Soc Analyst

SIX Group
Madrid, Spain
15 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Agile Methodology Microsoft Azure Cloud Computing Cyber Security Continuous Integration Intrusion Detection and Prevention Python (Programming Language) Security Information and Event Management EndPointSecurity Scripting Gitlab
+3 more
Cybercrime Cortex XSOAR Platform Security Orchestration, Automation & Response

Job description

Experteer Overview In this role you will be a hands-on security professional driving threat detection, analysis, and response within SIX’s SOC.You will develop and tune detections across endpoint, network, cloud, and identity environments, investigate complex incidents, and advance automation and playbooks.You’ll lead threat hunting using MITRE ATTu**amp;CK and mentor junior analysts, contributing to a stronger security posture.This opportunity combines operational excellence with proactive security work in a dynamic financial markets setting.Compensaciones / Beneficios * Develop, tune, and maintain threat detections and SIEM use cases across multiple environments * Investigate complex security incidents and coordinate containment and remediation * Design and improve detection content, SOC automation, SOAR workflows, and incident response playbooks * Conduct proactive threat hunting using threat intelligence and MITRE ATTuCK * Identify detection gaps and enhance SOC capabilities and security posture * Mentor junior analysts and contribute to SOC process improvements and knowledge sharing Responsabilidades * 4+ years of experience in SOC operations, detection engineering, threat hunting, and incident response * Hands-on experience with SIEM, EDR, and SOAR platforms (Sentinel, Elastic, Defender for Endpoint, Cortex XSOAR) * Strong background in detection rule development, security investigations, and threat hunting across telemetry sources * Experience with scripting, automation, APIs, and tools such as Python, GitLab, Azure DevOps, and CI/CD practices * Knowledge of security frameworks, including MITRE ATTu**CK * Strong analytical, communication, collaboration, and mentoring skills Requisitos principales * Flexible work models * Personal development and learning opportunities * Agile working methods

Requirements

Compensaciones / Beneficios * Develop, tune, and maintain threat detections and SIEM use cases across multiple environments * Investigate complex security incidents and coordinate containment and remediation * Design and improve detection content, SOC automation, SOAR workflows, and incident response playbooks * Conduct proactive threat hunting using threat intelligence and MITRE ATTu**CK * Identify detection gaps and enhance SOC capabilities and security posture * Mentor junior analysts and contribute to SOC process improvements and knowledge sharing Responsabilidades * 4+ years of experience in SOC operations, detection engineering, threat hunting, and incident response * Hands-on experience with SIEM, EDR, and SOAR platforms (Sentinel, Elastic, Defender for Endpoint, Cortex XSOAR) * Strong background in detection rule development, security investigations, and threat hunting across telemetry sources * Experience with scripting, automation, APIs, and tools such as Python, GitLab, Azure DevOps, and CI/CD practices * Knowledge of security frameworks, including MITRE ATTu**CK * Strong analytical, communication, collaboration, and mentoring skills Requisitos principales * Flexible work models * Personal development and learning opportunities * Agile working methods

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

4:54 min

Implementing geographic salary tiers for compensation equity and fairness

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

Videos

See all

Related articles

See all