Junior Cybersecurity Operations Analyst

Vector Talent
Municipality of Salamanca, Spain
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate

Job location

Municipality of Salamanca, Spain

Tech stack

Bash
Computer Security
Databases
Data Cleansing
DNS
Hypertext Transfer Protocols (HTTP)
Intrusion Detection and Prevention
Python
Log Analysis
Simple Mail Transfer Protocols
Network Protocols
NoSQL
Powershell
Security Information and Event Management
Software Engineering
SQL Databases
TCP/IP
Software Vulnerability Management
Scripting (Bash/Python/Go/Ruby)
Sonatype
Mitre Att&ck
Cyber Threat Analysis
Sonatype Nexus
Information Technology
Cybercrime
Tenable Nessus
Splunk
Devsecops

Job description

The successful candidate will support the protection, monitoring, and defense of the organization's technology infrastructure and data assets.They will operate and optimize security tools such as Trellix EDR, Splunk SIEM, Sonatype Nexus, and Tenable Nessus to detect, analyse, and respond to cyber threats.Location: La Spezia, Italy.Security Clearance: NATO Secret.Reference No: VS/CMRE-39 / La Spezia.Deadline For Application: 25 May ****.Responsibilities Monitoring and analysing security events through Splunk SIEM, correlating data from endpoints, network, and vulnerability systems.Operating Trellix Endpoint Security and EDR to identify, contain, and remediate endpoint threats and suspicious activities.Supporting the vulnerability management process by running and reviewing Tenable Nessus scans and coordinating remediation with IT teams.Ensuring secure software management practices through Sonatype Nexus, identifying vulnerable dependencies, and supporting secure DevSecOps pipelines.Participating in incident response activities including detection, triage, containment, eradication, and recovery.Developing and maintaining Splunk detection rules, dashboards, and automated alerts aligned with the MITRE ATT&CK framework.Documenting security events, maintaining SOC playbooks, and supporting internal and external compliance audits (ISO *****, NIST CSF, GDPR).Providing situational awareness reports and communicating risk insights to management and stakeholders.Contributing to the continuous improvement of the Security Operations Center (SOC) by proposing new use cases and optimizing detection coverage.Required Skills & Qualifications Bachelor's degree in Computer Science, Information Security, Engineering, or a related field.Three years' experience in Cybersecurity Operations, SOC Analysis, or Incident Response roles.Demonstrated experience with: Trellix Endpoint Security / ePO.Splunk SIEM.Tenable Nessus.Sonatype Nexus.Strong understanding of threat detection, incident handling, and vulnerability management processes.Familiarity with network protocols (TCP/IP, DNS, HTTP/S, SMTP) and log analysis techniques.Knowledge of MITRE ATT&CK, NIST *, and ISO ***** security incident frameworks.Ability to manage multiple incidents or investigations in a fast?paced operational environment.Excellent analytical, troubleshooting, and reporting skills.Desirable Master's degree in Cybersecurity, Computer Science, or Information Technology.Professional certifications such as GCIA, GCIH, Splunk Certified Power User, Trellix Certified Specialist, or Tenable Certified Practitioner.Experience developing detection logic, correlation searches, or automation workflows in Splunk or SOAR platforms.Knowledge of scripting languages such as Python, PowerShell, or Bash for automation and data enrichment.Exposure to DevSecOps practices and secure software development lifecycle (SDLC) integration using tools like Sonatype Nexus.Familiarity with threat intelligence platforms (TIPs) and integration of IOCs into SIEM systems.Database knowledge (SQL / NoSQL) for data correlation or threat hunting.Strong written and verbal communication skills, capable of documenting incidents and presenting findings to technical and non?technical audiences.Ability to work effectively in a SOC team environment or independently during critical response operations.Commitment to continuous learning and staying current with emerging cyber threats, vulnerabilities, and technologies.#J--Ljbffr

Requirements

Required Skills & Qualifications Bachelor's degree in Computer Science, Information Security, Engineering, or a related field. Three years' experience in Cybersecurity Operations, SOC Analysis, or Incident Response roles. Demonstrated experience with: Trellix Endpoint Security / ePO. Splunk SIEM. Tenable Nessus. Sonatype Nexus. Strong understanding of threat detection, incident handling, and vulnerability management processes. Familiarity with network protocols (TCP/IP, DNS, HTTP/S, SMTP) and log analysis techniques. Knowledge of MITRE ATT&CK, NIST *, and ISO ***** security incident frameworks. Ability to manage multiple incidents or investigations in a fast?paced operational environment. Excellent analytical, troubleshooting, and reporting skills. Desirable Master's degree in Cybersecurity, Computer Science, or Information Technology. Professional certifications such as GCIA, GCIH, Splunk Certified Power User, Trellix Certified Specialist, or Tenable Certified Practitioner. Experience developing detection logic, correlation searches, or automation workflows in Splunk or SOAR platforms. Knowledge of scripting languages such as Python, PowerShell, or Bash for automation and data enrichment. Exposure to DevSecOps practices and secure software development lifecycle (SDLC) integration using tools like Sonatype Nexus. Familiarity with threat intelligence platforms (TIPs) and integration of IOCs into SIEM systems. Database knowledge (SQL / NoSQL) for data correlation or threat hunting. Strong written and verbal communication skills, capable of documenting incidents and presenting findings to technical and non?technical audiences. Ability to work effectively in a SOC team environment or independently during critical response operations. Commitment to continuous learning and staying current with emerging cyber threats, vulnerabilities, and technologies. #J--Ljbffr

Apply for this position