Remote
Senior Cybersecurity Analyst - (Cyber Defense Operations)
About this role
We’re looking for a Senior Cybersecurity to join a global Cybersecurity Operations team responsible for protecting critical environments and supporting international organizations against evolving cyber threats. You’ll be part of a 24x7 Security Operations Centre (SOC) , working with cybersecurity specialists across the world to monitor, investigate and respond to security incidents. This is a hands-on role where your technical expertise will directly contribute to improving threat detection, incident response and overall security.
🚀 What will you do? Monitor, triage and investigate security alerts across SIEM, EDR, Microsoft Security and cloud environments . Investigate potential cyber threats and security incidents, identifying root causes and appropriate remediation actions . Analyze logs from Windows, Linux, databases, applications, web servers, firewalls and network security systems . Work closely with Incident Response teams and cybersecurity specialists to contain and resolve threats.
Use and maintain security monitoring and detection tools, helping improve detection quality and reduce false positives. Prepare clear security reports, incident summaries and technical findings for clients. Manage security-related tickets and ensure incidents are properly documented. Contribute to improving SOC processes, procedures, documentation and knowledge bases. Work directly with clients to understand their environments and optimize security monitoring.
Stay up to date with emerging threats, technologies and cybersecurity best practices. 🛠️ What are we looking for? We’re looking for someone who combines strong technical skills with a proactive and collaborative mindset. You should have: 5+ years of experience in IT, Cybersecurity or Security Operations. Hands-on experience working in a SOC environment , including security alert triage and incident investigation. Strong knowledge of SIEM and EDR technologies .
Experience with platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight or ELK . Experience with Microsoft Security technologies , including Defender for Endpoint, Microsoft 365, Sentinel, Azure Security and XDR. Strong understanding of Azure, AWS and/or GCP . Experience with at least one EDR solution, such as Microsoft Defender for Endpoint or CrowdStrike . Strong knowledge of networking and TCP/IP . Excellent experience analyzing security logs across Windows and Linux environments .