Senior SOC Engineer: Incident Response & Automation

HelloFresh

Berlin (NH)

On-site

USD 103,000 - 148,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Pension scheme (HelloFresh)
Hybrid working model
HelloFresh box discounts
German language learning budget
HelloFresh Academy
Mental health support
Transportation perks
Headspace access
Spill wellbeing platform
Sabbatical leave options

Job summary

HelloFresh in Berlin is seeking an experienced SOC Analyst to join our security operations, mentor junior analysts, and lead incident response while maturing logging, monitoring, and automation across AWS and enterprise IT. You will collaborate with the Manila team, handle escalations, and refine SOC processes for faster containment and reporting.

Ideal candidates bring cloud security monitoring experience, strong scripting skills in Python/Go, and the ability to craft detection rules with AI

Qualifications

  • Proven security monitoring and incident response experience in public cloud environments.
  • Experience with cloud SIEM & SOAR platforms, DDoS mitigation and preventing tools and Layer-7 Web-based perimeter security controls.
  • Excellent programming (automation) skill with Python / Go.
  • AI-enhanced coding to write and debug Python scripts for security automation.
  • Ability to write detection rules (Sigma, KQL) with AI tooling.
  • Understanding of network intrusion methods and IDS/IPS concepts.
  • Strong log analysis across multiple sources and noise reduction techniques.
  • Good communication and reporting skills.
  • Willingness to on-call in rotational shifts.

Responsibilities

  • Mature logging and monitoring of Cloud, IT and App workloads using automation and IaC.
  • Ingest and optimize security events from App logs, Kubernetes, CloudTrail, CloudFlare, ELB logs.
  • Conduct threat hunts against file-less malware and APTs using Sysmon, Osquery, RITA, Zeek.
  • Use AI tools to write scripts for security automation and data parsing.
  • Summarize high-volume logs and explain complex code snippets with LLMs.
  • Develop advanced cross-correlation rules beyond out-of-the-box to detect attacks.
  • Generate security metrics and reporting on incidents and SOC effectiveness.
  • Lead incident detection and response in AWS cloud and enterprise IT environments.
  • Act as shift lead and communicate with Berlin SOC leadership during active incidents.
  • Suggest detection rule tuning and SOP refinements; contribute to knowledge base.

Skills

Security monitoring
Incident response
Cloud environments
Python
Go
AI-assisted coding
Detection rules (Sigma/KQL)
Log analysis
Communication skills
On-call readiness

Tools

Sysmon
Osquery
RITA
Zeek
ElasticSearch
Splunk
Sumo Logic
Graylog
KQL
Sigma

Job description

HelloFresh in Berlin is seeking an experienced SOC Analyst to join our security operations, mentor junior analysts, and lead incident response while maturing logging, monitoring, and automation across AWS and enterprise IT. You will collaborate with the Manila team, handle escalations, and refine SOC processes for faster containment and reporting.

Ideal candidates bring cloud security monitoring experience, strong scripting skills in Python/Go, and the ability to craft detection rules with AI

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer - SOC, Cloud IR & Automation
Security Engineer - SOC, Cloud IR & Automation

HelloFresh • Berlin (NH)

Hybrid
USD 90,000 - 130,000
HelloFresh Pension Scheme
Hybrid working model
HelloFresh box discounts
+7
Security Engineer
Security Engineer

Cyera • New York (NY)

On-site
USD 120,000 - 170,000
Senior Security Engineer (SOC) (m,f,x)
Senior Security Engineer (SOC) (m,f,x)

HelloFresh • Berlin (NH)

On-site
USD 103,000 - 148,000
Pension scheme (HelloFresh)
Hybrid working model
HelloFresh box discounts
+7
Senior SOC Analyst (Direct Hire Fortune 100CO)
Senior SOC Analyst (Direct Hire Fortune 100CO)

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000
SOC Analyst
SOC Analyst

Cato Networks • United States

Hybrid
USD 90,000 - 150,000
Hybrid work model
Global team collaboration
Senior SOC Analyst (Direct Hire EAD OKAY)
Senior SOC Analyst (Direct Hire EAD OKAY)

Confidential • United States

Hybrid
USD 120,000 - 180,000
SOC Analyst
SOC Analyst

PSG Global Solutions • Dallas (TX)

On-site
USD 90,000 - 120,000
Senior SOC Analyst: Lead Incident Response & Threat Hunting
Senior SOC Analyst: Lead Incident Response & Threat Hunting

Confidential • Houston (TX)

Hybrid
USD 110,000 - 150,000
Senior SOC Lead: Incident Response & Threat Detection
Senior SOC Lead: Incident Response & Threat Detection

5195 EKC Advanced Electronics USA, LLC • Delaware

On-site
USD 120,000 - 180,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000