Security Operations Engineer
Tech Stack / Keywords
Wymagania
- 2+ years in a security operations, SOC, or similar role
- Experience with at least one SIEM platform (e.g., Elastic SIEM, Splunk, Datadog Security, Microsoft Sentinel)
- Experience with alert triage, log analysis, and basic threat hunting
- Familiarity with the MITRE ATT&CK framework for incident classification
- Experience with at least one EDR platform (e.g., CrowdStrike Falcon, SentinelOne, Wazuh)
- Experience with vulnerability scanning tools (e.g., Nessus, OpenVAS, Qualys)
- Working knowledge of AWS or GCP security controls (e.g., Security Groups, IAM, CloudTrail, GuardDuty)
- Operational-level Windows and Linux administration (e.g., log analysis, process inspection, basic system hardening)
- Familiarity with containerized environments (Docker, Kubernetes) from a security perspective
- Experience supporting SOC 2 or ISO 27001 audits
- Ability to write clear incident reports, runbooks, and policy documentation
- Experience with access review processes and IAM audits
- Scripting proficiency in Bash or Python for operational automation (e.g., log parsing, report generation)
Obowiązki
- Monitor and triage security alerts from SIEM, EDR, and cloud security tools
- Investigate security incidents, contain threats, and contribute to post-incident reviews
- Maintain and tune detection rules to improve signal quality and reduce false positives
- Track and coordinate vulnerability remediation across infrastructure and services
- Perform access control reviews, privileged account audits, and maintain IAM hygiene
- Maintain security runbooks, playbooks, and incident response documentation
- Support SOC 2 and ISO 27001 audits, including evidence collection, control validation, and gap remediation
- Conduct scheduled internal security assessments and assist with penetration test scoping
- Collaborate with DevOps on system and cloud configuration hardening
Benefity
- Competitive salary
- Remote-first, async-friendly team
- Dedicated budget for security tooling and training
- Clear growth path toward Senior SecOps or DevSecOps Engineer, with increasing ownership of detection engineering, automation, and security architecture
Inne informacje
Please be informed that the data controller is FUN CRAFTERS sp. z o.o., ul. Promienistych 1, 31-481 Kraków (hereinafter "controller"). You have the right to request access to your personal data, their rectification, erasure or restriction of processing, the right to object to processing, as well as the right to data portability and to lodge a complaint to the supervisory authority. Personal data will be processed for the purpose of the recruitment process. Provision of data to the extent resulting from the Act of 26 June 1974 Labour Code is mandatory. In the remaining scope, providing data is voluntary. Refusal to provide mandatory data may result in the impossibility to carry out the recruitment process. The Administrator processes mandatory data on the basis of a legal obligation incumbent upon him/her, while with regard to additional data, the basis for processing is consent. Personal data will be processed until the recruitment procedure is completed and for the period of the possibility of asserting potential claims, and in the case of consent to participate in future recruitment procedures - until the withdrawal of such consent. Consent to the processing of personal data can be withdrawn at any time. The recipient of the data is the Just Join IT service and other entities to whom we have entrusted the processing of data in connection with recruitment.
FUN CRAFTERS SP. Z O O.
7 aktywnych ofert