SOC Cyber Threat Architect
Ankara, TR
Vodafone
Vodafone is a leading technology communications company in Europe and Africa, keeping society connected and building a digital future. Find out more!What you’ll do
• Develop and maintain advanced threat detection scenarios using open-source and vendor-based tools.
• Deploy, configure, and manage security technologies, including SIEM, SOAR, SaST/DaST Tools.
• Automate incident response and security processes using scripting and programming languages such as Python, Bash, PowerShell, and Java.
• Conduct threat research and hunting, leveraging frameworks like MITRE ATT&CK and MITRE Shield.
• Manage and maintain SOC technologies and security processes, ensuring optimal performance and continuous improvement.
• Utilize threat intelligence services, malware sandboxes, and forensic tools to detect and analyze malicious activity.
• Develop, deploy, and manage security automation workflows in SOAR platforms to streamline incident response and SOC operations.
• Develop and implement detection engineering lifecycle tools and methodologies.
• Design and implement use cases, playbooks, and automation scripts for threat detection, enrichment, and response.
• Assess and enhance information security processes, recommending and implementing improvements.
• Collaborate with cross-functional teams to improve security posture and align security strategies with business objectives.
• Work within an Agile/Scrum environment (experience in Scrum is a plus).
Who you are
• Bachelor’s degree in Engineering, Computer Science, or a related field (preferably Electronics or Computer Engineering).
• 7+ years of experience in cybersecurity roles such as SOC engineering, incident response, security consulting, penetration testing, or red teaming.
• Strong knowledge of SIEM, SOAR, endpoint security, IDS/IPS, firewalls, and network security technologies.
• Expertise in threat modeling methodologies (e.g., STRIDE, PASTA, FAIR) and familiarity with cyber threat intelligence frameworks (MITRE ATT&CK, Cyber Kill Chain).
• Experience developing detection logic for SIEM platforms and responding to advanced threats.
• Experien
• Proficiency in log analysis, forensic artifact extraction, and investigation across Windows, Linux, and MacOS environments.
• Experience with API integrations to enhance automated security workflows.
• Strong understanding of cloud security controls, including AWS and SaaS architectures.
• Knowledge of global cybersecurity standards (NIST, ISO 27001/27002/27017/27018, GDPR, CVSS, CIS, OWASP Top 10).
• Certifications preferred: CISSP, CISM, OSCP, CEH, or equivalent.
• Excellent written communication skills, with the ability to document findings and provide risk-based remediation recommendations.
Not a perfect fit
Worried that you don’t meet all the desired criteria exactly? At Vodafone we are passionate about Inclusion for All and creating a workplace where everyone can thrive, whatever their personal or professional background. If you’re excited about this role but your experience doesn’t align exactly with every part of the job description, we encourage you to apply as you may be the right candidate for this role or another role, and our recruitment team can help you see how your skills fit in.
What's in it for you
We like to keep them flexible:
• Vflexy: Flexible Benefits Program
• Hybrid working kit
• Ergonomic kit allowance
• Digital meal voucher
• Flexible transportation allowance.
• Employee assistance hotline & counselling
• Comprehensive and flexible private health insurance
• Discounted price deals for wide range of products & services
Plus, plenty more to enjoy!
#LI-Hybrid
Data Privacy
By applying for this job, you accept the Vodafone Privacy Policy. Please visit Privacy Policy web page at https://careers.vodafone.com/privacy-policy/turkey/ for further details.
Who We Are
You may have already heard of Vodafone - We're a leading Telecommunications company in Europe and Africa. But what you might not know is that we are continuously investing in new technologies to improve the lives of millions of customers, businesses and people around the world, creating a better future for everyone.
As part of our global family, whether that's Vodafone, Vodacom or _VOIS, you'll feel a sense of pride and purpose as you contribute to our culture of innovation. We pursue equality of opportunity and inclusion for all candidates through our employment policies and practices.
Together we can.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile APIs Automation AWS Bash CEH CISM CISSP Cloud Computer Science CVSS Cyber Kill Chain DAST Endpoint security Firewalls GDPR IDS Incident response IPS ISO 27001 Java Linux Log analysis MacOS Malware MITRE ATT&CK Network security NIST OSCP OWASP Pentesting PowerShell Privacy Python Red team SaaS SAST Scripting Scrum SIEM SOAR SOC Threat detection Threat intelligence Threat Research Windows
Perks/benefits: Career development Flex hours Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.