Security Operations Analyst (SIEM Technologies)

Full Time | Valencia, Spain or Remotely within the CET/GMT time zone

If you like this offer, please send your CV mentioning the job title to: recruitment@united-its.com

Location:  Valencia, Spain, or Remote working on the CET time zone

Teleworking option: Yes

Required Technical Skills

The resource MUST have the following skills and experience:

 •Knowledge of Transmission Control Protocol / Internet Protocol (TCP/IP) protocols
• Deep knowledge of Microsoft Security Tools (e.g. M365, Cloud App Security, Azure,Defender for Endpoints, Azure Security, Azure Sentinel and XDR
• Deep Knowledge of Cloud technologies (e.g. Azure, AWS and GCP)
• Deep knowledge of SIEM tools like Splunk, QRadar, ArcSight, MS Sentinel, ELK Stack
• Knowledge of at least one EDR solution (MS Defender for Endpoint, Sentinelone, Crowdstrike)
• Knowledge of email security, network monitoring, and incident response
• Knowledge of Linux/Mac/Windows;
• A minimum of five (5) years of relevant experience in information technology field, including triage of alerts and supporting security incidents
• Proven experience in reviewing raw log files, data correlation, and analysis (i.e. firewall, network flow, IDS, system logs)
• Proven experience on administering a SIEM platform, preferable either Splunk or Microsoft Sentinel SIEM
• Expert knowledge of English, both written and spoken, is required

The resource SHOULD have the following skills and experience:

• Proven knowledge of monitoring AWS environment (Iaas, Saas, Paas)
• Knowledge of at least one general-purpose or shell scripting language (e.g. Ruby, Bash, PowerShell, Python, etc.)

Scroll al inicio