minuto — currículo e carta de apresentação personalizados, prontos a enviar.

Ultrapassa os filtros ATS

Resumo da oferta

Inetum in Lisbon is seeking a Cybersecurity Analyst (Blue Team N2) to strengthen our security team, focusing on incident investigation and rapid containment and remediation across systems.

You will investigate incidents escalated by the N1 team, perform in-depth analysis, create SIEM use cases, develop SOAR playbooks, and document procedures to improve security processes. On-site, Monday to Friday, 09:00–18:00, located at Lisbon, Picoas.

Qualificações

  • Experience in Blue Team roles (N2 or equivalent).
  • Hands-on experience with SIEM configuration and use case creation.
  • Experience with SOAR and response automation; security playbook development.
  • Experience with ticketing/workflow tools (e.g., Remedy).
  • Strong analytical and troubleshooting skills in a cybersecurity context.
  • Ability to work autonomously in incident handling and resolution.

Responsabilidades

  • Investigate and handle security incidents escalated by the N1 team.
  • Perform in-depth technical analysis to identify root causes of incidents.
  • Execute containment, remediation, and mitigation actions across systems, networks, and security components.
  • Monitor and track incidents through to full resolution.
  • Create and optimize use cases within SIEM platforms.
  • Develop and maintain incident response playbooks (SOAR).
  • Document procedures, solutions, and improvements in the knowledge base.
  • Contribute to the continuous improvement of security processes.

Conhecimentos

Blue Team experience
Incident response
Analytical skills

Ferramentas

SIEM
SOAR
Remedy

Descrição da oferta de emprego

Inetum in Lisbon is seeking a Cybersecurity Analyst (Blue Team N2) to strengthen our security team, focusing on incident investigation and rapid containment and remediation across systems.

You will investigate incidents escalated by the N1 team, perform in-depth analysis, create SIEM use cases, develop SOAR playbooks, and document procedures to improve security processes. On-site, Monday to Friday, 09:00–18:00, located at Lisbon, Picoas.

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Cyber Defense & Incident Response Specialist
Cyber Defense & Incident Response Specialist

Amgen Capability Center Portugal • Lisboa

Presencial
EUR 42 000 - 68 000
SOC Analyst L1 (Blue Team)
SOC Analyst L1 (Blue Team)

Inetum • Ponta Delgada

Presencial
EUR 30 000 - 50 000
SOC Analyst L1 (Blue Team)
SOC Analyst L1 (Blue Team)

Inetum • Portugal

Híbrido
EUR 30 000 - 45 000
Cybersecurity Analyst L2 - Blue Team (Remote/Hybrid)
Cybersecurity Analyst L2 - Blue Team (Remote/Hybrid)

Inetum • Funchal

Híbrido
EUR 38 000 - 52 000
Cybersecurity Analyst L2 (Blue Team)
Cybersecurity Analyst L2 (Blue Team)

Inetum • Funchal

Híbrido
EUR 38 000 - 52 000
Cyber Defense CSIRT Analyst — Incident Response
Cyber Defense CSIRT Analyst — Incident Response

PrimeIT • Portugal

Híbrido
EUR 13 000 - 22 000
Food allowance
Flex benefits
Cybersecurity Analyst - SIEM, IR & Red Team
Cybersecurity Analyst - SIEM, IR & Red Team

PrimeIT • Lisboa

Presencial
EUR 35 000 - 50 000
Formação constante
Integração numa empresa internacional
Acompanhamento e progressão de carreira
SOC Threat Hunter & SIEM Tuning Engineer (Lisbon/Porto)
SOC Threat Hunter & SIEM Tuning Engineer (Lisbon/Porto)

Claranet limited • Lisboa

Híbrido
EUR 40 000 - 60 000
SOC Analyst: Threat Detection & Incident Response
SOC Analyst: Threat Detection & Incident Response

Devoteam | Cyber Trust • Porto

Presencial
EUR 35 000 - 48 000
Cybersecurity Engineer Tier 2
Cybersecurity Engineer Tier 2

Claranet limited • Lisboa

Híbrido
EUR 40 000 - 60 000