Security Operations Analyst (SIEM)
- Remote
- Contract
- ICT
Long running contract opportunity for a Security Operations Analyst to work on a fully remote basis, or hybrid/onsite at the client's offices in Valencia, Spain. You'll join an existing security operations team and help manage, identify and resolve security-related incidents with the main client and it's end customers. One of your main responsibilities will be the administration and engineering of SIEM platforms.
Single stage Teams interviews will take place at the end of June with onboarding in July or early August. It will be an initial 6 month contract that will extend multiple times, probably running for four years or more.
Your Security Operations Analyst duties:
- Build, adjust and implement analytics and detection rules for SIEM, EDR and AV
- Contribute to the preparation of KPIs for cybersecurity operations capabilities
- Monitor and investigate alerts leveraging Microsoft Security Tools (e.g. M365, Cloud App Security, Azure, Defender for EndPoint, Azure Security, Azure Sentinel and XDR)
- Monitor and triage AWS security events and detections
- Monitor and investigate alerts leveraging EDR solutions
- Work with alerts from the CSOC Analysts, to perform in depth analysis and triage of network security threat activity based on computer and media events, malicious code analysis, and protocol analysis;
- Review trouble tickets generated by CSOC Analyst(s)
- Provide other ad hoc support as required
You will have:
- Knowledge of Transmission Control Protocol / Internet Protocol (TCP/IP) protocols
- Experience with Microsoft Security Tools (e.g. M365, Cloud App Security, Azure, Defender for Endpoints, Azure Security, Azure Sentinel and XDR
- Knowledge of Cloud technologies (e.g. Azure, AWS and GCP)
- Experience with SIEM tools like Splunk, QRadar, ArcSight, MS Sentinel, ELK Stack
- Knowledge of at least one EDR solution (MS Defender for Endpoint, Sentinelone, Crowdstrike)
- Experience in reviewing raw log files, data correlation, and analysis (i.e. firewall, network flow, IDS, system logs)
- Proven experience on administering a SIEM platform, preferable either Splunk or Microsoft Sentinel SIEM
- Fluent English.
This is a live requirement. The client is an international organisation that will look great on your CV. It offers a collaborative and enjoyable work environment, with a team of international technical professionals. If you have SOC / SOA experience and want a new opportunity, get int ouch today.
#LI-AM1
QCS Staffing have been great at fully getting to know our business and understanding what we are looking for, not just in the vacancy but also in the type of person that would suit the business. Their knowledge of the technology industry is fantastic and they are more than happy to reject a vacancy if they feel it is not their specialism to ensure that we don’t waste anyone’s time. It has enabled us to recruit some fantastic employees and continue to grow the relationship between our business and QCS Staffing.
We found QCS a refreshing change from the norm, offering invaluable support throughout any hiring process. Most importantly a strong network within the data centre world meant they were able to find us some top talent! Would thoroughly recommend QCS to anyone looking to change and simplify the way they recruit talent!
Save as job alert
Similar Jobs
Salary
Competitive
Location
Valencia
Salary
Competitive
Sector
ICT
Job type
Contract
Location
Spain
Description
UI/UX Developer – 11 Month Contract (Possible Extensions) – Remote Our client, an international IT service provider, is seeking a UI/UX Developer to join them as a contractor, with the
Reference
36015
Expiry Date
01/01/0001
Author
Alex McCruddenAuthor
Alex McCruddenSalary
Competitive
Location
Maastricht
Salary
Competitive
Sector
ICT
Job type
Contract
Location
England
East Anglia
Description
IT Engineer - Pharmaceuticals - Limburg - 11-Month Contract Our client, a leading partner to pharmaceutical, biotech and nutrition markets, has an exciting opening for a IT Engineer for their
Reference
36100
Expiry Date
01/01/0001
Author
Chris BlandAuthor
Chris BlandSalary
Competitive
Location
Valencia
Salary
Competitive
Sector
ICT
Job type
Contract
Location
Italy
Description
OpenStack Administrator - Rome, Italy - 5-Months Contract Our client, an international IT service provider, is seeking an OpenStack Administrator to join them as a contractor, with the option to
Reference
34809rome
Expiry Date
01/01/0001
Author
Becky DalyAuthor
Becky DalyInsights
Send us your CV
Our candidates are the cornerstone of our organisation and we are always looking to connect with new professionals who are seeking their next contract assignment or career opportunity.
Alex
I manage this role.