€45k
🇬🇧The English-language job board for Spain
Security Operations Analyst (SIEM Operations & Threat Detection)
Hybrid in València·Full-time·Added 5 days ago
85 open roles
Overview
Job details
Full-time hours
Per the ad.
Hybrid
Office and home days — the ad has the split.
Requirements
Have the right to work in Spain
No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.
Work in English
English is required, per the ad.
Be near València for hybrid days
No relocation package mentioned.
Have 5+ years of experience
Mid-level role.
This job was automatically translated to English.
Pay & benefits
What you'll get
🌍 Hybrid work. 📚 Versatile Growth: Learn new languages and technical certifications with our Expleo Academy. 🌴 Time for You: Enjoy 24 days of vacation per year, plus December 24th and 31st. 🤝 Unbeatable Environment: A place where peer support is the norm and competitiveness has no place. 🏃♂️ Connection and Well-being: At Expleo, laughter is never lacking, and fun is guaranteed. Participate in our padel and running clubs, summer events, Halloween… and much more! 💳 Flexible Benefits: Medical insurance, restaurant vouchers, and childcare… you choose how to use them!
Requirements
What we're looking for
- More than 5 years of experience in Cybersecurity or Security Operations.
- Solid experience working with SIEM platforms such as Microsoft Sentinel or Splunk.
- Practical knowledge of security monitoring, threat detection, and incident investigation.
- Extensive experience with Microsoft security solutions.
- Experience in cloud environments such as Azure, AWS, or GCP.
- Knowledge and experience with EDR technologies.
- Solid understanding of networks, perimeter security, and incident response.
- High level of English, both written and spoken.
Nice to have
- Experience in the architecture, implementation, or evolution of SIEM platforms.
- Knowledge of ingestion pipeline design and log monitoring.
- Experience with scripting using PowerShell, Python, or Bash.
- Specific experience in security monitoring in AWS.
- Certifications such as SC-200, CEH, GCIH, GIAC, or equivalents.
The role
You will be part of a global Cyber Security Operations team, contributing to the improvement and evolution of monitoring, detection, and threat response capabilities in complex enterprise environments. You will work closely with Threat Intelligence, Incident Response, and Security Operations teams to strengthen the security posture and increase visibility against advanced threats.
What you'll do
- Design, develop, and optimize use cases for threat detection.
- Manage and evolve the lifecycle of security monitoring rules and content.
- Participate in the administration, optimization, and continuous improvement of SIEM platforms.
- Integrate new data sources and telemetry to expand detection capabilities.
- Collaborate with Threat Intelligence and Incident Response teams to reinforce cybersecurity services.
- Analyze the effectiveness of detection mechanisms and identify opportunities for improvement.
- Prepare metrics, reports, and dashboards related to security operations.
- Keep technical documentation, operating procedures, and knowledge bases up to date.
- Participate in architecture reviews and security monitoring strategies.
About Expleo Group
- Website
- expleo.com
In their own words
Additional information
We are an equal opportunity employer and accept applications from all qualified persons regardless of race, gender, disability, religion/belief, sexual orientation, or age.
More jobs like this
or browse Valencia·Security·Security·Mid-level·Hybrid·Cybersecurity·Valencian Community





