The Senior SOC Specialist (m / f / d) is responsible for the design maintenance and enhancement of Security Operations Center (SOC) infrastructure and processes. They work closely with incident responders analysts and threat intelligence teams to optimize detection capabilities improve SOC workflows and ensure rapid incident triage and response.
Location
Please note that theworking location for this position will be in Madrid city where we are currently setting up a new office location. Until the office is fully set-up within the next few months you will have the possibility to work flexibly from home-office and continue with a hybrid working model position is not a fully remote position and an onsite presence will be required once our office location is ready.
Responsibilities
* Use Case Development : Design and test new security use cases to enhance the detection and response capabilities of Liebherrs SIEM system
* Log Source Onboarding : Onboard and integrate various log sources into the SIEM system ensuring comprehensive visibility across the organizations IT environment
* SOAR Playbook Implementation : Design implement and maintain SOAR playbooks to automate incident response processes and improve operational efficiency
* System Optimization : Continuously evaluate and optimize the performance of the SIEM and SOAR systems to ensure they meet the evolving security needs of the organization. Also optimize costs in regards to Log sources and their retention
* Threat Detection Engineering : Design and implement advanced detection techniques and perform threat hunting as well as lead tuning exercises and detection gap analysis
* Collaboration : Work closely with the SOC team and other IT departments to ensure seamless integration of security tools and processes
* Documentation : Maintain thorough documentation of use cases log source configurations and SOAR playbooks for future reference and compliance purposes
Qualifications
* Bachelors / Masters in Cybersecurity Computer Science or related field
* 6 years in cybersecurity ideally as SOC-Engineer
* Hands‑on knowledge of SIEM and security analytics tools (e.g. Microsoft Sentinel Microsoft Defender XDR Elastic SIEM)
* Familiarity with SOAR platforms and automation processes (especially Microsoft Logic Apps Microsoft Sentinel Automations)
* Experience in security log source onboarding & automation of security tasks
* Proficiency in scripting and programming languages (e.g. Python PowerShell) for automation tasks
* English is a Must German and French are a plus
* Understanding of cybersecurity frameworks and standards (e.g. ISO27001 NIST GDPR)
* Strong analytical problem‑solving skills and communication skills
* Following certificates are a plus : GIAC Python Coder (GPYC) GIAC Cloud Security Automation (GCSA) GIAC Security Operations Certified (GSOC) Cloud certifications (AWS Azure or GCP)
Benefits
* Attractive salary and social benefits
* Flexible and hybrid working
* Freedom for creative work
* Safe and secure workplace
* Individual development and training opportunities
* Meal voucher
* Life and accident insurance
* Exclusive offer for a premium private health insurance package
* Bonus payments for Christmas and holidays based on the collective agreement
Application Instructions
Please only use the online application option.
Please note that we do not accept applications via recruitment agencies for this position.
Have we awoken your interest Then we look forward to receiving your online application. If you have any questions please contact Karoliina Rissanen.
One Passion. Many Opportunities.
Contact
Karoliina Rissanen
#J-18808-Ljbffr