Cyber Soc L2 - Senior - Ey Gds Spain - Hybrid

Ey (Ernst U0026 Young)
Málaga, Spain
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
3 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Cyber Security Perl (Programming Language) Regular Expressions Standard Sql Security Information and Event Management Splunk

Job description

Experteer Overview Todas las habilidades, cualificaciones y experiencia relevantes que necesitará un candidato seleccionado se enumeran en la siguiente descripción.In this role, you help detect and respond to security incidents for EY clients using SIEM, EDR and NSM tools.You work within the EY cyber security team to validate incidents, coordinate containment and recovery, and provide guidance on best practices.You will engage with clients to ensure effective communication and near real-time analysis across multiple customers.This is a hands-on, cross-functional role with opportunities to shape security monitoring and incident response capabilities.Compensaciones / Beneficios* Operate and troubleshoot SIEM/EDR/NSM solutions for multiple customers (e.g., Splunk, Sentinel, CrowdStrike Falcon LogScale; Fidelis, ExtraHop)* Perform second-level incident validation and in-depth investigations* Coordinate and communicate with clients to ensure containment, eradication and recovery* Produce adhoc reports and support SIEM-related troubleshooting* Advise customers on how to maximize solution use and achieve end-state requirements* Deliver near real-time analysis, investigation, remediation, and tracking of security activities for clientsResponsabilidades* Minimum 3 years hands-on experience in SIEM/EDR/NSM* B. Tech.xqbhyrx / B.E. with technical skills* Ability to work 24x7 shifts* Strong English (verbal and written)* Technical acumen and critical thinking abilities* Strong interpersonal and presentation skills* RegEx, Perl scripting and SQL knowledge* Certifications in SIEM platforms and additional security certs (CSA, CEH, CISSP, GCIH, GIAC)Requisitos principales* Support, coaching and feedback from colleagues* Opportunities to develop new skills and progress your career* Freedom and flexibility to handle your role* Interdisciplinary environment with knowledge exchangeHay opciones de teletrabajo/trabajo desde casa disponibles para este puesto.

Requirements

You will engage with clients to ensure effective communication and near real-time analysis across multiple customers. This is a hands-on, cross-functional role with opportunities to shape security monitoring and incident response capabilities.Compensaciones / Beneficios* Operate and troubleshoot SIEM/EDR/NSM solutions for multiple customers (e.g., Splunk, Sentinel, CrowdStrike Falcon LogScale; Fidelis, ExtraHop)* Perform second-level incident validation and in-depth investigations* Coordinate and communicate with clients to ensure containment, eradication and recovery* Produce adhoc reports and support SIEM-related troubleshooting* Advise customers on how to maximize solution use and achieve end-state requirements* Deliver near real-time analysis, investigation, remediation, and tracking of security activities for clientsResponsabilidades* Minimum 3 years hands-on experience in SIEM/EDR/NSM* B. Tech. xqbhyrx / B.E. with technical skills* Ability to work 24x7 shifts* Strong English (verbal and written)* Technical acumen and critical thinking abilities* Strong interpersonal and presentation skills* RegEx, Perl scripting and SQL knowledge* Certifications in SIEM platforms and additional security certs (CSA, CEH, CISSP, GCIH, GIAC)Requisitos principales* Support, coaching and feedback from colleagues* Opportunities to develop new skills and progress your career* Freedom and flexibility to handle your role* Interdisciplinary environment with knowledge exchangeHay opciones de teletrabajo/trabajo desde casa disponibles para este puesto.

About the company

In this role, you help detect and respond to security incidents for EY clients using SIEM, EDR and NSM tools. You work within the EY cyber security team to validate incidents, coordinate containment and recovery, and provide guidance on best practices.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:06 min

Using ClickHouse as a foundation for fast analytics

Hellmar Becker Hellmar Becker · World Congress 2026 Europe

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:56 min

Creating immutable blockchain tables using standard SQL syntax

Wei Hu Wei Hu · World Congress 2023

Videos

See all

Related articles

See all