The English-language job board for Spain

Security Operations Analyst (SIEM Operations & Threat Detection)

Hybrid in València·Full-time·Added 5 days ago

Expleo Group

85 open roles

Overview

Job details

  • Full-time hours

    Per the ad.

  • Hybrid

    Office and home days — the ad has the split.

Requirements

  • Have the right to work in Spain

    No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.

  • Work in English

    English is required, per the ad.

  • Be near València for hybrid days

    No relocation package mentioned.

  • Have 5+ years of experience

    Mid-level role.

This job was automatically translated to English.

Pay & benefits

What you'll get

🌍 Hybrid work. 📚 Versatile Growth: Learn new languages and technical certifications with our Expleo Academy. 🌴 Time for You: Enjoy 24 days of vacation per year, plus December 24th and 31st. 🤝 Unbeatable Environment: A place where peer support is the norm and competitiveness has no place. 🏃‍♂️ Connection and Well-being: At Expleo, laughter is never lacking, and fun is guaranteed. Participate in our padel and running clubs, summer events, Halloween… and much more! 💳 Flexible Benefits: Medical insurance, restaurant vouchers, and childcare… you choose how to use them!

Requirements

What we're looking for

  • More than 5 years of experience in Cybersecurity or Security Operations.
  • Solid experience working with SIEM platforms such as Microsoft Sentinel or Splunk.
  • Practical knowledge of security monitoring, threat detection, and incident investigation.
  • Extensive experience with Microsoft security solutions.
  • Experience in cloud environments such as Azure, AWS, or GCP.
  • Knowledge and experience with EDR technologies.
  • Solid understanding of networks, perimeter security, and incident response.
  • High level of English, both written and spoken.

Nice to have

  • Experience in the architecture, implementation, or evolution of SIEM platforms.
  • Knowledge of ingestion pipeline design and log monitoring.
  • Experience with scripting using PowerShell, Python, or Bash.
  • Specific experience in security monitoring in AWS.
  • Certifications such as SC-200, CEH, GCIH, GIAC, or equivalents.

The role

You will be part of a global Cyber Security Operations team, contributing to the improvement and evolution of monitoring, detection, and threat response capabilities in complex enterprise environments. You will work closely with Threat Intelligence, Incident Response, and Security Operations teams to strengthen the security posture and increase visibility against advanced threats.

What you'll do

  • Design, develop, and optimize use cases for threat detection.
  • Manage and evolve the lifecycle of security monitoring rules and content.
  • Participate in the administration, optimization, and continuous improvement of SIEM platforms.
  • Integrate new data sources and telemetry to expand detection capabilities.
  • Collaborate with Threat Intelligence and Incident Response teams to reinforce cybersecurity services.
  • Analyze the effectiveness of detection mechanisms and identify opportunities for improvement.
  • Prepare metrics, reports, and dashboards related to security operations.
  • Keep technical documentation, operating procedures, and knowledge bases up to date.
  • Participate in architecture reviews and security monitoring strategies.

About Expleo Group

Website
expleo.com

In their own words

Additional information

We are an equal opportunity employer and accept applications from all qualified persons regardless of race, gender, disability, religion/belief, sexual orientation, or age. 

All open roles at Expleo Group
WhatsApp