FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Operations Analyst – SIEM, Threat Detection
Pragmatike. Develop, implement, validate, tune, and maintain security monitoring and detection capabilities .
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityGoogle Cloud PlatformLinuxMacOSPythonRubySplunk
About the role
Key responsibilities & impact- Develop, implement, validate, tune, and maintain security monitoring and detection capabilities
- Administer and optimize SIEM platforms across multiple customer environments
- Manage security detection rules and use cases throughout their lifecycle
- Onboard, integrate, test, and validate new security data sources and telemetry feeds
- Review and improve detection logic, security content, and monitoring configurations
- Collaborate with Threat Intelligence and Incident Response teams to translate threats into actionable detection capabilities
- Support cybersecurity architecture reviews and provide recommendations to improve security monitoring
- Build and maintain security metrics, dashboards, KPIs, and service-performance reports
- Evaluate detection effectiveness and identify opportunities to reduce false positives
- Contribute to quality assurance, process reviews, control validation, and corrective actions
- Maintain SOC procedures, standards, documentation, knowledge bases, and operational guidance
- Prepare technical reports, findings, and recommendations for internal and external stakeholders
Requirements
What you’ll need- 5+ years of relevant IT/cybersecurity experience
- Hands-on experience administering a SIEM platform, ideally Splunk or Microsoft Sentinel
- Strong experience with SIEM/EDR environments and technical security analysis
- Deep knowledge of Microsoft Security technologies
- Strong cloud security knowledge across Azure, AWS, and/or GCP
- Experience with Splunk, QRadar, ArcSight, Microsoft Sentinel, or ELK
- Experience with at least one EDR platform such as Microsoft Defender for Endpoint or CrowdStrike
- Knowledge of email security, network monitoring, and incident response
- Strong Linux, macOS, and Windows knowledge
- Fluent English with excellent written and verbal communication skills
- Experience designing SIEM architecture from initial design through implementation
- Experience building data-ingestion pipelines for diverse cloud and on-premise log sources
- AWS security monitoring experience
- Scripting experience with Python, PowerShell, Bash, Ruby, or similar
- Security certifications such as SC-200, GCIH, CEH, GCFA, GIAC, CCNA, or MCSE
- Experience working across multiple customer environments
Benefits
Comp & perks- Full-time contract for 6 months, with potential extension
- Exposure to large-scale SIEM, EDR, cloud, and threat-detection environments
- Direct collaboration with Threat Intelligence, Incident Response, and Cybersecurity Operations teams
- Work on cybersecurity services supporting multiple international organizations
- Fair, transparent, and inclusive recruitment process