Finde deine nächste berufliche Chance

Suche Stellen nach Beruf, Fähigkeit und Standort. Prüfe die Anforderungen, bevor du deine Bewerbung vorbereitest.

Eine gute Stellensuche endet nicht bei einem interessanten Titel. Vergleiche Aufgaben, Anforderungen und Arbeitsbedingungen mit deiner Erfahrung. Dieser Leitfaden hilft dir, passende Möglichkeiten auszuwählen, relevante Unterlagen vorzubereiten und zu prüfen, wo du deine Bewerbung einreichen kannst.

Die Oberfläche ist auf Deutsch. Die Titel und Beschreibungen der Arbeitgeber bleiben in ihrer ursprünglichen Veröffentlichungssprache, die Englisch sein kann.

Filter zurücksetzen

Ergebnisse: 8.529

← Zurück zu den Ergebnissen

Security Operations Analyst (SIEM Operations and Threat Detection)

Talan

Standort
Anywhere
Veröffentlicht
8. Okt. 2026

Prüfe vor der Bewerbung auf der Website des Arbeitgebers, ob die Stelle noch offen ist und welche Bedingungen gelten.

Stellenbeschreibung

Die Oberfläche ist auf Deutsch. Die Titel und Beschreibungen der Arbeitgeber bleiben in ihrer ursprünglichen Veröffentlichungssprache, die Englisch sein kann.

We are looking to join a Senior consultant within the Cyber Security Operations Center (CSOC), a globally distributed team of cybersecurity professionals responsible for protecting complex and diverse technology environments. The role is primarily focused on enhancing threat detection and cybersecurity operations capabilities through activities such as security content management, quality assurance and validation of detection mechanisms, detection use case lifecycle management, onboarding and integration of new security data sources, reporting, and process optimization. This is an excellent opportunity for professionals interested in working within a large-scale international cybersecurity environment, where they will play a key role in the continuous improvement of security monitoring and threat detection services across multiple customer landscapes. The position combines elements of Security Operations, Threat Detection Engineering, SIEM optimization, cyber risk management, and operational excellence, offering exposure to a wide variety of cybersecurity technologies and challenges. Main Responsibilities: - Contribute to the development, implementation, validation, tuning, and maintenance of security monitoring, analytics, and detection capabilities across SIEM, EDR, cloud, and other cybersecurity platforms. - Support the operation, maintenance, optimization, and continuous improvement of security monitoring and threat detection services. - Participate in the onboarding, integration, testing, and validation of security data sources, telemetry feeds, and monitoring capabilities. - Contribute to security content management activities, including use case lifecycle management, rule reviews, testing, tuning, and content quality assurance. - Collaborate with cyber threat intelligence, incident response, and cybersecurity operations teams to translate operational and threat intelligence requirements into effective detection and monitoring capabilities. - Under guidance, participate in cybersecurity architecture reviews of new or existing solutions and provide recommendations to enhance security monitoring and detection effectiveness. - Contribute to the preparation and maintenance of cybersecurity operations metrics, dashboards, KPIs, and service performance reports. - Review, validate, and assess the effectiveness of detections, monitoring configurations, operational processes, and service deliverables, identifying opportunities for improvement. - Gather and analyze operational feedback to identify opportunities for tuning, optimization, reduction of false positives, and improvement of overall detection quality. - Contribute to quality assurance activities, including process reviews, control validation, service quality assessments, and implementation of corrective actions. - Support the development, review, and maintenance of CSOC procedures, standards, documentation, knowledge base articles, and operational guidance materials. - Prepare and present technical reports, summaries, findings, and recommendations to internal and external stakeholders. On-Call Availability (On-Call Shift System) - Mandatory 24/7 On-Call Rotation: You will be required to participate in a rotating on-call shift schedule from Monday to Sunday. - What this means: This does not mean you will be actively working 24/7 or during late-night shifts. Instead, you will be on standby outside of standard working hours, meaning you must be reachable and available to log in and resolve critical system incidents only if they arise. - Frequency: The approximate rotation frequency is one full week (7 consecutive days) every X months, depending on the number of team members Must have: - +5 years of relevant experience in information technology field, including triage of alerts and supporting security incidents - Proven experience on administering a SIEM platform, preferably either Splunk or MicrosoftSentinel SIEM - Proven experience with the usual toolbox available in a SOC (e.g., SIEMs, EDRs) and being able to autonomously perform technical analysis of security threats and collaborate with Incident Response team - Deep knowledge of Microsoft Security Tools (e.g. M365, Cloud App Security, Azure,Defender for Endpoints, Azure Security, Azure Sentinel and XDR) - Deep Knowledge of Cloud technologies (e.g. Azure, AWS and GCP) - Deep knowledge of SIEM tools like Splunk, QRadar, ArcSight, MS Sentinel, ELK Stac - Knowledge of at least one EDR solution (MS Defender for Endpoint, CrowdStrike) - Knowledge of email security, network monitoring, and incident response - Knowledge of Linux/Mac/Windows - C1 English proficiency Nice to have: - Experience in building SIEM architectures from initial design to implementation, including designing data ingestion pipelines for diverse log sources across cloud and on-prem environments - Proven knowledge of monitoring AWS environment (Iaas, Saas, Paas) - Knowledge of at least one general-purpose or shell scripting language (e.g. Ruby, Bash, PowerShell, Python, etc.) Desirable certifications: - MCSE, CCNA, Microsoft Azure (e.g., SC-200), GCIH, CEH, GCFA or any GIAC/similar certification Required Soft Skills: - Excellent communication skills - Customer-facing experience and oral communication skills - Ability to write documentation & reports - Creativity/ ability to find innovative solutions - Willingness to learn on the job - Conflict management & cooperation What do we offer you? - Remote Position - Freelance, full-time contract. - Training and career development. - Possibility to be part of a multicultural team and work on international projects. If you are passionate about data, development & tech, we want to meet you! Talan Spain’s commitment to non-discrimination based on gender, race, ideology, or any other reason, in accordance with the company’s "Equality Plan" and the current regulations on gender equality between women and men (Royal Decree-Law 6/2019). Talan – Positive Innovation Talan is an international consulting group specializing in innovation and business transformation through technology. With over 7,200 consultants in 21 countries and a turnover of €850M, we are committed to delivering impactful, future-ready solutions. Talan at a Glance Headquartered in Paris and operating globally, Talan combines technology, innovation, and empowerment to deliver measurable results for our clients. Over the past 22 years, we’ve built a strong presence in the IT and consulting landscape, and we’re on track to reach €1 billion in revenue this year. Our Core Areas of Expertise - Data & Technologies: We design and implement large-scale, end-to-end architecture and data solutions, including data integration, data science, visualization, Big Data, AI, and Generative AI. - Cloud & Application Services: We integrate leading platforms such as SAP, Salesforce, Oracle, Microsoft, AWS, and IBM Maximo, helping clients transition to the cloud and improve operational efficiency. - Management & Innovation Consulting: We lead business and digital transformation initiatives through project and change management best practices (PM, PMO, Agile, Scrum, Product Ownership), and support domains such as Supply Chain, Cybersecurity, and ESG/Low-Carbon strategies. We work with major global clients across diverse sectors, including Transport & Logistics, Financial Services, Energy & Utilities, Retail, and Media & Telecommunications.

Suchen, vergleichen und deine Bewerbung vorbereiten

Beginne mit einem Beruf oder einer Fähigkeit, die du einsetzen möchtest. Nutze die Standort- und Berufsfilter und öffne Stellenanzeigen, um die Aufgaben zu vergleichen. Wenn du keine Ergebnisse findest, probiere einen kürzeren Suchbegriff oder entferne jeweils einen Filter.

Unterscheide notwendige Anforderungen von Wünschen. Prüfe Arbeitszeit, Vergütung und Standort, soweit sie angegeben sind. Auch Remote-Stellen können einen bestimmten Wohnsitz, eine Arbeitserlaubnis oder passende Arbeitszeiten verlangen. Bestätige die Verfügbarkeit und die vollständigen Bedingungen beim Arbeitgeber.

Wähle tatsächliche Beispiele aus deiner Erfahrung, die zu den Anforderungen passen. Erkläre deinen Beitrag und verwende nur belegbare Zahlen. Befolge die Vorgaben des Arbeitgebers und prüfe Kontaktdaten, Inhalt und PDF, bevor du die Bewerbung abschickst.

Vor dem Absenden deiner Bewerbung

Fragen zur Stellensuche

Warum sind manche Stellenanzeigen auf Englisch?

Arbeitgeber verfassen ihre eigenen Titel und Beschreibungen. Wir behalten diese Texte bei, damit Anforderungen und Bedingungen unverändert bleiben. Navigation und Leitfaden sind auf Deutsch. Findest du mit deutschen Begriffen keine Stellen, probiere auch die Bezeichnung oder Fähigkeit in der Sprache der Anzeige, etwa „software engineer“.

Kann ich bei einer Remote-Stelle aus jedem Land arbeiten?

Nicht unbedingt. Arbeitgeber können den Wohnsitz auf bestimmte Länder beschränken, eine Arbeitserlaubnis verlangen oder Arbeitszeiten vorgeben. Prüfe die Originalanzeige. Wenn diese Angaben fehlen, kläre sie mit dem Arbeitgeber, bevor du davon ausgehst, dass du von deinem Standort aus arbeiten kannst.

Was kann ich tun, wenn keine Ergebnisse erscheinen?

Versuche einen allgemeineren Titel oder eine einzelne Fähigkeit und entferne die Filter nacheinander. Unternehmen verwenden unterschiedliche Berufsbezeichnungen. Ist eine bestimmte Anzeige verschwunden, suche ihre Referenz auf der Karriereseite des Unternehmens. Weniger Filter machen eine geschlossene Stelle nicht wieder verfügbar.

Wird meine Bewerbung über ResumizeAI abgeschickt?

Die Bewerbungsschaltfläche öffnet eine externe Seite. Folge den Anweisungen des Arbeitgebers oder des Recruiting-Anbieters und bestätige dort den Versand. Ein in ResumizeAI vorbereiteter Lebenslauf ist noch keine eingereichte Bewerbung. Führt der Link nur zur Unternehmenswebsite, suche zuerst die konkrete Stelle.

Wie passe ich Lebenslauf und Anschreiben an?

Verknüpfe die Anforderungen mit Projekten, Aufgaben und Ergebnissen, die du erklären kannst. Hebe passende Erfahrung hervor, ohne Fähigkeiten oder Leistungen zu erfinden. Erläutere im Anschreiben dein Interesse anhand eines konkreten Beispiels. Beachte die verlangte Sprache und das Dateiformat und prüfe beide Dokumente vor dem Absenden.