Lead, Security(T1 SOC Analyst)

Posted 12 Hours Ago
Be an Early Applicant
Budapest, HUN
In-Office
Mid level
Cloud • Information Technology • Consulting
The Role
Work in a 24/7 global SOC conducting incident triage, investigation, prioritization, escalation, containment coordination, and remediation tracking. Analyze security events using SIEM and EDR tools, correlate threats, maintain investigation documentation and playbooks, and collaborate with threat hunting, intelligence, and red team teams to improve monitoring and defense capabilities.
Summary Generated by Built In

Who We Are

At Kyndryl, we run and reimagine the mission-critical technology systems that drive advantage for the world’s leading businesses.  We are at the heart of progress; with proven expertise and a continuous flow of AI-powered insight, enabling smarter decisions, faster innovation, and a lasting competitive edge. For our people—Kyndryls—that means doing purposeful work that powers human progress. Join us and experience a flexible, supportive environment where your well-being is prioritized and your potential can thrive.


The Role

Kyndryl’s Security & Resiliency is one of our most critical practices, ensuring enterprises, regardless of their size and complexity, remain secure, available, reliable, and resilient. We take Cybersecurity seriously. We're not just invested; we're committed. We're not just protecting data; we're empowering. Kyndryl is committed to making the world safer, not only by investing in state-of-the-art services and technologies but also by empowering underserved communities with essential cyber skills.
When you walk through our doors, you're not only joining a team but you're also becoming part of a legacy. Welcome to Kyndryl, where Cybersecurity isn't just a job – it’s a passion; a commitment to designing, running, and managing the most modern and reliable technology infrastructure that the world depends on every day.
As a Cybersecurity Defense professional at Kyndryl, you will encompass cybersecurity, incident response, security operations, vulnerability management, and the world of cyber threat hunting and security intelligence analysis all to protect the very heartbeat of organizations – their infrastructure.
In this role, you won't just monitor; you'll actively engage in the relentless hunt for cyber adversaries. In a world where every click and keystroke could be a potential gateway for attackers, your role will be nothing short of critical as you seek out advanced threats, attackers, and Indicators of Compromise (IOCs). Your expertise in endpoint detection and response (EDR) will be the shield that safeguards individual workstations, laptops, servers, and other devices from cybercrime. Your responsibilities go beyond vigilance. When it comes to network security, you'll utilize Network Detection and Response (NDR) to monitor the ever-flowing currents of network traffic. The incident management process will be used as you respond and manage to cybersecurity incidents.
Cybersecurity Defense is all about information. You'll gather, analyze, and interpret data applying your own and external threat intelligence to uncover potential security threats and risks. These insights and your ability to analyze complex attack scenarios will be the foundation of our security strategy – helping Kyndryl stay one step ahead of security breaches.
In Cybersecurity Defense at Kyndryl, you’re not just protecting the present – you’re shaping the future of digital security. Join us on this cybersecurity venture where your expertise and creativity will have a lasting impact in the world of digital defense.
Your Future at Kyndryl
When you join Kyndryl, you're not just joining a company – you're entering a space of opportunities. Our partnerships with industry alliances and vendors mean you'll have access to skilling and certification programs needed to excel in Security & Resiliency, while simultaneously supporting your personal growth. Whether you envision your career path as a technical leader within cybersecurity or transition into other technical, consulting, or go-to-market roles – we’re invested in your journey.


Who You Are

The security delivery support clients in managing their Security Operations and protecting their environments to mitigate security risks (e.g., insider and external threats, intentional and accidental). Position is for an experienced security professional with demonstrated experience within Security Operations, Threat Detection & Response, CSM (Continuous Security Monitoring) within the SOC operations environment.  

 

What You Will Do

  • Work in a 24/7 Global SOC Team

  • Conduct preliminary incident triage according to the Security Incident Management Triage Matrix and set the priority, provide analysis, determine, track remediation, and escalate as appropriate. 

  • Utilize the intrusion detection, security scanning, security log collection, content filtering, and other security-related systems to perform triage and investigation and incident response 

  • Provide support for security incidents coordination, providing recommendations for next steps and/or containment activities, by using different communication means. 

  • Cooperate the update of SOC related documentations, including investigation Playbooks, as well incidents have current notes related to investigation steps which were performed. 

  • Cooperation with other Security Analysts and different teams, including Threat Hunting, Threat Intelligence, Red Team, in order to improve the SOC monitoring and defense capabilities. 

  • Categorization and prioritization of security incidents 

  • Looking for the correlation between various security events 

      • Review and triage experience with endpoint detection and response, SIEM tools 

          Required Skills and Experience

          •Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or other related fields, from an accredited university. Equivalent professional experience can be used in lieu of a degree. 

           0-2 years of security analyst experience, preferably in a managed services environment.  

          • A minimum of 3 years hands on experience with one or more of the following areas: 

          • Operation of SIEM and EDR solutions including: 

          • QRadar or Splunk and Microsoft Sentinel, MS Defender. 

          • Operation and Implementation of Security Automation solutions including: 

          • Basic knowledge of SOAR (Security Orchestration Automation & Response) technologies. 

          Preferred Skills and Experience

            • Design and Implementation of Monitoring strategy including: 

            • Experience in defining data sources monitoring based on clients’ business   

            • Knowledge on MITRE Frameworks (ATT&CK, D3FEND)  

            • Familiar with Cyber Kill Chain  

            • Experience in technical Team coordination/management would be a plus.

            • English: Fluent (German would be a plus) 

            • Strong critical thinking and analytical skills and ability to think “out of the box” required. 

            • Must be able to work independently or with a team, under minimum supervision. 


                Being You

                The “Kyn” in Kyndryl means kinship, which represents the strong bonds we have with each other, our customers and our communities. We focus on ensuring all Kyndryls feel included and we welcome people of all cultures, backgrounds, and experiences. Even if you don’t meet every requirement, we encourage you to apply. We believe in growth, and we’re excited to see what you can bring. At Kyndryl, employee feedback has told us that our number one driver of employee engagement is belonging. That sense of belonging — being a valued, respected, trusted member of the team — is fundamental to our culture and fueling great experiences for our customers. This dedication to welcoming everyone into our company means that Kyndryl gives you the ability to thrive and contribute to our culture of empathy and shared success. That’s The Kyndryl Way.

                What You Can Expect

                Your career with us isn’t just a job—it’s an adventure with purpose.  We offer a dynamic, hybrid-friendly culture that supports your well-being and empowers you to grow. Our Be Well programs are thoughtfully designed to support your financial, mental, physical, and social health—because we know that when you feel your best, you do your best.
                From your very first day, you’ll dive into impactful work that powers the systems our customers rely on every day. You won’t just contribute—you’ll make a difference, tackling meaningful projects that sharpen your skills and fuel your growth.
                We’re here to champion your journey. With powerful tools to chart your career path, personalized development goals aligned with your ambitions, and continuous feedback to keep you inspired and on track, you’ll have everything you need to thrive and evolve. You’ll develop in-demand skills to grow your career and achieve your ambitions with access to cutting-edge learning opportunities—from certifications with Microsoft, Google, and Amazon to coaching and hands-on experiences. And through it all, you’ll be part of a culture that values empathy, restless learning, and a devotion to shared success.
                We want you to thrive here—and we’re committed to helping you do just that. Ready to make an impact? Join us and help shape what’s next.

                Get Referred!

                If you know someone that works at Kyndryl, when asked ‘How Did You Hear About Us’ during the application process, select ‘Employee Referral’ and enter your contact's Kyndryl email address.

                Skills Required

                • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent professional experience
                • 0–2 years of security analyst experience, preferably in a managed services environment
                • At least 3 years of hands-on experience operating SIEM and EDR solutions
                • Experience with QRadar or Splunk, Microsoft Sentinel, and Microsoft Defender
                • Experience operating and implementing security automation solutions
                • Basic knowledge of SOAR technologies
                • Fluent English
                • Experience designing and implementing security monitoring strategies
                • Knowledge of MITRE ATT&CK and MITRE D3FEND frameworks
                • Familiarity with the Cyber Kill Chain
                • Technical team coordination or management experience
                • German language skills
                • Strong critical-thinking and analytical skills
                • Ability to work independently or collaboratively with minimal supervision

                Kyndryl Compensation & Benefits Highlights

                The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Kyndryl and has not been reviewed or approved by Kyndryl.

                • Fair & Transparent Compensation Pay is considered good in some roles, with mentions of “good pay,” “great pay and benefits,” and an “acceptable salary range” paired with bonuses. Certain senior or consulting tracks are described as market-competitive.
                • Leave & Time Off Breadth Vacation, paid time off, holidays, and a dedicated volunteer day are highlighted as positives. Parental leave exists companywide alongside sick leave and disability coverage.
                • Wellbeing & Lifestyle Benefits Remote and hybrid flexibility is emphasized, including 100% remote roles and a formal flexible workplace policy. Well‑being resources such as the Be Well program and an EAP are available.

                Kyndryl Insights

                Am I A Good Fit?
                beta
                Get Personalized Job Insights.
                Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

                The Company
                HQ: New York, NY
                46,070 Employees
                Year Founded: 2021

                What We Do

                We have the world’s best talent that design, run, and manage the most advanced and reliable technology infrastructure each day. Together, we think holistically about the health of these vital technology ecosystems. We are a focused, independent company that builds on our foundation of excellence by creating systems in new ways. Bringing in the right partners, investing in our business, and working side-by-side with our customers to unlock potential. We're raising the bar. Our experience speaks for itself: We have 90,000 highly skilled employees around the world serving 75 of the Fortune 100. But our purpose is what drives us: Advancing the vital systems that power human progress. Because when a digital ecosystem is healthy, it can more readily adapt and support continuous growth and that opens up a world of possibility for everyone.

                Similar Jobs

                Ericsson Logo Ericsson

                Senior Verification Engineer

                Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
                In-Office
                Budapest, HUN
                88000 Employees

                Ericsson Logo Ericsson

                Architect

                Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
                In-Office
                6 Locations
                88000 Employees

                Wise Logo Wise

                Associate Product Manager

                Fintech • Mobile • Payments • Software • Financial Services
                Hybrid
                Budapest, HUN
                9000 Employees
                14M-14M Annually

                Pfizer Logo Pfizer

                Senior Manager, Scientific Learning, Medical Academy

                Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
                Remote or Hybrid
                26 Locations
                121990 Employees

                Similar Companies Hiring

                Axle Health Thumbnail
                Artificial Intelligence • Healthtech • Information Technology • Logistics
                Santa Monica, CA
                25 Employees
                NODA AI Thumbnail
                Artificial Intelligence • Information Technology • Software • Cybersecurity
                Sydney, AU
                54 Employees
                Golden Pet Brands Thumbnail
                Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
                El Segundo, California
                178 Employees

                Sign up now Access later

                Create Free Account

                Please log in or sign up to report this job.

                Create Free Account