Job description
This a Full Remote job, the offer is available from: EMEA
Location: Valencia, Spain, Hybrid OR Remote across EMEA
Employment: Full-Time Contract
Duration: 6 months, with potential extension
Language: Fluent English required
Industry: Cybersecurity / SIEM / Cloud Security
About the OpportunityPragmatike is recruiting on behalf of a major international organization for a Security Operations Analyst specializing in SIEM and Threat Detection.
You’ll join a global Cybersecurity Operations team focused on building, operating, and continuously improving the security monitoring capabilities protecting international organizations and their technology environments.
Unlike a traditional SOC monitoring role, this position has a strong focus on SIEM administration, detection engineering, security content, data-source onboarding, use-case lifecycle management, and detection optimization.
You’ll work closely with Threat Intelligence, Incident Response, and Cybersecurity Operations teams to turn security requirements and emerging threats into effective, measurable detection capabilities.
What You’ll DoDevelop, implement, validate, tune, and maintain security monitoring and detection capabilities.
Administer and optimize SIEM platforms across multiple customer environments.
Manage security detection rules and use cases throughout their lifecycle.
Onboard, integrate, test, and validate new security data sources and telemetry feeds.
Review and improve detection logic, security content, and monitoring configurations.
Collaborate with Threat Intelligence and Incident Response teams to translate threats into actionable detection capabilities.
Support cybersecurity architecture reviews and provide recommendations to improve security monitoring.
Build and maintain security metrics, dashboards, KPIs, and service-performance reports.
Evaluate detection effectiveness and identify opportunities to reduce false positives.
Contribute to quality assurance, process reviews, control validation, and corrective actions.
Maintain SOC procedures, standards, documentation, knowledge bases, and operational guidance.
Prepare technical reports, findings, and recommendations for internal and external stakeholders.
What We’re Looking For5+ years of relevant IT/cybersecurity experience.
Proven hands-on experience administering a SIEM platform, ideally Splunk or Microsoft Sentinel.
Strong experience with SIEM/EDR environments and technical security analysis.
Deep knowledge of Microsoft Security technologies.
Strong cloud security knowledge across Azure, AWS, and/or GCP.
Experience with platforms such as Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK.
Experience with at least one EDR platform such as Microsoft Defender for Endpoint or CrowdStrike.
Knowledge of email security, network monitoring, and incident response.
Strong Linux, macOS, and Windows knowledge.
Fluent English with excellent written and verbal communication skills.
Nice to HaveExperience designing SIEM architecture from initial design through implementation.
Experience building data-ingestion pipelines for diverse cloud and on-premise log sources.
AWS security monitoring experience.
Scripting experience with Python, PowerShell, Bash, Ruby, or similar.
Security certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE.
Experience working across multiple customer environments.
Why JoinWork beyond traditional SOC monitoring and contribute to the engineering and optimization of security detection capabilities.
Gain exposure to large-scale SIEM, EDR, cloud, and threat-detection environments.
Work directly with Threat Intelligence, Incident Response, and Cybersecurity Operations teams.
Help shape detection use cases, monitoring architecture, and operational processes.
Work on cybersecurity services supporting multiple international organizations.
Pragmatike is committed to a fair, transparent, and inclusive recruitment process. We do not discriminate based on age, disability, gender, gender identity or expression, marital or civil partner status, pregnancy or maternity, race, religion or belief, sex, or sexual orientation.
In accordance with GDPR, your personal data will be processed lawfully, fairly, and securely and used solely for recruitment purposes, including sharing it with our client(s) for employment consideration.
This offer from "Pragmatike" has been enriched by Jobgether.com and got a 0% flex score.
Prepare your application
Use the description above to assess your fit for Pragmatike. This checklist is guidance from Resumize, rather than additional requirements from the employer. Imported listings can be shortened or change after collection, so confirm the complete description and current availability before sending an application.
Match requirements to evidence
Identify the responsibilities and skills the employer explicitly names. For each important requirement, choose one example from your work, education, training, or projects. Explain what you did, how you did it, and what changed as a result. Include a measurable outcome when you can support it. If you lack a requirement, describe related experience accurately instead of adding an unfamiliar skill to your resume.
Put the most relevant examples near the top of your resume. Keep job titles, dates, qualifications, and contact details consistent across your application materials. Use the employer’s terminology when it describes your experience accurately; a copied list of keywords does not explain your contribution. A short, specific bullet is easier to review than a paragraph that mixes several unrelated duties.
Check the working arrangement
Confirm the location, schedule, employment type, and any eligibility requirements on the employer’s site. A remote label does not establish worldwide eligibility or flexible hours. If compensation, benefits, equipment, travel, or contract duration are missing from this listing, write down your questions for the recruiter. Do not assume details from another opening at the same company apply to this role.
Review before submitting
Follow the employer’s requested file format and application instructions. Open your exported resume and check that its text is selectable, its sections read in order, and its links work. Proofread names, dates, and contact information. Share confidential work samples only when you have permission, and use an anonymized example when necessary.
Submit through a trusted employer or recruiting destination. If the original listing has disappeared, search the employer’s careers page for the title rather than assuming the vacancy remains open. Save the application date, job reference, and the version of your resume you sent. Those details help you prepare for a later conversation and avoid submitting conflicting information through several job boards.
Review your resume for writing and readability feedback, or browse other openings if this opportunity is unavailable.