We’re looking for Semi-Senior and Senior SOC Tier 2 Security Analysts to join our cybersecurity operations team supporting a U.S.-based client.
This role is focused on providing security coverage outside U.S. Eastern Time business hours, monitoring, investigating, and responding to security incidents across Microsoft security environments.
What you’ll do
• Monitor, investigate, and respond to security incidents using Microsoft Sentinel and Microsoft Defender XDR.
• Analyze and triage security alerts and determine appropriate escalation paths.
• Work with Defender for Endpoint (EDR), Office 365 and Identity.
• Investigate identity-related incidents within Microsoft environments.
• Use KQL, Advanced Hunting and Log Analytics for investigation and threat analysis.
• Support incident response and ensure continuity of security operations during off-hours.
What we’re looking for
• Hands-on experience with Microsoft Sentinel.
• Hands-on experience with Microsoft Defender XDR, particularly Defender for Endpoint, Office 365 and Identity.
• Previous experience in a SOC or Security Operations environment:
– 2+ years for Semi-Senior profiles
– 3+ years for Senior profiles
• Professional English (C1 or above) and Spanish.
• Availability to work off-hours covering U.S. Eastern Time, including nights, weekends and holidays according to the assigned schedule.
Nice to have
• Defender for Cloud Apps / Defender for Cloud.
• Strong KQL skills.
• Microsoft Entra ID incident response experience.
• Certifications such as SC-200, SC-300 or AZ-500.
Practical experience matters more to us than certifications alone.
Why join us?
You’ll work in an international cybersecurity environment with exposure to multiple technologies and security platforms, including Microsoft, CrowdStrike, Fortinet, Palo Alto Networks, Splunk and Cisco.
We actively support continuous learning and professional certifications, with potential career paths toward Tier 3, Threat Hunting, Incident Response, Detection E