.
Senior SOC Engineer
  • Warsaw
Senior SOC Engineer
Warszawa, Warsaw, Masovian Voivodeship, Polska
The Stepstone Group Polska sp. z o.o.
5. 11. 2024
Informacje o stanowisku

technologies-expected :


  • Python

about-project :


  • As a Senior SOC Engineer you will be responsible for monitoring, analysing and responding to security threats, using tools like SIEM and EDR platforms.
  • Youll lead the team in incident detection and response efforts, ensuring swift containment and recovery. Your role involves automating security workflows using Python to enhance efficiency and leveraging the MITRE ATT&CK framework to map and analyse threats and create a staged visualization of the relevant attacks that potentially will materialize.
  • You will play a vital role as we reimagine the labour market to make it work for everybody.

responsibilities :


  • Analyse security data from diverse sources, including logs, EDR solutions, and network traffic, to identify and assess threats. Coordinate and lead security incident response efforts, including containment, eradication, and recovery.
  • Develop and implement automation scripts and playbooks using Python to streamline incident detection, response, and reporting processes.
  • Automate security alert triage, enrichment, and remediation workflows to reduce response time and improve efficiency.
  • Use the MITRE ATT&CK framework to classify attack vectors, understand adversary behaviour, and enhance detection capabilities.
  • Map security incidents and alerts to the MITRE ATT&CK tactics, techniques, and procedures (TTPs) for comprehensive analysis. Manage and configure EDR platforms for real-time endpoint monitoring and protection.

requirements-expected :


  • 5+ years of experience in a Security Operations Center (SOC) or similar role with hands-on experience with SIEM tools (e.g., Sentinel, QRadar, ArcSight).
  • Proficient in Python for automation and scripting.
  • Strong understanding of Incident Response processes and methodologies and experience with MITRE ATT&CK framework to map and analyse threats.
  • Knowledge of Endpoint Detection and Response (EDR) platforms (e.g., CrowdStrike, Carbon Black, SentinelOne). Familiarity with threat hunting techniques and processes.
  • Certifications such as GSEC, CISSP, OSCP, MaD are preferred.

offered :


  • We’re a community here that cares as much about your life outside work as how you feel when you’re with us. Because your job shouldn’t take over your life, it should enrich it. Here are some of the benefits we offer:
  • 29 days holiday allowance + bank holidays
  • Private medical and dental healthcare
  • Pension contribution up to 10%
  • Training and development opportunities
  • Cycle to work scheme
  • In house Barista
  • Hybrid working model
  • Volunteering days
  • and you can bring your dog to the office!

benefits :


  • private medical care
  • life insurance
  • remote work opportunities
  • flexible working time
  • integration events
  • dental care
  • corporate library
  • no dress code
  • video games at work
  • parking space for employees
  • leisure zone
  • redeployment package
  • employee referral program
  • charity initiatives
  • Hackathons, Knowledge Sharing Hours
  • in-house projects

  • Praca Warszawa
  • Warszawa - Oferty pracy w okolicznych lokalizacjach


    91 741
    16 249