Security Operations Analyst (SIEM & Threat Detection)
Core
Build, operate, and optimize SIEM platforms and threat detection capabilities for international organizations.
Role type
Senior Security Operations Analyst (SIEM & Detection Engineering)
Builds
Production security monitoring rules, detection use cases, and telemetry pipelines
Domain
Cybersecurity / SIEM / Cloud Security
Required skills
SIEM administration, detection engineering, data-source onboarding, use-case lifecycle management, security content development, threat intelligence integration, incident response collaboration, security metrics reporting, false positive reduction, SOC procedure maintenance
Preferred skills
SIEM architecture design, data-ingestion pipeline building, cloud security monitoring, scripting (Python/PowerShell/Bash/Ruby), security certifications
Technologies
Splunk, Microsoft Sentinel, QRadar, ArcSight, ELK, Microsoft Defender for Endpoint, CrowdStrike, Azure, AWS, GCP
Responsibilities
Develop and tune security monitoring and detection capabilities; Administer and optimize SIEM platforms across customer environments; Manage security detection rules and use cases; Onboard and validate new security data sources; Collaborate with Threat Intelligence and Incident Response teams; Build and maintain security metrics and dashboards; Prepare technical reports for stakeholders
Seniority
Senior, hands-on IC