SOC / Security Operations Specialist role enhancing security operations of enterprise client. Focus on monitoring, incident response, and SIEM optimization.
Responsibilities
Assess the current SOC/SIEM environment and propose improvements for monitoring, alerting, and escalation processes.
Configure, optimise, and evaluate alerts in SIEM (Microsoft Sentinel) and EDR (SentinelOne).
Develop and maintain Incident Response playbooks, procedures, and escalation workflows.
Perform ongoing monitoring of security events, triage alerts, manage incident backlog and support escalations.
Drive improvements in operational security areas: MFA enforcement, AD hardening, MDM/Intune, patching, EDR coverage.
Analyse logs, identify suspicious activities, and ensure follow-up with IT and security teams.
Prepare regular SOC and security posture reports for CIO/CISO.
Requirements
Experience in SOC, SIEM management, Incident Response, or Security Operations.
Hands-on experience with SOC tooling (Microsoft Sentinel, SentinelOne, Intune, AD).
Practical understanding of attack vectors, MITRE ATT&CK, threat detection, and IR lifecycle.
Ability to analyse logs, recognise anomalies, and structure incident handling.
Strong communication skills for reporting, escalation, and cooperation with leadership teams.
Cyber Operations Lead ensuring coordination of cyber operations between the Security Operations Center and internal business units. Enhancing security through effective incident response and threat management initiatives.
Solution Sales Manager enhancing revenue in financial services, focusing on ServiceNow IRM and Tanium solutions. Collaborating with teams and engaging C - level executives in Austria and Switzerland.
Senior Internal SOC Analyst leading security triage and investigations for Darktrace, utilizing AI - driven cybersecurity technology. Collaborating on incident response and mentorship within a hybrid work environment.
Security Operations Intern responsible for security monitoring at Paddy Power Betfair. Involves data loss prevention investigations and content filtering analysis with a commitment to improving security posture.
SOC Analyst L2 responsible for managing and analyzing security incidents in digital transformation. Contributing directly to the protection of companies and infrastructures.
Senior Manager leading global IT security operations to protect company data and assets at Keenova. Overseeing incident response, monitoring, and cybersecurity capabilities with strategic oversight.
Security Operations Center leader at Woven by Toyota, managing triage and response to security alerts in Japan. Collaborating with global SOCs to ensure 24/7 operations.
GSOC Analyst responsible for security operations at Paramount Studios. Developing workflows, incident response, and risk monitoring in a dynamic team environment.