Senior Security Analyst – Incident Response, Threat Intelligence & Threat Hunting
We’re looking for a senior, hands‑on technical professional to defend OutSystems’ digital assets and global operations within a 24/7 SOC.
Key Responsibilities
- Own complex incident investigations end‑to‑end, from detection to containment and remediation. Conduct root cause analysis and post‑incident reviews.
- Continuously hunt for anomalies and threats across on‑prem and cloud environments using threat intelligence, analytics, and behavioral patterns.
- Monitor global threat actor activity, transform raw intel into actionable defense strategies, and collaborate with internal teams to harden the security posture of OutSystems.
- Work with engineering and DevSecOps teams to improve detection coverage, enrich SIEM use cases, and automate response processes.
- Develop, optimize, and maintain incident response and threat hunting playbooks, ensuring operational excellence and consistency.
- Identify gaps, suggest improvements, and contribute to capability building for detection, response, and threat modeling.
Qualifications
- 4-6+ years of experience in a SOC, MDR, or enterprise security team with hands‑on IR, TI, or Threat Hunting focus.
- In‑depth knowledge of the MITRE ATT&CK Framework, Cyber Kill Chain, and adversary TTPs.
- Strong understanding of SIEM tools (e.g., Splunk, Sentinel, QRadar), EDR, and other detection technologies.
- Proficiency with scripting or query languages (e.g., Python, PowerShell, KQL, YARA).
- Familiarity with AWS, Azure, and/or other cloud environments.
- Familiarity with web technologies and protocols (web applications, APIs, service‑oriented architectures) and the threats against them.
- Experience with log analysis, forensic tools, and threat intelligence platforms (e.g., MISP, ThreatConnect).
- Ability to translate technical findings into clear, actionable insights for technical and non‑technical audiences.
- Strong written and verbal communication skills, with experience presenting to stakeholders or executive teams.
- Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
Nice to Have
- Relevant certifications (e.g., GCIA, GCIH, GNFA, GCFA, GCTI, OSCP) or a degree in a cybersecurity‑related field.
- Experience with detection‑as‑code, version control, and CI/CD for security content.
What do we have to offer you?
- A company at the vanguard of the agentic revolution, where we don’t just react to AI innovation—we architect it.
- Real growth opportunities through structured programs, professional development funds, and internal mobility.
- A global collective of world‑class talent and mentors who are deeply invested in your growth.
As an equal‑opportunity employer, all qualified applicants receive equal consideration regardless of race, origin, religion, sex, sexual orientation, gender identity, disability, veteran status, or any other protected status.