Senior Cybersecurity Analyst - (Cyber Defense Operations)
hace 6 días
Málaga
Talan is an international consulting group specializing in innovation and business transformation through technology. With over 7,200 consultants in 21 countries and a turnover of €850M, we are committed to delivering impactful, future-ready solutions. Headquartered in Paris and operating globally, Talan combines technology, innovation, and empowerment to deliver measurable results for our clients. Over the past 22 years, we’ve built a strong presence in the IT and consulting landscape, and we’re on track to reach €1 billion in revenue this year. • Data & Technologies: We design and implement large-scale, end-to-end architecture and data solutions, including data integration, data science, visualization, Big Data, AI, and Generative AI., • Cloud & Application Services: We integrate leading platforms such as SAP, Salesforce, Oracle, Microsoft, AWS, and IBM Maximo, helping clients transition to the cloud and improve operational efficiency., • Management & Innovation Consulting: We lead business and digital transformation initiatives through project and change management best practices (PM, PMO, Agile, Scrum, Product Ownership), and support domains such as Supply Chain, Cybersecurity, and ESG/Low-Carbon strategies. We’re looking for a Senior Cybersecurity to join a global Cybersecurity Operations team responsible for protecting critical environments and supporting international organizations against evolving cyber threats. You’ll be part of a 24x7 Security Operations Centre (SOC), working with cybersecurity specialists across the world to monitor, investigate and respond to security incidents. This is a hands‑on role where your technical expertise will directly contribute to improving threat detection, incident response and overall security. • Monitor, triage and investigate security alerts across SIEM, EDR, Microsoft Security and cloud environments., • Investigate potential cyber threats and security incidents, identifying root causes and appropriate remediation actions., • Analyze logs from Windows, Linux, databases, applications, web servers, firewalls and network security systems., • Work closely with Incident Response teams and cybersecurity specialists to contain and resolve threats., • Use and maintain security monitoring and detection tools, helping improve detection quality and reduce false positives., • Prepare clear security reports, incident summaries and technical findings for clients., • Manage security-related tickets and ensure incidents are properly documented., • Contribute to improving SOC processes, procedures, documentation and knowledge bases., • Work directly with clients to understand their environments and optimize security monitoring., • Stay up to date with emerging threats, technologies and cybersecurity best practices. What are we looking for? We’re looking for someone who combines strong technical skills with a proactive and collaborative mindset. • 5+ years of experience in IT, Cybersecurity or Security Operations., • Hands‑on experience working in a SOC environment, including security alert triage and incident investigation., • Strong knowledge of SIEM and EDR technologies., • Experience with platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight or ELK., • Experience with Microsoft Security technologies, including Defender for Endpoint, Microsoft 365, Sentinel, Azure Security and XDR., • Strong understanding of Azure, AWS and/or GCP., • Experience with at least one EDR solution, such as Microsoft Defender for Endpoint or CrowdStrike., • Strong knowledge of networking and TCP/IP., • Excellent experience analyzing security logs across Windows and Linux environments., • Knowledge of email security, network monitoring and incident response., • Experience managing and processing security tickets., • Excellent spoken and written English., • Experience working in an Incident Response team, particularly Tier I/II., • Experience monitoring AWS environments, including IaaS, PaaS and SaaS., • Scripting experience with Python, PowerShell, Bash, Ruby or similar., • Cybersecurity certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA or MCSE., • Experience working in a global, distributed SOC., • Full-time and permanent employment contract or contractor mode, • Remote location in Spain or any other European country., • Professional growth possibilities & learning opportunities, • Possibility to join a multicultural team & work in the international environment, • Variety of benefits to support your physical, emotional and financial wellbeing: private medical insurance, life insurance, lunch and transport card as part of the flexible remuneration pack, and online language classes, • Smart Office Pack Talan Spain’s commitment to non-discrimination based on gender, race, ideology, or any other reason, in accordance with the company’s "Equality Plan" and the current regulations on gender equality between women and men (Royal Decree-Law 6/2019). #J-18808-Ljbffr