




Job Summary: An SOC Level 2/3 Analyst will ensure second- and third-level technical response to critical security incidents within 24x7 managed services. Key Highlights: 1. Technical response to critical security incidents 2. Advanced analysis (memory, network, endpoint, XDR) 3. Professional development in cybersecurity through cutting-edge projects At **Logicalis Spain**, we are seeking an **SOC Level 2/3 Analyst** to join our **Cybersecurity Business Unit**. The selected candidate will ensure second- and third-level technical response to critical security incidents within **24x7 managed services**, acting as the technical escalation point during on-call shifts and providing advanced analytical support to Level 1 teams. **Responsibilities:** * Handle critical incidents outside regular working hours under a rotating on-call model. * Perform advanced analysis (memory, network, endpoint, XDR). * Act as the technical point of contact with the client during critical situations. * Coordinate incident response actions with other SOC levels. * Produce clear and concise technical reports for high-impact incidents. * Support the Level 1 team in resolving complex queries when required. * Propose containment, eradication, and recovery measures. * Actively participate in internal SecOps coordination meetings. **Technical Requirements:** * Minimum 3 years of experience in an SOC as a Level 2/3 analyst, incident responder (IR), or cyber intelligence analyst. * Advanced knowledge of XDR and SIEM, especially Palo Alto Cortex XSIAM. * Familiarity with endpoint & email protection tools. * Experience with behavior-based threat hunting. * Proficiency in writing and executing queries. * Practical experience in malware analysis, network traffic analysis, and log analysis. * Knowledge of frameworks such as MITRE ATT&CK and NIST. **Desirable Requirements:** * Experience with solutions including Palo Alto XSIAM, Trend Vision One, and Microsoft Sentinel. * *Certifications* such as: GCIA, GCIH, GCFA, eCTHP, Palo Alto, Trend Micro, Microsoft SC-200. * Knowledge of SOAR-based response automation and scripting (Python, PowerShell). **What do we offer at Logicalis Spain?** Logicalis Spain is an international group with over 20 years of experience in the IT sector, delivering large-scale projects and services across Data Centers, Cybersecurity, and Analytics. * 100% remote work model. * Availability to join a 24x7 rotating on-call model (two weeks per month). * Compressed workweek every Friday, and during July and August. * Birthday holiday + personal day. * Access to flexible compensation plans (meal card, transport card). * Private medical insurance, Wellhub. * Significant discounts on various services and training programs available to Logicalis employees (retail, electronics, travel, etc.). * Role-specific training and certifications. * Professional development through cutting-edge projects and current market technologies.


