Information Security Professional

Descrição do trabalho

Job Title: Cybersecurity Engineer

We're a team of fast learners, hard workers and natural collaborators. Our ambition is to unlock the potential of our digital world so that organisations everywhere can innovate and thrive securely.

Our goal is to achieve this by bringing together talented people and powerful technologies, combining them to address our customers' challenges and build something stronger together.

  • As a Cybersecurity Engineer at our organization, you will be based in Lisbon or Porto. Your responsibilities include:
  • Designing, implementing and maintaining use cases and automated playbooks on platforms like Cortex XSOAR, Microsoft Sentinel and FortiSIEM.
  • Monitoring and analyzing security alerts from SIEM platforms, ensuring effective and timely response.
  • Correlating and investigating logs from multiple sources to identify malicious patterns and potential incidents.
  • Developing automation scripts and integrations to speed up incident response.
  • Continuously optimizing workflows to reduce false positives and improve response efficiency.
  • Documenting incident response procedures and contributing to the team knowledge base.
  • Accompanying and training junior SOC analysts in best practices and automation technologies.
  • Participating in post-incident analysis and contributing to identifying root causes and improving processes.
  • Key qualifications include:
  • A degree level 4 or higher in IT, Computer Science, Security or equivalent professional experience.
  • Minimum of 3 years' experience in SOC environments or security operations.
  • At least 1 year of practical experience with SOAR platforms.
  • Proficiency in scripting languages: Python, PowerShell or Bash.
  • Good understanding of incident response frameworks, threat detection and security monitoring.
  • Knowledge of and practical experience with Palo Alto Cortex XSOAR, Microsoft Sentinel and FortiSIEM.
  • Benefits include:
  • Experience with other automation tools, such as Elastic Security (Elastic SIEM), Tines, DFLabs IncMan, Siemplify (Chronicle SOAR) and Swimlane.
  • Familiarity with integrations via REST APIs.
  • Knowledge of the MITRE ATT&CK Framework and good technical documentation practices.
  • Relevant certifications, including Palo Alto Cortex XSOAR Certified Automation Engineer, Microsoft SC-200: Security Operations Analyst Associate, Fortinet NSE 5 - FortiSIEM, Elastic Certified Analyst, Swimlane Certified SOAR Developer and Tines Automation Specialist.

Workplace: Lisbon/Porto (Hybrid)