Responsibilities
- Manage and implement technical customer onboarding and integrations with SOC platforms, including SIEM, Microsoft Azure, Defender, Splunk, and ITSM systems.
- Configure, maintain, and continuously improve SOC security tools, monitoring platforms, and related cloud security services.
- Apply technical expertise to implement and support core security technologies, including SIEM/SOAR platforms (Sentinel, Splunk), endpoint protection, and threat intelligence integrations.
- Support the handling of critical-severity incidents by providing technical input, assisting escalation decisions, and ensuring appropriate response and follow-up actions.
- Develop and maintain automations, integrations, and CI/CD pipelines to improve SOC detection and response efficiency.
- Participate in threat hunting, threat intelligence, and security investigations, supporting incident response when required.
- Identify and implement improvements to SOC tools, detection logic, and operational processes.
- Maintain clear and accurate documentation of technical solutions, configurations, and SOC procedures.
- Collaborate with cross-functional teams to support the implementation of security controls, procedures, and best practices.
Requirements
- University degree or ongoing studies in Cybersecurity, IT, Computer Science, Engineering, or related field preferred.
- Minimum 2–4 years of experience in cybersecurity or IT roles such as SOC Analyst, Security Engineer, System/Network Administrator, or similar (including relevant internships, certifications, or lab experience).
- Experience analyzing security events using log data from systems such as SIEM, SOAR, firewalls, intrusion detection systems, endpoint tools, and network monitoring platforms.
- Hands-on experience with Microsoft Azure, Microsoft Entra ID (Azure AD) and cloud security concepts.
- Experience developing and tuning detection rules, onboarding log sources, and supporting security monitoring use cases within SOC platforms.
- Solid understanding of incident response and security monitoring workflows, including alert triage, investigation, and escalation procedures.
- Good knowledge of Windows and Linux administration and system hardening fundamentals.
- Understanding of networking fundamentals, TCP/IP, authentication mechanisms (MFA, SSO), and enterprise security principles.
- Very good English knowledge (minimum B2).
Nice to Have
- Scripting or automation skills (PowerShell, Python, or Bash) and experience working with APIs are considered an advantage.
- Proactive approach to staying current with cybersecurity threats, technologies, and industry best practices.
Benefits
- Highly competitive salary.
- Bi-annual bonus based on seniority within the company.
- Meal tickets and various gift vouchers.
- Strong benefits list, including a brand new office, private medical insurance, and 24 vacation days plus a free birthday leave and many more.
Additional Information
- Received application information is treated as highly confidential and will only be used for recruitment process of this position. Data submitted will be secured and processed only for the purpose of recruitment and shall be deleted after its conclusion.
