Hi,
Greetings from Mouritech
We are recruiting for a position SOC SIEM EMEA to our client located in Valencia, Spain as a contract role. please do share your resume to
[email protected] to discuss further.
5+ yrs IT incl. alert triage; hands-on SIEM administration (Splunk or Microsoft Sentinel); detection content and use-case lifecycle; data-source onboarding; Microsoft security stack; Azure/AWS/GCP; EDR
SIEM architecture from design to build, ingestion pipelines across cloud and on-prem; AWS monitoring; scripting. Certs: SC-200, GCIH, CEH, GCFA or similar.
Required Profile:
The incumbent will be part of the Cybersecurity Operations Section (CSO) to provide front line support to Partners in the area of information/cyber security, risk management consulting, and security operations activities in collaboration with a team of information and cyber security experts.
Required Technical Skills:
• A minimum of five (5) years of relevant experience in information technology field, including triage of alerts and supporting security incidents
• Proven experience on administering a SIEM platform, preferably either Splunk or Microsoft Sentinel SIEM
• Proven experience with the usual toolbox available in a SOC (e.g., SIEMs, EDRs) and being able to autonomously perform technical analysis of security threats and collaborate with Incident Response team
• Deep knowledge of Microsoft Security Tools (e.g. M365, Cloud App Security, Azure, Defender for Endpoints, Azure Security, Azure Sentinel and XDR
• Deep Knowledge of Cloud technologies (e.g. Azure, AWS and GCP)
• Deep knowledge of SIEM tools like Splunk, QRadar, ArcSight, MS Sentinel, ELK Stack
• Knowledge of at least one EDR solution (MS Defender for Endpoint, CrowdStrike)
• Knowledge of email security, network monitoring, and incident response
• Knowledge of Linux/Mac/Windows
• Proven knowledge of monitoring AWS environment (Iaas, Saas, Paas)
• Knowledge of at least one general-purpose or shell scripting language (e.
📌 SOC SIEM EMEA (España)
🏢 MOURI Tech
📍 España