Security Analyst Tier 1 en Vitoria, España - Jobeax
Descripción de la vacante
Security Analyst Tier 1 en Vitoria, España
Kudelski Security
Tiempo completoJornada semanal estándar
Spain, Vitoria
Security Analyst Tier 1 en Vitoria, España is listed on Jobeax. Browse 80,000+ vacancies available.
Your Mission
Aumente sus posibilidades de llegar a la fase de entrevista leyendo la descripción completa del puesto y enviando su solicitud sin demora.
As a Security Analyst Level 1, you are the first line of defense within our 24x7 Managed Detection & Response (MDR) operations, part of the Cyber Fusion Center (CFC) / SOC. Your mission is to monitor, triage, and validate security alerts, ensuring timely escalation of confirmed threats while maintaining high operational quality across a multi-client SOC environment.
You will operate within clearly defined procedures, using modern security tooling and AI-assisted workflows to improve investigation efficiency, documentation quality, and learning velocity—while adhering strictly to escalation paths, data-handling rules, and security policies. You are based in Madrid, Spain, working a 24/7 shift rotation (morning, evening, night, and weekends) in a permanent, full-time role, reporting to the SOC Manager within a team of 15-20 L1 Analysts.
Your responsibilities will be:
General responsibilities
Monitor and triage security alerts generated by SIEM, EDR/XDR, firewalls, ICS/OT, and other security technologies to determine if further investigation or customer action is warranted.
Perform first-level incident analysis, validation, and classification following SOPs and playbooks.
Escalate confirmed, suspicious, or complex incidents to Tier 2 with clear, structured, and complete documentation (what happened, evidence, scope, actions taken, recommended next steps).
Respond to alerts and tickets within defined SLAs and document all investigation steps accurately in the ticketing system.
Adhere to internal policies, procedures, and security best practices to protect customer and company data.
Participate in shift handovers, ensuring continuity of investigations and clear ownership of next actions.
Contribute to customer satisfaction by handling customer interactions professionally, communicating critical findings, providing accurate information, and ensuring requests are routed to the appropriate teams for timely resolution and support.
Maintain strong operational discipline: correct priority, categorization, and documentation standards.
Threat monitoring & incident handling
Validate alert fidelity by reviewing available telemetry, context, and enrichment to separate false positives from true security events.
Perform initial scoping (impacted host/user, time window, key indicators, related alerts) using approved tools and data sources.
Apply predefined containment or response actions only when explicitly authorized by procedures and customer runbooks.
Collect and preserve relevant artifacts (e.g., alert context, event IDs, process names, hashes, IPs/domains) to support Tier 2 investigations.
Support ongoing investigations by providing timely updates and evidence to senior analysts.
Use approved AI tools to summarize alerts, logs, and timelines to accelerate triage.
Use AI-assisted enrichment to understand unfamiliar indicators, techniques, or tool outputs.
Identify recurring false positives, noisy detections, and tooling limitations; raise improvement suggestions through defined channels.
You are
A team-oriented analyst comfortable working in a structured, high-tempo SOC environment.
Methodical and detail-oriented, able to remain calm under pressure and manage multiple alerts in parallel.
Curious and motivated to learn cybersecurity operations and modern SOC tooling.
Clear and professional in written and verbal communication.
Willing to work in a 24/7 shift-based operation.
You have
More than 1 year of experience in cybersecurity, IT operations, or a related field (internships, labs, or SOC trainings), typically analyzing logs and host data to identify suspicious/abnormal activity.
Initial to intermediate exposure to SIEM and/or EDR/XDR platforms for log analysis and detection.
Understanding of TCP/IP, security architecture, adversary TTPs, common web attacks, and the MITRE ATT&CK framework.
Familiarity with incident response methodologies (NIST/SANS) and fundamentals in networking and operating systems (Windows/Linux).
Understanding of appropriate AI usage in security contexts.
Basic knowledge of OT and its core concepts.
Strong verbal and written communication skills for documenting findings, escalating incidents, and collaborating with customers.
Fluent in English and Spanish (written and verbal).
Nice to have: CompTIA Security+, CySA+, CEH, or BTL1 (or actively pursuing).
With Kudelski, you can expect
Hands-on experience in a global MDR operation with top-tier security tooling.
Structured progression path and coaching towards other roles.
Training and certification opportunities.
Competitive compensation and benefits (including shift compensation/paid overtime, meal allowance, life insurance, health insurance, pension plan, and flexible compensation options).
Inclusive, collaborative culture in an international environment.
About Kudelski Security
Kudelski Security is a global Gartner- and Forrester-recognized provider of unique cybersecurity solutions. Our team of security experts delivers end-to-end consulting, technology, managed services, and threat intelligence.
Our MDR/XDR services feature three global state-of-the-art SOCs delivering tailored, intelligence-driven protection. With 2M+ users secured and a leadership team that has built top-tier MSSPs, we provide unmatched expertise to help organizations stay ahead of threats and build strategic cybersecurity programs.
Kudelski Security is an equal opportunity employer. xqysrnh We are committed to creating an inclusive workplace where all individuals are treated fairly and respectfully.
Your Mission As a Tier 2 SOC Analyst , you will serve as a subject matter expert in our technology stack while optimizing security tools and detection workflows, mentoring junior analysts on complex investigation techniques, and driving continuous improvement initiatives across our multi-client SOC environment . This role ...
About the role The Information Security Analyst is responsible for supporting the protection of TP's information systems, technology assets, and intellectual property against unauthorized access, cyber threats, data breaches, and other security risks. The role assists in the implementation, monitoring, and continuous improvement ...
... like Mews - but if we had to distil it into a job description (which we do because this is a job description), it would be this: Mews is scaling fast, and IT Security and Compliance is growing to match. This is the internal security function for the Mews organization itself, covering security monitoring, incident detection ...
... sounds like something you would like to be a part of, we’d love to hear from you. A World of Difference. Made Possible. We're looking for an Identity & Endpoint Security Analyst to join our Cyber Security team and help protect our users, devices, and business-critical systems across a global manufacturing environment. What You'll ...
... the aspiration to provide the modular elements of the platform to internal and third-party customers on a SaaS basis. Pepper Advantage is looking to grow its Security Engineering team by adding a skilled and experienced Cyber Security Analyst. You will be responsible for building and running the defensive security controls ...
... or contracts will be terminated or not renewed during 2026. - Tier 1 : Other UNDP/UNCDF/UNV staff holding permanent (PA) and fixed-term (FTA) appointments - Tier 2 : UNDP/UNCDF/UNV staff holding temporary appointments (TA), personnel on regular PSA contracts, and Expert and Specialist UN Volunteers - Tier 3 or no tier ...
¡Únete al equipo de SII Group Spain y ayúdanos a impulsar la transformación digital e innovación! Queremos incorporar a nuestro equipo un/a IT Risk & Cyber Security Analyst para uno de nuestros proyectos de referencia dentro del sector de seguridad bancaria. Si estás buscando nuevas oportunidades donde crecer profesionalmente, ...
About the role Gartner Analysts are industry thought leaders who create must-have insights, market predictions and best practices for a broad range of world-leading organizations. A Director, Analyst serves as a leader within Gartner's Business and Technology Insights (BTI) group, establishing oneself as a credible voice ...
... make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build. Protecting your privacy and the security of your data is a longstanding top priority for Amazon. Please consult our Privacy Notice ( https://jobeax.com/link/WoWKl6Kf5X2SV6lk ) to know more about how ...
... full-time role, reporting to the SOC Manager within a team of 15-20 L1 Analysts. Your responsibilities will be: General responsibilities Monitor and triage security alerts generated by SIEM, EDR/XDR, firewalls, ICS/OT, and other security technologies to determine if further investigation or customer action is warranted. ...
Roche is seeking a Threat & Vulnerability Analyst (Product Security) in Spain to perform end-to-end security assessments on product components and software stacks. The role emphasizes automation of SBOM vulnerability workflows and AI-augmented security approaches, with reporting to engineering, product, and leadership teams. ...
... business, etc.) - Strong familiarity with creating ERPs Security Roadmaps and Performance Metrics preferred - An ability to articulate the role application security technology plays in delivering business value - Experience in organizing and leading application security teams (i.e., location of work, roles & responsibilities, ...
... on-call rotation and post-incident activities - Create and maintain security documentation and runbooks - Contribute to the security roadmap for improving security controls - Strengthen Zero Trust architecture and least privilege access controls - Enhance security monitoring and anomaly detection - Perform security reviews ...
What you'll do Your Role As a Security Engineer , you will take ownership of protecting our product, our users, and our collaborators as we scale a fast-growing AI companionship platform. You'll work hands-on across application security, risk & compliance, and security awareness (plus keeping an eye on AI-specific threats ...
About the role Your Role As a Security Engineer , you will take ownership of protecting our product, our users, and our collaborators as we scale a fast-growing AI companionship platform. You'll work hands-on across application security, risk & compliance, and security awareness (plus keeping an eye on AI-specific threats ...
... security services - Contribute to KPI, KRI and SLA metrics reporting for security programs - Lead capacity monitoring design and automation for scaling enterprise security platforms What we're looking for - Extensive hands-on experience in security engineering and cybersecurity architecture within enterprise environments - Proven ...
... offers the opportunity to work on meaningful projects that directly impact our security posture and collaborate with a skilled team passionate about information security. In more details: We ingest the security telemetry that the whole security org runs on. In this role you'll get that telemetry into Elasticsearch consistently ...