Security Operations Analyst (Cyber Defense Operations)

Posted 4 Hours Ago
Be an Early Applicant
12 Locations
In-Office or Remote
Senior level
Information Technology • Software
The Role
Monitor and investigate security alerts across SIEM, EDR, cloud, network, and endpoint environments. Analyze logs, conduct alert triage, support incident response and remediation, identify root causes, tune detections, reduce false positives, prepare security reports, and improve SOC procedures. The role operates within a global 24/7 Security Operations Centre and requires collaboration with incident response and cybersecurity teams.
Summary Generated by Built In

Location: Valencia, Spain, Hybrid OR Remote across EMEA
Employment: Full-Time Contract
Duration: 6 months, with potential extension
Language: Fluent English required
Industry: Cybersecurity / Cloud / Enterprise Security

About the Opportunity

Pragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst to join a global Cybersecurity Operations team.

You’ll be part of a 24/7 Security Operations Centre (SOC) responsible for monitoring, detecting, investigating, and responding to cyber threats across enterprise, cloud, network, and endpoint environments.

This is a hands-on security role focused on alert triage, threat investigation, log analysis, incident response, and security monitoring, working alongside cybersecurity specialists distributed across multiple regions.

What You’ll Do
  • Monitor, triage, and investigate security alerts across SIEM, EDR, Microsoft security tools, and cloud platforms.

  • Analyze host and network logs from Windows, Linux, databases, applications, web servers, firewalls, and NIDS/HIDS.

  • Investigate suspicious activity, identify root causes, and determine appropriate remediation or escalation.

  • Support incident response, remediation, and recovery activities.

  • Work closely with Incident Response and other cybersecurity teams to manage security threats.

  • Analyze network and security events using TCP/IP, syslog, firewall, and network monitoring data.

  • Identify opportunities to improve detection quality and reduce false positives through tuning and optimization.

  • Gather technical information from clients to improve security monitoring and detection.

  • Prepare and present security reports, summaries, and technical findings.

  • Contribute to SOC procedures, documentation, knowledge bases, and quality-control processes.

  • Review operational feedback and implement corrective actions to continuously improve service quality.

What We’re Looking For
  • 5+ years of relevant experience in IT/cybersecurity, including security alert triage and incident support.

  • Hands-on experience working in a SOC environment.

  • Strong experience with SIEM and EDR platforms.

  • Advanced log analysis skills across Windows/Linux, databases, applications, and infrastructure.

  • Strong knowledge of Microsoft Security technologies, including Microsoft Sentinel and Defender.

  • Experience with cloud security across Azure, AWS, and/or GCP.

  • Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.

  • Experience with at least one EDR solution such as Microsoft Defender for Endpoint or CrowdStrike.

  • Knowledge of email security, network monitoring, and incident response.

  • Strong knowledge of Linux, macOS, and Windows.

  • Fluent English with excellent written and verbal communication skills.

Nice to Have
  • Experience working on an Incident Response team with Tier-1/Tier-2 incident triage.

  • AWS security monitoring experience across IaaS, PaaS, or SaaS environments.

  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar.

  • Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.

  • Customer-facing cybersecurity experience.

Why Join
  • Work inside a global 24/7 cybersecurity operation protecting international organizations.

  • Gain exposure to large-scale cloud, SIEM, EDR, network, and endpoint security environments.

  • Collaborate with cybersecurity specialists across multiple regions and disciplines.

  • Work directly on real-world threat detection and incident response.

  • Build experience across a broad enterprise security technology stack.

Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.

In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.

Skills Required

  • 5+ years of relevant IT or cybersecurity experience
  • Experience with security alert triage and incident support
  • Hands-on experience working in a Security Operations Centre
  • Strong experience with SIEM and EDR platforms
  • Advanced log analysis across Windows, Linux, databases, applications, and infrastructure
  • Strong knowledge of Microsoft security technologies, including Microsoft Sentinel and Defender
  • Experience with cloud security across Azure, AWS, and/or GCP
  • Experience with SIEM platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK
  • Experience with at least one EDR solution, such as Microsoft Defender for Endpoint or CrowdStrike
  • Knowledge of email security, network monitoring, and incident response
  • Strong knowledge of Linux, macOS, and Windows
  • Fluent English with excellent written and verbal communication skills
  • Incident response team experience with Tier-1/Tier-2 incident triage
  • AWS security monitoring experience across IaaS, PaaS, or SaaS environments
  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar
  • Certifications such as Microsoft SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE
  • Customer-facing cybersecurity experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Marseille
11 Employees
Year Founded: 2022

What We Do

Trusted by remote-first companies worldwide. Completing tech projects for startups and scaleups.

Similar Jobs

Mastercard Logo Mastercard

Consultant

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Remote or Hybrid
Athens, GRC
38800 Employees

Pfizer Logo Pfizer

Staff Software Engineer

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
36 Locations
121990 Employees

Mondelēz International Logo Mondelēz International

Brand Manager

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Remote or Hybrid
Athens, GRC
90000 Employees

Pfizer Logo Pfizer

Sustainability Senior Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
30 Locations
121990 Employees
112K-207K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account