L2 Security Analyst
hace 2 semanas
Imagine being part of one of the most successful IT companies in Europe. Turn imagination into reality and apply for this exciting career opportunity in Devoteam.
L2 SECURITY ANALYST
We are seeking a Level 2 (L2) Security Analyst for our Security Operations Center (SOC), with solid experience in SIEM/SOAR solutions, especially Google SecOps, CrowdStrike NG-SIEM and Microsoft/AWS/GCP ecosystems. The ideal candidate will have extensive experience in creating threat detection use cases, and deep knowledge of EDR/XDR technologies and networks/communications.
MAIN RESPONSIBILITIES
Detection and Response:
- Analyze and investigate medium to high-complexity security alerts, with a goal of resolving 80% without escalation to L3
- Perform root cause analysis on complex incidents, documenting findings and recommendations
- Coordinate incident responses involving multiple systems and cloud platforms
Detection Engineering:
- Design, implement, and optimize detection use cases based on MITRE ATT&CK
- Tune correlation rules in SIEM and detection policies in EDR/XDR to reduce false positives
- Validate and test new detections before production implementation
Platforms and Tools:
- Operate and manage Google Chronicle SecOps, CrowdStrike Falcon Next-Gen SIEM and PaloAlto XSIAM as primary platforms
- Manage detections in Microsoft 365 Defender, Azure Sentinel, and AWS Security Hub
- Utilize PaloAlto Cortex XSIAM for threat analysis and investigations
Continuous Improvement:
- Develop automation scripts (Python/PowerShell) for repetitive tasks and alert enrichment
- Mentor and provide technical support to L1 analysts
- Contribute to technical documentation, playbooks, and operational procedures
- Participate in proactive threat hunting exercises
TECHNICAL REQUIREMENTS
Essential:
- Fluent English (C1/C2 level) - both written and verbal communication
- 2-4 years of experience in SOC operations, with at least 1 year in an L2 role
- Hands-on experience with at least two of these SIEM/SOAR platforms "Google Chronicle SecOps","Palo Alto XSIAM","CrowdStrike Falcon Next-Gen SIEM", "Microsoft Sentinel"
- Demonstrable experience with EDR/XDR solutions (CrowdStrike Falcon, Microsoft Defender for Endpoint, SentinelOne, Cortex XDR or Sophos)
- Proficiency in query languages: KQL (Kusto), SPL (Splunk), or SQL
- Strong knowledge of networks and protocols: TCP/IP, DNS, HTTP/S, network traffic analysis
- Experience in Microsoft 365 environments (Exchange Online, Azure AD, Defender)
Highly Valued:
- Hands-on experience with PaloAlto Cortex XSIAM, Google Secops, CrowdStrike NG-SIEM
- Scripting/automation skills: Python, PowerShell, or Bash
- Experience developing detection use cases based on frameworks (MITRE ATT&CK)
- Familiarity with threat intelligence platforms (SOCRadar, Google GTI, MISP)
Certifications (Optional but Valued):
- Platform-specific certifications: Microsoft Security Operations Analyst (SC-200), CrowdStrike Certified Falcon Administrator, or Google Chronicle Security Operations
- GIAC: GCIA, GCIH, or GCFA
- CompTIA Security+ or CySA+
- Certified SOC Analyst (CSA) from EC-Council
Professional Competencies
- Analytical capacity and critical thinking for complex investigations
- Excellent written communication for clear technical documentation
- Verbal communication skills to explain technical incidents to non-technical audiences
- Service orientation and ability to interact professionally with internal clients
- Effective time management and prioritization under pressure
- Proactive mindset and oriented towards continuous improvement
- Collaborative work and willingness to share knowledge
Employment Conditions
- Contract Type: Permanent full-time position
- Work Model: Hybrid (Barcelona)
- On-Call rotations
WHAT YOU CAN LOOK FORWARD:
- A challenging and exciting career with an international perspective and opportunities
- High level of trust and competency to make your own decisions
- A warm and talented culture with a focus on business, but knowing that family always comes first
- Access to international network of specialists within the organization to build your rep and skills
At Devoteam we have created a culture of honesty and transparency, inclusion, and cooperation which we value a lot. We are looking for colleagues, who are highly motivated and proactive, not afraid of challenges. We are highly invested in the career path development of our employees, and we offer and support possibilities for further training, certification, and specialization.
-
SOC Analyst L2
hace 6 días
Barcelona, Barcelona, España UST A tiempo completo1 OpeningBarcelonaRole descriptionWe are still looking for the very Top Talent…and we would be delighted if you were to join our teamMore in details, UST is a multinational company based in North America, certified as a Top Employer and Great Place to Work company with over employees all over the world and presence in more than 35 countries. We are leaders...
-
Offensive Security Analyst
hace 1 semana
Barcelona, Barcelona, España Wise Security Global A tiempo completoNos encontramos en la búsqueda de un/aOffensive Security Analystpara que se sume a nuestro equipo deEthical Hacking. Cual será tu misión?Serás responsable de identificar y explotar vulnerabilidades en sistemas, aplicaciones (especialmente móviles) e infraestructuras, con el objetivo de reforzar la postura de seguridad de la organización. Contribuirás...
-
L2 SOC Analyst
hace 6 días
Barcelona, Barcelona, España UST A tiempo completoUST is looking for the very Top Talent…and we would be delighted if you were to join our familyMore in detail, UST is a multinational company based in North America, certified as a Top Employer and Great Place to Work company with over employees all over the world and a presence in more than 35 countries. We are leaders on digital technology services, and...
-
Cyber Security Analyst
hace 1 día
Barcelona, Barcelona, España Amaris Consulting A tiempo completoTake your career to the next level with Amaris Consulting as aCybersecurity Analyst (Cloud Security Specialist). Become part of an international team, thrive in a global group with €800M turnover and 1,000+ clients worldwide, and an agile environment by planning the kickoff and follow up on projects. Join Amaris Consulting, where you can develop your...
-
Senior SOC Analyst
hace 6 días
Barcelona, Barcelona, España SQUAD - Cabinet de conseils et d'expertises A tiempo completoSenior SOC Analyst - BarcelonaSince 2011, SQUAD Group has been a key player in the cybersecurity landscape. We partner with leading organizations to protect their information systems through a comprehensive 360° offering of consulting, integration, expertise, and managed services.Our mission:Securing TogetherWe believe in a collaborative approach to...
-
Cybersecurity Analyst
hace 6 días
Barcelona, Barcelona, España Devoteam A tiempo completoCompany Description Devoteam es una consultora europea líder enfocada en estrategia digital, plataformas tecnológicas, ciberseguridad y transformación empresarial a través de la tecnología.La Tecnología está en nuestro ADN y creemos en ella como una palanca capaz de impulsar el cambio para mejorar, manteniendo un equilibrio que nos permite ofrecer a...
-
Cyber Security Cloud Analyst
hace 1 semana
Barcelona, Barcelona, España Omega CRM, A Merkle Company A tiempo completoOmega CRM Consulting is looking for a Cyber Security Cloud Analyst that would like to collaborate with one of the top global pharmaceutical companies.As member of Cyber Intelligence & Security Operations Center (CISOC) team, he/she will be focus on cloud security. The ideal candidate will have hands-on experience securing applications deployed across AWS,...
-
Level 3 SOC Analyst
hace 3 días
Barcelona, Barcelona, España UST A tiempo completoRole DescriptionWe are still looking for the very Top Talent…and we would be delighted if you were to join our teamMore in details, UST is a multinational company based in North America, certified as a Top Employer company with over employees all over the world and presence in more than 35 countries. We are leaders on digital technology services, and we...
-
Level 3 SOC Analyst
hace 2 semanas
Barcelona, Barcelona, España UST España & Latam A tiempo completoWe are looking for the very Top Talent…and we would be delighted if you were to join our teamMore in details, UST is a multinational company based in North America, certified as a Top Employer company with over employees all over the world and presence in more than 30 countries. We are leaders on digital technology services, and we provide large-scale...
-
Offensive Security Analyst
hace 1 semana
Barcelona, Barcelona, España Var Group Iberia A tiempo completoNos encontramos en la búsqueda de un/a Offensive Security Analyst para que se sume a nuestro equipo de Ethical Hacking. Cual será tu misión?Serás responsable de identificar y explotar vulnerabilidades en sistemas, aplicaciones (especialmente móviles) e infraestructuras, con el objetivo de reforzar la postura de seguridad de la organización....