Security Operations Analyst (Cyber Defense Operations)

New
P
PragmatikeCybersecurity
Hybrid OR Remote across EMEAContractMiddle
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Languages
Fluent English
Experience
5+ years
Required Skills
AWSGCPAzureLinux

Requirements

  • 5+ years of relevant experience in IT/cybersecurity, including security alert triage and incident support.
  • Hands-on experience working in a SOC environment.
  • Strong experience with SIEM and EDR platforms.
  • Advanced log analysis skills across Windows/Linux, databases, applications, and infrastructure.
  • Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender.
  • Experience with cloud security across Azure, AWS, and/or GCP.
  • Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.
  • Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.
  • Knowledge of email security, network monitoring, and incident response.
  • Strong knowledge of Linux, macOS, and Windows.
  • Fluent English with excellent written and verbal communication skills.

Responsibilities

  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.
  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.
  • Investigate suspicious activity, identify root causes, and determine appropriate remediation or escalation.
  • Support incident response, remediation, and recovery activities.
  • Work closely with Incident Response and other cybersecurity teams to manage security threats.
  • Analyze network and security events using TCP/IP, syslog, firewall, and network monitoring data.
  • Identify opportunities to improve detection quality and reduce false positives through tuning and optimization.
  • Gather technical information from clients to improve security monitoring and detection.
  • Prepare and present security reports, summaries, and technical findings.
  • Contribute to SOC procedures, documentation, knowledge bases, and quality-control processes.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now