The English-language job board for Spain

Security Operations Analyst (Cyber Defense Operations)

Hybrid in València·Full-time·Added 5 days ago

Expleo Group

85 open roles

Overview

Job details

  • Full-time hours

    Per the ad.

  • Hybrid

    Office and home days — the ad has the split.

Requirements

  • Have the right to work in Spain

    No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.

  • Work in English

    English is required, per the ad.

  • Be near València for hybrid days

    No relocation package mentioned.

  • Have 5+ years of experience

    Mid-level role.

This job was automatically translated to English.

Pay & benefits

What you'll get

🌍 Work hybrid (depending on client/project needs)📚 Versatile Growth: Learn new languages and technical certifications with our Expleo Academy.🌴 Time for You: Enjoy 24 vacation days per year, plus December 24th and 31st.🤝 Unbeatable Environment: A place where peer support is the norm and competitiveness has no place.🏃‍♂️ Connection and Well-being: At Expleo, laughter is never lacking, and fun is guaranteed. Participate in our padel and running clubs, summer events, Halloween… and much more!💳 Flexible Benefits: Medical insurance, restaurant vouchers, and childcare… you choose how to use them!  🤝 Commitment We are an equal opportunity employer and accept applications from all qualified individuals, regardless of race, gender, disability, religion/belief, sexual orientation, or age. 

Requirements

What we're looking for

  • More than 5 years of experience in Security Operations or Cybersecurity.
  • Previous experience working in a SOC environment.
  • Solid knowledge of SIEM and EDR tools.
  • Experience in the investigation and management of security alerts and incidents.
  • Knowledge of networks and TCP/IP protocols.
  • Experience analyzing Windows, Linux, application, and database system logs.
  • Deep knowledge of Microsoft security solutions.
  • Experience or knowledge in cloud security (Azure, AWS, or GCP).
  • Fluent level of English.

Nice to have

  • Experience in Tier 1 and/or Tier 2 Incident Response roles.
  • Experience in monitoring and security on AWS.
  • Scripting knowledge with Python, PowerShell, Bash, or Ruby.
  • Security certifications such as SC-200, CEH, GCIH, GCFA, GIAC, or equivalents.

The role

At Expleo, we are looking to hire a Security Operations Analyst (Cyber Defense Operations) to participate in an international project alongside UNICC (United Nations International Computing Centre) . You will join a global 24x7 Cyber Security Operations Center (SOC) , where you will collaborate with cybersecurity specialists from all over the world to monitor, investigate, and respond to security events in enterprise environments. You will play a key role in protecting critical systems through threat analysis activities, incident investigation, and the continuous improvement of defense capabilities. 📍 Hybrid work model , combining remote work and on-site attendance according to project needs.

What you'll do

  • Monitor and analyze security alerts from SIEM, EDR, and cloud security platforms and solutions.
  • Investigate security events and perform incident analysis and triage activities.
  • Analyze system logs and network communications to identify potential threats and incidents.
  • Participate in containment, remediation, and recovery actions following security incidents.
  • Escalate incidents according to established procedures.
  • Prepare technical reports and document investigation results.
  • Contribute to the continuous improvement of SOC operating procedures and documentation.
  • Optimize monitoring rules and use cases to reduce false positives and improve detection capability.
  • Collaborate closely with the Security Operations and Incident Response teams.
WhatsApp