Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Pragmatike

Security Operations Analyst – SIEM, Threat Detection

Pragmatike

. Develop, implement, validate, tune, and maintain security monitoring and detection capabilities .

Posted 9/25/2026contractRemote • SpainMid-LevelSeniorWebsite

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityGoogle Cloud PlatformLinuxMacOSPythonRubySplunk

About the role

Key responsibilities & impact
  • Develop, implement, validate, tune, and maintain security monitoring and detection capabilities
  • Administer and optimize SIEM platforms across multiple customer environments
  • Manage security detection rules and use cases throughout their lifecycle
  • Onboard, integrate, test, and validate new security data sources and telemetry feeds
  • Review and improve detection logic, security content, and monitoring configurations
  • Collaborate with Threat Intelligence and Incident Response teams to translate threats into actionable detection capabilities
  • Support cybersecurity architecture reviews and provide recommendations to improve security monitoring
  • Build and maintain security metrics, dashboards, KPIs, and service-performance reports
  • Evaluate detection effectiveness and identify opportunities to reduce false positives
  • Contribute to quality assurance, process reviews, control validation, and corrective actions
  • Maintain SOC procedures, standards, documentation, knowledge bases, and operational guidance
  • Prepare technical reports, findings, and recommendations for internal and external stakeholders

Requirements

What you’ll need
  • 5+ years of relevant IT/cybersecurity experience
  • Hands-on experience administering a SIEM platform, ideally Splunk or Microsoft Sentinel
  • Strong experience with SIEM/EDR environments and technical security analysis
  • Deep knowledge of Microsoft Security technologies
  • Strong cloud security knowledge across Azure, AWS, and/or GCP
  • Experience with Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK
  • Experience with at least one EDR platform such as Microsoft Defender for Endpoint or CrowdStrike
  • Knowledge of email security, network monitoring, and incident response
  • Strong Linux, macOS, and Windows knowledge
  • Fluent English with excellent written and verbal communication skills
  • Experience designing SIEM architecture from initial design through implementation
  • Experience building data-ingestion pipelines for diverse cloud and on-premise log sources
  • AWS security monitoring experience
  • Scripting experience with Python, PowerShell, Bash, Ruby, or similar
  • Security certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE
  • Experience working across multiple customer environments

Benefits

Comp & perks
  • Full-time contract for 6 months, with potential extension
  • Exposure to large-scale SIEM, EDR, cloud, and threat-detection environments
  • Direct collaboration with Threat Intelligence, Incident Response, and Cybersecurity Operations teams
  • Work on cybersecurity services supporting multiple international organizations
  • Fair, transparent, and inclusive recruitment process