Senior Cybersecurity Analyst

3 ore fa

Turbigo, Lombardy, Italia SmartRecruiters, Inc. Tempo pieno

Senior Cybersecurity Analyst - (Cyber Defense Operations)

  • Full-time
  • Contract Type: Long term contract

Company Description

Talan is an international consulting group specializing in innovation and business transformation through technology. With over 7,200 consultants in 21 countries and a turnover of €850M, we are committed to delivering impactful, future-ready solutions.

Talan at a Glance

Headquartered in Paris and operating globally, Talan combines technology, innovation, and empowerment to deliver measurable results for our clients. Over the past 22 years, we’ve built a strong presence in the IT and consulting landscape, and we’re on track to reach €1 billion in revenue this year.

Our Core Areas of Expertise

  • Data & Technologies: We design and implement large-scale, end-to-end architecture and data solutions, including data integration, data science, visualization, Big Data, AI, and Generative AI.
  • Cloud & Application Services: We integrate leading platforms such as SAP, Salesforce, Oracle, Microsoft, AWS, and IBM Maximo, helping clients transition to the cloud and improve operational efficiency.
  • Management & Innovation Consulting: We lead business and digital transformation initiatives through project and change management best practices (PM, PMO, Agile, Scrum, Product Ownership), and support domains such as Supply Chain, Cybersecurity, and ESG/Low-Carbon strategies.

We work with major global clients across diverse sectors, including Transport & Logistics, Financial Services, Energy & Utilities, Retail, and Media & Telecommunications.

We’re looking for a Senior Cybersecurity to join a global Cybersecurity Operations team responsible for protecting critical environments and supporting international organizations against evolving cyber threats.

You’ll be part of a 24x7 Security Operations Centre (SOC), working with cybersecurity specialists across the world to monitor, investigate and respond to security incidents. This is a hands‑on role where your technical expertise will directly contribute to improving threat detection, incident response and overall security.

What will you do?

  • Monitor, triage and investigate security alerts across SIEM, EDR, Microsoft Security and cloud environments.
  • Investigate potential cyber threats and security incidents, identifying root causes and appropriate remediation actions.
  • Analyze logs from Windows, Linux, databases, applications, web servers, firewalls and network security systems.
  • Work closely with Incident Response teams and cybersecurity specialists to contain and resolve threats.
  • Use and maintain security monitoring and detection tools, helping improve detection quality and reduce false positives.
  • Prepare clear security reports, incident summaries and technical findings for clients.
  • Manage security-related tickets and ensure incidents are properly documented.
  • Contribute to improving SOC processes, procedures, documentation and knowledge bases.
  • Work directly with clients to understand their environments and optimize security monitoring.
  • Stay up to date with emerging threats, technologies and cybersecurity best practices.

What are we looking for?

We’re looking for someone who combines strong technical skills with a proactive and collaborative mindset.

  • 5+ years of experience in IT, Cybersecurity or Security Operations.
  • Hands‑on experience working in a SOC environment, including security alert triage and incident investigation.
  • Strong knowledge of SIEM and EDR technologies.
  • Experience with platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight or ELK.
  • Experience with Microsoft Security technologies, including Defender for Endpoint, Microsoft 365, Sentinel, Azure Security and XDR.
  • Strong understanding of Azure, AWS and/or GCP.
  • Experience with at least one EDR solution, such as Microsoft Defender for Endpoint or CrowdStrike.
  • Strong knowledge of networking and TCP/IP.
  • Excellent experience analyzing security logs across Windows and Linux environments.
  • Knowledge of email security, network monitoring and incident response.
  • Experience managing and processing security tickets.
  • Excellent spoken and written English.

It would be a plus if you have:

  • Experience working in an Incident Response team, particularly Tier I/II.
  • Experience monitoring AWS environments, including IaaS, PaaS and SaaS.
  • Scripting experience with Python, PowerShell, Bash, Ruby or similar.
  • Cyberse