L2 Security Analyst

hace 3 semanas


Madrid, España Devoteam A tiempo completo

Job Description Imagine being part of one of the most successful IT companies in Europe. Turn imagination into reality and apply for this exciting career opportunity in Devoteam. L2 SECURITY ANALYST We are seeking a Level 2 (L2) Security Analyst for our Security Operations Center (SOC), with solid experience in SIEM/SOAR solutions, especially Google SecOps, CrowdStrike NG-SIEM and Microsoft/AWS/GCP ecosystems. The ideal candidate will have extensive experience in creating threat detection use cases, and deep knowledge of EDR/XDR technologies and networks/communications. Main Responsibilities Detection and Response: Analyze and investigate medium to high-complexity security alerts, with a goal of resolving 80% without escalation to L3 Perform root cause analysis on complex incidents, documenting findings and recommendations Coordinate incident responses involving multiple systems and cloud platformsDetection Engineering: Design, implement, and optimize detection use cases based on MITRE ATT&CK Tune correlation rules in SIEM and detection policies in EDR/XDR to reduce false positives Validate and test new detections before production implementationPlatforms and Tools: Operate and manage Google Chronicle SecOps, CrowdStrike Falcon Next-Gen SIEM and PaloAlto XSIAM as primary platforms Manage detections in Microsoft 365 Defender, Azure Sentinel, and AWS Security Hub Utilize PaloAlto Cortex XSIAM for threat analysis and investigationsContinuous Improvement: Develop automation scripts (Python/PowerShell) for repetitive tasks and alert enrichment Mentor and provide technical support to L1 analysts Contribute to technical documentation, playbooks, and operational procedures Participate in proactive threat hunting exercisesTechnical Requirements Essential: Fluent English (C1/C2 level) - both written and verbal communication 2-4 years of experience in SOC operations, with at least 1 year in an L2 role Hands-on experience with at least two of these SIEM/SOAR platforms "Google Chronicle SecOps","Palo Alto XSIAM","CrowdStrike Falcon Next-Gen SIEM", "Microsoft Sentinel" Demonstrable experience with EDR/XDR solutions (CrowdStrike Falcon, Microsoft Defender for Endpoint, SentinelOne, Cortex XDR or Sophos) Proficiency in query languages: KQL (Kusto), SPL (Splunk), or SQL Strong knowledge of networks and protocols: TCP/IP, DNS,network traffic analysis Experience in Microsoft 365 environments (Exchange Online, Azure AD, Defender)Highly Valued: Hands-on experience with PaloAlto Cortex XSIAM, Google Secops, CrowdStrike NG-SIEM Scripting/automation skills: Python, PowerShell, or Bash Experience developing detection use cases based on frameworks (MITRE ATT&CK) Familiarity with threat intelligence platforms (SOCRadar, Google GTI, MISP)Certifications (Optional but Valued): Platform-specific certifications: Microsoft Security Operations Analyst (SC-200), CrowdStrike Certified Falcon Administrator, or Google Chronicle Security Operations GIAC: GCIA, GCIH, or GCFA CompTIA Security+ or CySA+ Certified SOC Analyst (CSA) from EC-CouncilProfessional Competencies Analytical capacity and critical thinking for complex investigations Excellent written communication for clear technical documentation Verbal communication skills to explain technical incidents to non-technical audiences Service orientation and ability to interact professionally with internal clients Effective time management and prioritization under pressure Proactive mindset and oriented towards continuous improvement Collaborative work and willingness to share knowledgeEmployment Conditions Contract Type: Permanent full-time position Work Model: Hybrid (Barcelona) On-Call rotationsWHAT YOU CAN LOOK FORWARD: A challenging and exciting career with an international perspective and opportunities High level of trust and competency to make your own decisions A warm and talented culture with a focus on business, but knowing that family always comes first Access to international network of specialists within the organization to build your rep and skillsAt Devoteam we have created a culture of honesty and transparency, inclusion, and cooperation which we value a lot. We are looking for colleagues, who are highly motivated and proactive, not afraid of challenges. We are highly invested in the career path development of our employees, and we offer and support possibilities for further training, certification, and specialization.


  • L2 Security Analyst

    hace 7 días


    Madrid, España Devoteam A tiempo completo

    Job Description Imagine being part of one of the most successful IT companies in Europe. Turn imagination into reality and apply for this exciting career opportunity in Devoteam. L2 SECURITY ANALYST We are seeking a Level 2 (L2) Security Analyst for our Security Operations Center (SOC), with solid experience in SIEM / SOAR solutions, especially Google...

  • Security Analyst

    hace 1 semana


    Madrid, España Kudelski Security A tiempo completo

    A cybersecurity firm in Madrid seeks a Security Analyst to join their 24/7 global operation. In this role, you will monitor security alerts, investigate incidents, and provide client support during incidents. The ideal candidate is fluent in both English and Spanish, possesses at least a year of triage experience, and has a proactive attitude towards...

  • Security Analyst

    hace 2 semanas


    Madrid, España Kudelski Security A tiempo completo

    PLEASE SUBMIT YOUR CV IN ENGLISH. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding their...

  • Security Analyst

    hace 2 días


    Madrid, España Kudelski Security A tiempo completo

    Stimulating. Motivating. Challenging. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around the world, safeguarding their...


  • Madrid, España Devoteam A tiempo completo

    Job DescriptionImagine being part of one of the most successful IT companies in Europe. Turn imagination into reality and apply for this exciting career opportunity in Devoteam. L2 SECURITY ANALYST We are seeking a Level 2 (L2) Security Analyst for our Security Operations Center (SOC), with solid experience in SIEM/SOAR solutions, especially Google SecOps,...

  • L2 SOC Analyst

    hace 1 semana


    Madrid, España CyberProof A tiempo completo

    CyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter - and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively. CyberProof is part of the UST Global family. Some...

  • Security Analyst Tier 1

    hace 2 semanas


    Madrid, España Kudelski Security A tiempo completo

    PLEASE SUBMIT YOUR CV IN ENGLISH.Stimulating. Motivating. Challenging.Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around...


  • Madrid, España Kudelski Security A tiempo completo

    PLEASE SUBMIT YOUR CV IN ENGLISH.Stimulating. Motivating. Challenging.Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around...

  • Security Analyst Tier 1

    hace 2 semanas


    Madrid, España Kudelski Security A tiempo completo

    PLEASE SUBMIT YOUR CV IN ENGLISH.Stimulating. Motivating. Challenging.Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations around...

  • Security Analyst Tier 1

    hace 2 semanas


    Madrid, España Kudelski Security A tiempo completo

    PLEASE SUBMIT YOUR CV IN ENGLISH. Stimulating. Motivating. Challenging. Leveraging its long-standing expertise in securing digital content as well as fighting piracy, Kudelski Security, a division of the Kudelski Group, is a provider of cybersecurity solutions and services focused on protecting data, processes and systems for companies and organizations...