dev.bg

Level 2 Security Analyst_24x7 Shifts

HCLTech · София · Mid

8 октомври 2026 г.
Публикувана
9 октомври 2026 г.
Последно видяна
Активна
Статус
1 ден
Отворена от

Умения

threat intelligenceincident responsenetwork securitythreat huntingMITRE ATT&CKDefenderSIEMEDRIDS

Описание

HCLTech is a global technology company, home to more than 226,000+ people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending December 2025 totaled $14.5 billion. At HCLTech, you’ll supercharge your potential. You’ll find your career. And you’ll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

Job Summary:

We are seeking a dedicated and highly skilled Level 2 Security Analyst to join our dynamic security team. The successful candidate will be responsible for real-time monitoring, investigation, and response to identity-based and endpoint security threats using Microsoft Defender for Endpoint (MDE). This role demands 24/7 support coverage and close collaboration with global security teams to ensure rapid threat detection, containment, and remediation within a fast-paced environment.

Key Responsibilities:

  • Perform continuous monitoring, detection, and analysis of security alerts across identity, endpoint, and network environments.
  • Investigate security incidents with a focus on false positives, alert validation, and root cause analysis to minimize risk exposure.
  • Collaborate with global security operations teams to coordinate threat containment, remediation strategies, and post-incident analysis.
  • Utilize SIEM platforms effectively to identify, analyze, and escalate potential threats; refine detection rules and use cases based on trending and feedback insights.
  • Conduct advanced event triage, log analysis, and threat hunting activities to uncover complex security threats.
  • Generate detailed incident reports, monthly trend analyses, and security summaries to inform stakeholders and drive continuous improvement.
  • Support and enhance SIEM and EDR tool configurations, detection content, and incident workflows.
  • Provide expert-level feedback to detection engineering teams to optimize security content and improve detection accuracy.
  • Maintain up-to-date knowledge of emerging threats, attack techniques, and industry best practices, including familiarity with frameworks such as MITRE ATT&CK.
  • Foster a proactive security culture by recommending and implementing threat mitigation and prevention strategies based on lessons learned.

Candidate Profile:

  • Extensive hands-on experience managing complex network environments and security infrastructures.
  • Proven expertise in continuous SIEM monitoring, alert validation, and cross-source event correlation.
  • Strong analytical skills, with the ability to enhance detection logic, reduce false positives, and improve operational efficiency.
  • Experience with various SIEM tools, EDR platforms, IDS systems, and network security roles.
  • Familiarity with threat intelligence frameworks such as MITRE ATT&CK and threat hunting methodologies.
  • Knowledge of network, system, and endpoint security disciplines, combined with incident response capabilities.
  • Demonstrated ability to produce comprehensive security reports, including trending and incident summaries.
  • Self-motivated, proactive, and innovative with excellent teamwork and communication skills.
  • Willingness to work in a 24/7 operational environment, including occasional travel as required.

Soft Skills:

  • Excellent verbal and written communication skills, capable of articulating technical findings to both technical and non-technical audiences.
  • Strong analytical mindset with a continuous improvement approach.
  • Client-facing presentation skills for technical analysis reports and security briefings.
  • Adaptability to shift work and collaborative in cross-functional team settings.

What we offer:

  • Food vouchers and social benefits package
  • Opportunity for career progression
  • Young and vibrant team environment
  • Competitive salary and performance bonuses
  • Professional on-boarding and on-going trainings

Are you willing to build up your career with us? – We’ll be happy to receive your resume in English!

*Your personal data is secure with us.

** Only candidates selected for interview will be contacted

HCLTech is committed to protecting and securing the privacy and confidentiality of the Personal Data which it collects directly or indirectly from you when applying for a job at HCLTech either directly or through a third-party human resources agency. This notice (the “Notice”) outlines and explains how HCL Technologies Limited including its subsidiaries, local employing entities, associates, and affiliated companies [collectively referred to as “HCLTech”, “us,” “our”, or “we”] will process your Personal Data in accordance with applicable privacy legislation(s).

История на обявата

  • 9 октомври 2026 г.Появи сеобхождане

Очаквано възнаграждение

Обявата не посочва заплата. Оценката по-долу е за SOC Analyst / Threat Hunter на ниво Mid според бенчмарка на CSF.BG — не е предложение на работодателя.

€1,400 – €2,500нето/месец · 2 – 5 години опит
Средно търсене·Всички нива за ролята

Само 2 обяви за тази роля и ниво публикуват заплата — твърде малко за средна стойност.

Знаеш колко се плаща за такава роля? — анонимно, за да станат тези числа по-точни.