Senior Detection/Automation Engineer - Security DC (f/m/d) @ A1 Competence Delivery Center
София, ул. Кукуш 1, сграда 7, етаж 4, Bulgaria
A1 Telekom Austria Group
A1 Competence Delivery Center (CDC) is a vital component of A1’s telecommunications business. Acting as an expertise hub, CDC is dedicated in delivering full range of high-quality IT, network, financial and other services to support A1’s operations across all OpCos, independent of location.
Using the power of being OneGroup and leverage synergies, CDC enables transparency of resources, key skills and knowledge expansion and personal career growth opportunities’ enhancement, paired with job stability.
We are expanding the IT Services Division of the A1 Competence Delivery Center. Be part of this exciting journey!
Aleksandar Mirkovic is looking for a new member for his team.
Role insights
- Manage conception, research and development of detection of use-cases within the existing SIEM-System.
- Be responsible for proper testing, documentation follow up, and initiating continuous improvement of automation playbooks in SOAR.
- Be aware of specific logging requirements, develop logging concepts and rulesets (Sysmon, Auditd, ...).
- Take part in designing attack-detection system, together with responsible teams.
- Grasp the technical detail, as well as the strategic thinking necessary for driving technology-based business transformation.
- Act as a resourceful problem solver, experienced in networking and collaborating within the organization.
- Develop reports, dashboards and security relevant content.
What makes you unique
- BSc or MSc in Information Security, Computer Science, Engineering, or similar
- relevant security certifications.
- Knowledge in state-of-the-art IT cybersecurity architectures, hardware, and software implementations for large organizations, using either enterprise based and/or cloud-based environments.
- Advanced experience in programming with Python or similar program languages.
- Vast knowledge of Splunk and security specific frameworks (e.g. Mitre).
- Knowledge of cloud services (technically and functionally), especially M365 and MS Azure & -Security Modules, is a plus.
- Experience with various forensics and security tools, as well as evaluation of log files for the analysis of attacker behavior, is a plus.
- Interest in identifying cybersecurity gaps in IT network and systems designs or implementations, and in recommending mitigation strategies to address the identified gaps.
- Strong analytical and problem-solving skills with the capability to identify solutions to unusual and complex problems.
- Fluency in English language.
Our gratitude for the job done will be eternal, but we’ll also offer you:
- Innovative technologies and platforms to “play” with;
- Modern working environment for your comfort;
- Friendly, ambitious, and motivated teammates to support each other;
- Thousands of online and in-person learning opportunities to grow;
- Challenging assignments and career development opportunities in multinational environment;
- Attractive remuneration package;
- Flexible working schedule and opportunity for home office;
- Numerous additional goodies, including, but not limited to free A1 services, discounts, health insurance and services, sports center, childcare, team and family events, etc.
Not sure yet? See us in action in our A1 Blog.
Any questions? Contact Gergana Tsvyatkova
Sounds good? Apply now!
Deadline for application: 18 February 2025
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation Azure Cloud Computer Science Forensics Log files Python SIEM SOAR Splunk
Perks/benefits: Career development Flex hours Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.