04 ago
|
BME | Bolsas y Mercados Españoles
|
Madrid
04 ago
BME | Bolsas y Mercados Españoles
Madrid
ppThe Security Operations Center (SOC) is a critical Line of Defense 1 function at SIX, responsible for detecting, investigating, and responding to cyber threats across endpoint, identity, network, cloud, and email environments. We are looking for a hands‑on security professional with experience in incident response, threat hunting, and security monitoring. In this role, you will investigate complex alerts, develop and tune detection use cases, support containment and remediation efforts, improve automation and playbooks, and proactively identify threats to strengthen SIX's overall security posture. /p h3What You Will Do /h3 ul liDevelop, tune, and maintain threat detections and SIEM use cases across endpoint, network, identity, cloud, mail, and M365 environments. /li liInvestigate complex security incidents, lead threat analysis, and coordinate containment and remediation activities. /li liDesign and improve detection content, SOC automation, SOAR workflows, and incident response playbooks. /li liConduct proactive threat hunting using threat intelligence and the MITRE ATTCK framework.
/li liIdentify detection gaps and continuously enhance SOC capabilities and security posture. /li liMentor junior analysts and contribute to SOC process improvements and knowledge sharing. /li /ul h3What You Bring /h3 ul li5+ years of experience in SOC operations, detection engineering, threat hunting, and incident response. /li liHands‑on experience with SIEM, EDR, and SOAR platforms (preferably Sentinel, Elastic, Defender for Endpoint, and Cortex XSOAR). /li liStrong background in detection rule development, security investigations, and threat hunting across multiple telemetry sources. /li liExperience with scripting, automation, APIs, and tools such as Python, GitLab, Azure DevOps, and CI/CD practices. /li liKnowledge of security query languages and frameworks, including MITRE ATTCK. /li liStrong analytical, communication, collaboration, and mentoring skills. /li /ul /p #J-18808-Ljbffr
📌 Incident Responder (Madrid)
🏢 BME | Bolsas y Mercados Españoles
📍 Madrid