Cybersecurity Analyst - SOC

EY·Madrid, Spain

What they ask for

  • Have the right to work in Spain

    EY doesn't mention sponsorship in the ad.

  • Work on-site in Madrid

    No relocation package mentioned.

Pulled from the advert automatically — the full ad is what counts.

Added 5 days ago
Read the full advert

About the role

At EY, we shape the future with confidence.


Here you will find more than a job: an opportunity to grow, learn, and make an impact.

Join our 7,000 professionals in Spain and 15 offices and a global network of 400,000 people who work every day to transform businesses and societies.

#ShapeTheFutureWithConfidence | #EYCareers | #BuildingABetterWorkingWorld

What you'll do

  • Analyze alerts escalated by Level 1, validate false positives, identify attack patterns, and determine severity, scope, and potential impact.
  • Conduct advanced investigation in SIEM, EDR/XDR, network logs, identity, endpoint, cloud, email, firewall, proxy, IDS/IPS, and other telemetry sources.
  • Operate and leverage Splunk SIEM for searches, correlation, event analysis, rule review, dashboards, evidence, and investigation traceability.
  • Participate in Splunk SOAR operations, executing playbooks, reviewing automations, and proposing improvements to response workflows.
  • Analyze events in OT/ICS environments, considering the particularities of industrial networks, critical assets, industrial protocols, segmentation, and operational constraints.
  • Prepare incident reports, timelines, evidence, attack hypotheses, and recommendations for containment, eradication, and recovery.
  • Coordinate escalations with response, infrastructure, OT, networking, endpoint, identity, cloud teams, and business stakeholders.
  • Contribute to the continuous improvement of use cases, correlation rules, playbooks, runbooks, and analysis procedures.
  • Participate in hunting, threat review, analysis of indicators of compromise, and contextualization with threat intelligence.

What you'll get

  • Wellbeing HUB: includes policies and actions for physical (Wellhub) and mental health.
  • Life and Accident Insurance.
  • Bankinter office with special conditions.
  • EY Flex Compensation Plan (transport, training, restaurant card, daycare...).

The opportunity

At EY, we are a leading global firm in audit, consulting, strategy and transactions, and legal and tax services.
We are looking for professionals with experience in a Security Operations Center (SOC).

Requirements

  • University degree in computer science, telecommunications, or similar IT-related fields.
  • Security certifications such as CISM, CISSP, OSCP, CEH, GPEN, among others.
  • English: B1/B2
  • At least 3 years of experience performing the described duties in international projects and environments.
  • Analytical.
  • Proactive.
  • Results-oriented.
  • Willing to work or accustomed to working in high-performance teams.
  • Willingness to learn and ability to take responsibility for continuous training.

Flexibility and work-life balance

  • Hybrid work and flexibility according to the project.

Professional development

  • Continuous training through EY University, with an individualized training itinerary.
  • Career plan to boost annual growth within the firm.
  • Personalized support: you will have the support of a Buddy and a Counselor throughout your career.

Culture and work environment

  • Work in a dynamic and collaborative environment.
  • Opportunity to collaborate with global and multidisciplinary teams.
  • Expand your professional network in a diverse and enriching context.

Social commitment

  • Social impact actions from the EY Foundation.

You'll most likely need Spanish to apply.This job was automatically translated to English, .

About the company

EY

EY

Consulting

View company profile
International company
395000 employees