Remote Jobs RockRemote Jobs Rock

SecOps Specialist

🕒 3 days ago
SIEMSOARCyber AnalysisIncident Response

📜 Description

  • Develop, test, tune, and maintain SIEM detection rules, correlation logic, dashboards, and alert thresholds.
  • Integrate security tools and services using APIs, webhooks, scripts, and automation platforms.
  • Analyze logs and telemetry to identify suspicious or malicious activity, assess impact, and determine the appropriate response.
  • Monitor, triage, and investigate security alerts from various security platforms.
  • Build and enhance SOAR playbooks to automate alert enrichment and incident response.

🛠️ Requirements

  • 1-2 years of hands-on experience in Security Operations, SOC, Cyber Analysis, Incident Response, or Detection Engineering.
  • Practical experience operating and maintaining SIEM platforms, including log onboarding and developing detection rules.
  • Excellent written and verbal communication skills for documentation and reporting in English.
  • Experience analyzing security telemetry from systems such as EDR, Windows and Linux, cloud environments, and firewalls.
  • Strong understanding of common attack techniques, the cyber kill chain, and the MITRE ATT&CK framework.
Full job description

We are seeking a hands-on SecOps Specialist with strong SIEM/SOAR and Cyber Analyst capabilities.
You will work closely with SOC analysts, IT, cloud, infrastructure, and engineering teams to improve security visibility, reduce response times, and continuously enhance the organization’s cyber resilience.
The ideal candidate combines strong analytical and investigative capabilities with practical experience in security monitoring, log analysis, detection engineering, scripting, and security-tool integrations.

Mobileye changes the way we drive, from preventing accidents to semi and fully autonomous vehicles. If you are an excellent, bright, hands-on person with a passion to make a difference come to lead the revolution!

What will your job look like:

  • Develop, test, tune, and maintain SIEM detection rules, correlation logic, dashboards, and alert thresholds.

  • Integrate security tools and services using APIs, webhooks, scripts, and automation platforms.

  • Analyze logs and telemetry to identify suspicious or malicious activity, assess impact, and determine the appropriate response.

  • Monitor, triage, and investigate security alerts from SIEM, EDR, cloud, identity, email, and network-security platforms.

  • Build and enhance SOAR playbooks to automate alert enrichment, investigation, case management, notifications, and approved containment actions.

  • Validate SIEM data coverage, log quality, parsing, ingestion health, and retention across security-relevant systems.

  • Collaborate with IT, cloud, infrastructure, identity, network, and engineering teams to contain incidents and drive remediation.

  • Create and maintain incident-response runbooks, investigation guides, detection documentation, and automation procedures.

  • Translate investigation findings and post-incident lessons learned into improved detections, automation workflows, and security controls.

  • All you need is:

  • 1-2 years of hands-on experience in Security Operations, SOC, Cyber Analysis, Incident Response, or Detection Engineering - Must.

  • Practical experience operating and maintaining SIEM platforms, including log onboarding, parsing, developing and tuning detection rules and alerting use cases - Must

  • Excellent written and verbal communication skills for documentation and reporting in English.

  • Experience analyzing security telemetry from different systems such as EDR, Windows and Linux systems, identity services, cloud environments, email-security tools, firewalls, DNS, proxy, VPN, and network devices.

  • Strong understanding of common attack techniques, the cyber kill chain, and the MITRE ATT&CK framework.

  • Proficiency in SIEM query languages such as KQL or SQL - Advantage

  • Experience with scripting or automation using Python, PowerShell, Bash, REST APIs, JSON, or webhooks - Advantage.

  • Familiarity with SOAR platforms and automation workflows for alert enrichment, investigation, case management, and response - Advantage.

  • Similar jobs

    Inetum2

    Técnico Junior Sistemas Middleware

    Inetum2👥 10,000+ employees🏢 Information Technology And Services
    📅 Aug 10

    Descripción de la empresa Inetum es líder europeo en servicios digitales. El equipo de 28.000 consultores y expertos de Inetum se esfuerza cada día por lograr un impacto digital en las empresas, en las entidades del sector público y en la.

    Middleware SupportApacheJbossWeblogic

    Trusted by Remote Workers