Job Description
Development of use cases and detection rules.
Assisting in the conception and design of detection strategies.
Collaboration with the SOC for use case validation and acceptance.
Refinement and optimization of existing detection rules.
Creating dashboards and reports for customers or the internal SOC.
Contributing to internal knowledge sharing and process development.
Qualifications
2–5 years of professional experience in SIEM/SOC, IT security, or threat detection.
Familiarity with frameworks like MITRE ATT&CK, Cyber Kill Chain, and IOC-based detection.
Knowledge of log data analysis, attack detection, SIEM, or security monitoring.
Proficiency in at least one scripting, query, or programming language (e.g., Python, PowerShell, KQL, Lucene).
Ideally, experience in developing detection use cases in Elastic SIEM, Palo Alto XSIAM, or comparable systems.
Analytical thinking and problem-solving skills.
Self-organization and a disciplined approach to documentation.
Very good written and spoken English skills
German skills are a plus but not necessary
Apply on company website Moldavská cesta, 040 11 Košice, Slovakia Remote (Country) Full-time EUR 1,850 - EUR 2,300 - monthly