Senior Security Engineer (Siem/Xdr) | Pharma (Hybrid)

Tamarind Intelligence
Madrid, Spain
5 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Shift work
Languages
English

Tech stack

Bash Shell Cyber Security Monitoring of Systems Intrusion Detection and Prevention Python (Programming Language) Windows PowerShell Security Information and Event Management Systems Integration Scripting Cyber Threat Analysis Microsoft Sentinel Api Management
+2 more
Security Orchestration, Automation & Response Servicenow

Job description

We are looking for a Senior Security Engineer to join a global Cyber Intelligence & Security Operations Center (CISOC) team, focusing on security monitoring, detection engineering, and the continuous improvement of SIEM/XDR capabilities.In this role, you will design and optimize security use cases, develop automation and integrations, and collaborate with Security Detection and Incident Response teams to improve threat detection and remediation.You will also contribute to security reporting, dashboards, documentation, and the evolution of monitoring technologies.TASKS & RESPONSIBILITIES:Develop and implement security use cases for SIEM/XDR platforms.Fine-tune existing use cases to improve detection quality and reduce false positives.Develop and maintain scripts and API integrations to automate and enrich security monitoring capabilities.Support the implementation of Breach & Attack Simulation (BAS) scenarios to test and improve detection use cases.Contribute to the evolution of security monitoring technologies according to the defined roadmap.Collaborate with Security Detection and Incident Response teams to strengthen detection capabilities.Prepare and manage security monitoring reports, dashboards, and status updates.Maintain accurate documentation in line with security processes, SOPs, and working instructions.Present monitoring insights and updates to technical stakeholders and management.SKILLS:Proven experience developing security use cases for SIEM/XDR technologies, such as Microsoft Sentinel or Microsoft Defender.Experience with scripting languages such as Python, PowerShell, or Bash.Experience with API integrations and security automation.Knowledge of security weaknesses, remediation, prioritization, change management, analysis, and triage.Experience with reporting or ticketing platforms such as ServiceNow.Strong analytical, problem-solving, communication, and teamwork skills.Experience working in international and multicultural environments.Excellent spoken and written English.NICE TO HAVE Service RequirementsExperience with Breach & Attack Simulation (BAS) and threat scenario creation.Security certifications such as Security , GCIH, ECIH, OSCP, or CEH.Experience in Security Operations, Detection Engineering, or Incident Response.SCHEDULE :08h-17h from Monday to Friday (flexible)4 days by remote, 1 day office work (every thursday)CONDITIONS :Salary package based on your profile.Ticket restaurant included in-office hours.Flexible compensation plan (free of income tax) where we provide you with medical insurance, public transport ticket and childcare check.Discounts in gym network.Training catalogue.Our goal is that you are well in every way!#J-*****-Ljbffr

Requirements

Proven experience developing security use cases for SIEM/XDR technologies, such as Microsoft Sentinel or Microsoft Defender. Experience with scripting languages such as Python, PowerShell, or Bash. Experience with API integrations and security automation. Knowledge of security weaknesses, remediation, prioritization, change management, analysis, and triage. Experience with reporting or ticketing platforms such as ServiceNow. Strong analytical, problem-solving, communication, and teamwork skills. Experience working in international and multicultural environments. Excellent spoken and written English. NICE TO HAVE Service Requirements Experience with Breach & Attack Simulation (BAS) and threat scenario creation. Security certifications such as Security , GCIH, ECIH, OSCP, or CEH. Experience in Security Operations, Detection Engineering, or Incident Response.

Benefits & conditions

08h-17h from Monday to Friday (flexible) 4 days by remote, 1 day office work (every thursday) CONDITIONS : Salary package based on your profile. Ticket restaurant included in-office hours. Flexible compensation plan (free of income tax) where we provide you with medical insurance, public transport ticket and childcare check. Discounts in gym network. Training catalogue. Our goal is that you are well in every way! #J-*****-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:12 min

Integrating tool definitions for local bash shell execution

Michał Michalczuk Michał Michalczuk · Europe 2026 Virtual

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · World Congress 2022

Videos

See all

Related articles

See all