Senior SOC Analyst
Role details
Job location
Tech stack
Job description
As part of our growing team, we're seeking a Senior SOC Analyst. Based in Barcelona, this role will put you at the core of a top-tier Incident Response team, defending the digital assets of a company that connects hundreds of millions of people every month. Your Role
You are a hands-on defender and investigator. A Senior Analyst focused on threat hunting, detection engineering, and incident response. Working across the SOC's advanced security stack (SIEM, EDR, DLP, and NIDS) you'll build, tune, and operate detection mechanisms that stop threats before they escalates. Your Responsibilities
-
Responsible for advanced incident investigations, threat hunts, and forensic analysis.
-
Develop and refine custom detection rules, correlation logic, and alert tuning.
-
Integrate and enhance data sources to improve signal fidelity.
-
Design and maintain automated playbooks using SOAR capabilities.
-
Collaborate with the Technical Lead on continuous detection improvement.
-
Mentor L1/L2 analysts, sharing advanced investigative techniques., BTL2, GIAC GCIA / GCIH, CrowdStrike Certified Falcon Administrator, Elastic Security Analyst Why Join Squad?
-
Personalized Growth: We help you build a training and certification plan aligned with your professional goals through our SquadeXpérience.
-
Expertise Development: Participate in internal events like our MixYourTalent webinars and monthly CTF sessions.
-
Visibility: Attend major industry conferences and contribute to our #TheExpert technical blog.
-
Culture: Enjoy a dynamic and close-knit environment with after-work events and team gatherings that foster great camaraderie.
Requirements
- 5-7 years of experience in SOC operations, detection engineering, or incident response.
- Strong technical knowledge of SIEM, EDR, and SOAR platforms (Elastic, CrowdStrike preferred).
- Scripting or automation experience (Python, PowerShell) for enrichment or response tasks.
- Understanding of MITRE ATT&CK, threat intelligence, and adversary emulation.