01 ago
|
Empresa reconocida
|
Madrid
01 ago
Empresa reconocida
Madrid
Ensure the setup, delivery, and continuous improvement of managed security services across multiple countries, including Endpoint Security (EDR/XDR), MDM, Incident Response, MDR, and SSE. Deploy, configure, and maintain security platforms and tools such as SIEM, SOAR, DLP, NG Firewalls, IPS, WAF, and EDR/XDR, ensuring alignment with operational and threat landscape requirements. Define and evolve cybersecurity processes, ensuring their effectiveness and implementing improvements in a timely and measurable manner. Develop and maintain threat detection and response capabilities, using open-source and vendor-based tools, threat intelligence platforms, and malware sandboxes. Provide technical enablement to L1/L2 SOC teams, sharing methodologies, tools, and best practices for threat hunting, detection, and incident response Proficient in SIEM (QRadar, Splunk, Sentinel, Chronicle, McAfee, CryptoSIM, Logsign) and SOAR products. Experience with threat modeling (STRIDE, PASTA, FAIR, Security Cards), operational threat intelligence, and attack frameworks (MITRE ATT&CK;, Cyber Kill Chain). Proficient in scripting/programming languages (Java, Bash, Python, PowerShell). Experience with security technologies like Firewalls, IDS, IPS, and VPC.
📌 Security Services Operations Expert (Madrid)
🏢 Empresa reconocida
📍 Madrid