Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailYour daily tasks:
Triage and analysis of incidents escalated by our external 24/7 SOC provider.
Acting as an internal point of contact for security events and coordinating deeper investigation when needed.
Correlating alerts with internal business and technical context to identify real threats and false positives.
Reviewing and tuning detection rules in SIEM to improve quality and relevance of alerts.
Maintaining dashboards and reports for internal stakeholders and compliance purposes.
Participating in threat hunting and hypothesis-driven detection improvement.
Supporting purple teaming simulation exercises and post-incident analysis.
Contributing to the development of playbooks and knowledge base for security operations.
Supporting the security team in implementing defensive measures and hardening recommendations.
Qualifications :
Solid knowledge of cybersecurity operations and incident detection principles.
Hands-on experience with SIEM tools and log analysis.
Familiarity with detection tuning and creating or adjusting correlation rules.
Strong analytical skills and ability to assess threats in business context.
Experience working with or managing MSSP/SOC services is a strong plus.
Understanding of networking endpoint telemetry and authentication logs.
Familiarity with MITRE ATT&CK framework and basic threat modeling.
Proficiency in reading and understanding logs from various systems (GNU/Linux Windows Cloud).
Strong communication skills and ability to work cross-functionally.
Very good command of English.
Nice to have:
Exposure to EDR SOAR or CSPM tools.
Familiarity with threat intelligence feeds and IOC validation.
Basic scripting skills for data manipulation or automation (e.g. Python KQL Bash).
Security certifications such as Security GCIH GCIA or equivalent.
Experience in environments with outsourced SOCs or managed security providers.
Background in gaming creative industries or dynamic tech environments.
Additional Information :
What we can offer:
Remote Work :
No
Employment Type :
Full-time
Full-time