Senior SOC Analyst – Cloud and Threat Response
Unleash your expertise in cybersecurity — be the frontline defender shaping tomorrow's digital safety!
Remote opportunity with flexible work in Poland and Portugal
As a Senior SOC Analyst – Cloud and Threat Response, you will be working for our client, a leading international cybersecurity organization dedicated to protecting essential infrastructure and digital assets. You will play a crucial role in monitoring, investigating, and responding to advanced cyber threats across multi-cloud environments, utilizing cutting-edge security technologies. This position offers an excellent opportunity for growth in a dynamic, innovation-driven security team.
Your main responsibilities:
- Actively monitor security alerts across multiple platforms, including Elastic SIEM, Darktrace, and CrowdStrike Falcon, performing initial validation to identify genuine threats.
- Conduct in-depth investigations into verified security incidents, correlating data logs, cloud events, and network telemetry to determine attack origins and impact.
- Monitor and analyze anomalies within cloud workloads using AWS native tools like Amazon GuardDuty, Security Hub, Inspector, and CloudTrail, ensuring ongoing security posture.
- Develop and optimize security use cases, automate workflows, and improve operational efficiency with Cortex SOAR and AWS tools.
- Execute containment and remediation actions following established procedures, such as isolating hosts, deploying blocks, or revoking cloud access credentials.
- Document findings, containment steps, and escalate critical incidents accurately within ticketing systems for continuous oversight.
You’re ideal for this role if you have:
- At least 4 years of experience in cybersecurity, SOC operations, or threat analysis.
- Proficiency with security monitoring tools, including Elastic SIEM, Darktrace, CrowdStrike Falcon, and AWS native security services.
- Strong analytical and troubleshooting skills, with the ability to perform root cause analysis under pressure.
- Hands-on experience with incident response and threat containment techniques.
- Ability to develop automation workflows and optimize security operations.
It is a strong plus if you have: (optional)
- Certifications such as CISSP, CISA, CEH, or AWS Security Specialty.
- Previous experience working in international, hybrid security environments.
Language Required for the role:
- Fluent in English, with excellent written and verbal communication skills.
Eligibility to work in this role:
- Only candidates with an existing legal right to work in the European Union will be considered for this role. We accept candidates from across Europe.
#MAKEYourCareerBETTER
Interested? Apply now and include your CV (preferably in English) along with a statement confirming your consent to the processing and storage of your personal data.
Internal number #10116
Benefits
ITDS Clubs
Access to medical insurance
Access to Multisport
Access to Pluralsight
Integrational Events
Ambassador Program
Your criteria