Cyber Soc L2 - Senior - Ey Gds Spain - Hybrid
Role details
Job location
Tech stack
Job description
Experteer Overview Todas las habilidades, cualificaciones y experiencia relevantes que necesitará un candidato seleccionado se enumeran en la siguiente descripción.In this role, you help detect and respond to security incidents for EY clients using SIEM, EDR and NSM tools.You work within the EY cyber security team to validate incidents, coordinate containment and recovery, and provide guidance on best practices.You will engage with clients to ensure effective communication and near real-time analysis across multiple customers.This is a hands-on, cross-functional role with opportunities to shape security monitoring and incident response capabilities.Compensaciones / Beneficios* Operate and troubleshoot SIEM/EDR/NSM solutions for multiple customers (e.g., Splunk, Sentinel, CrowdStrike Falcon LogScale; Fidelis, ExtraHop)* Perform second-level incident validation and in-depth investigations* Coordinate and communicate with clients to ensure containment, eradication and recovery* Produce adhoc reports and support SIEM-related troubleshooting* Advise customers on how to maximize solution use and achieve end-state requirements* Deliver near real-time analysis, investigation, remediation, and tracking of security activities for clientsResponsabilidades* Minimum 3 years hands-on experience in SIEM/EDR/NSM* B. Tech.xqbhyrx / B.E. with technical skills* Ability to work 24x7 shifts* Strong English (verbal and written)* Technical acumen and critical thinking abilities* Strong interpersonal and presentation skills* RegEx, Perl scripting and SQL knowledge* Certifications in SIEM platforms and additional security certs (CSA, CEH, CISSP, GCIH, GIAC)Requisitos principales* Support, coaching and feedback from colleagues* Opportunities to develop new skills and progress your career* Freedom and flexibility to handle your role* Interdisciplinary environment with knowledge exchangeHay opciones de teletrabajo/trabajo desde casa disponibles para este puesto.
Requirements
You will engage with clients to ensure effective communication and near real-time analysis across multiple customers. This is a hands-on, cross-functional role with opportunities to shape security monitoring and incident response capabilities.Compensaciones / Beneficios* Operate and troubleshoot SIEM/EDR/NSM solutions for multiple customers (e.g., Splunk, Sentinel, CrowdStrike Falcon LogScale; Fidelis, ExtraHop)* Perform second-level incident validation and in-depth investigations* Coordinate and communicate with clients to ensure containment, eradication and recovery* Produce adhoc reports and support SIEM-related troubleshooting* Advise customers on how to maximize solution use and achieve end-state requirements* Deliver near real-time analysis, investigation, remediation, and tracking of security activities for clientsResponsabilidades* Minimum 3 years hands-on experience in SIEM/EDR/NSM* B. Tech. xqbhyrx / B.E. with technical skills* Ability to work 24x7 shifts* Strong English (verbal and written)* Technical acumen and critical thinking abilities* Strong interpersonal and presentation skills* RegEx, Perl scripting and SQL knowledge* Certifications in SIEM platforms and additional security certs (CSA, CEH, CISSP, GCIH, GIAC)Requisitos principales* Support, coaching and feedback from colleagues* Opportunities to develop new skills and progress your career* Freedom and flexibility to handle your role* Interdisciplinary environment with knowledge exchangeHay opciones de teletrabajo/trabajo desde casa disponibles para este puesto.