Security Analyst - Tier 2.

Nagra Kudelski Group
Madrid, Spain
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
4 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Microsoft Windows Artificial Intelligence Amazon Web Services Microsoft Azure Bash Shell Cloud Computing Security Cyber Security Linux Intrusion Detection Systems Python (Programming Language) Network Security Windows PowerShell
+12 more
Service Design Security Information and Event Management Scripting Google Cloud QRadar Firewalls (Computer Science) Containerization Cybercrime Microsoft Sentinel Splunk SentinelOne Expertise Vulnerability Analysis

Job description

Experteer Overview As a Tier 2 SOC Analyst, you will act as a subject matter expert in our security stack, refining detection workflows and mentoring junior analysts.You’ll investigate escalated incidents, determine attack vectors, and shape remediation strategies in a multi-client SOC environment.You will drive continuous improvement through AI-assisted analysis, tools, and playbooks, while ensuring service quality and customer satisfaction.Compensaciones / Beneficios - Escalate and manage cases from Tier 1 analysts to resolution - Optimize SIEM rules and detection logic to reduce false positives - Respond to tickets within SLA and document actions for internal and client communication - Mentor Security Engineers and Analysts to improve investigation techniques - Support rules factory program and rollout of new rule sets for clients - Qualify data source requests and support product teams in service design - Perform threat hunting and advanced threat investigations using SIEM/EDR/ETD data - Provide 24/7 on-call support for critical incidents - Use AI tools to summarize incident timelines and accelerate investigations - Contribute to incident templates and automation to improve operation efficiency - Ensure adherence to policies, procedures, and security best practices - Maintain smooth client transitions via Go-to-Prod gates and Go-to-Active reviewsResponsabilidades - 4+ years of hands-on cybersecurity operations, incident response, or threat analysis - Proven SOC experience in international/global environments - Advanced proficiency with SIEM platforms (Splunk, QRadar, Microsoft Sentinel, etc.) - Extensive experience with EDR/XDR solutions (CrowdStrike, SentinelOne, Microsoft Defender, etc.) - Strong understanding of network security, firewalls, IDS/IPS, and monitoring - Solid Windows and Linux/Unix knowledge, plus forensics basics - Cloud security experience (AWS, Azure, GCP) and containerization - Scripting skills (Python, PowerShell, Bash) for automation - Familiarity with threat intelligence and MITRE ATTu**CK - Fluent in English and strong communication skillsRequisitos principales - Competitive compensation with a benefits package - Tuition reimbursement - Generous paid time off - Career growth opportunities - Global team collaboration - Security-focused culture

Requirements

Maintain smooth client transitions via Go-to-Prod gates and Go-to-Active reviewsResponsabilidades - 4+ years of hands-on cybersecurity operations, incident response, or threat analysis - Proven SOC experience in international/global environments - Advanced proficiency with SIEM platforms (Splunk, QRadar, Microsoft Sentinel, etc.) - Extensive experience with EDR/XDR solutions (CrowdStrike, SentinelOne, Microsoft Defender, etc.) - Strong understanding of network security, firewalls, IDS/IPS, and monitoring - Solid Windows and Linux/Unix knowledge, plus forensics basics - Cloud security experience (AWS, Azure, GCP) and containerization - Scripting skills (Python, PowerShell, Bash) for automation - Familiarity with threat intelligence and MITRE ATTu**CK - Fluent in English and strong communication skillsRequisitos principales - Competitive compensation with a benefits package - Tuition reimbursement - Generous paid time off - Career growth opportunities - Global team collaboration - Security-focused culture

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

Videos

See all

Related articles

See all