Description
**THE DIGITAL EVOLUTION COMPANY OF TODAY AND TOMORROW**
**Lutech Sweeft** is a technological benchmark and a strategic innovation driver in Digital, Data, and AI within the Iberian market. As part of the Lutech Group, we combine our recognition as *Google Cloud Partner of the Year 2024* with over 30 years of experience as an *SAP Gold Partner*. We design comprehensive solutions that transform complex organizations into intelligent, data-driven enterprises—from building AI-ready infrastructures to optimizing critical systems.
Join us to accelerate the path toward actionable intelligence and generate measurable global impact.
**Position:**
-----------
We are seeking a **Junior Cybersecurity Engineer** to support the organization’s security operations by contributing to monitoring, detection, and incident response activities, with a clear growth trajectory toward specialized areas such as cloud security, penetration testing, or threat intelligence.
**Responsibilities**
* Monitor and prioritize security alerts in SIEM platforms (Google Chronicle/SecOps, Splunk, Microsoft Sentinel, or equivalents).
* Participate in incident management: perform initial prioritization, escalate as needed, and maintain complete documentation.
* Operate and maintain security tools: EDR/XDR solutions, vulnerability scanners, and SOAR platforms.
* Analyze logs and provide support during basic forensic investigations.
* Conduct vulnerability assessments on infrastructure and applications.
* Perform security reviews in cloud environments, primarily GCP and Google Workspace.
* Collaborate on phishing incident management and security awareness campaigns.
* Collaborate with engineering and operations teams to track and remediate security findings.
* Contribute to system and service hardening initiatives.
**Requirements:**
---------------
**Technical Requirements**
* Solid understanding of information security fundamentals: **networks (TCP/IP, DNS, firewalls), operating systems, and application security.**
* Practical experience or formal training with at least one **SIEM platform** (Chronicle/SecOps, Splunk, Elastic Security, or similar).
* Familiarity with **EDR/XDR tools** and the incident lifecycle (detection, containment, eradication, recovery).
* Basic knowledge of vulnerability assessment using tools such as **Nessus, OpenVAS, or equivalents.**
* Basic knowledge of cloud environments, preferably **GCP and Google Workspace.**
* Basic programming skills in **Python or Bash** for task automation.
**Additional Information:**
---------------------
* Possibility of signing a university agreement.
* Madrid, Barcelona, Seville, or Oviedo — hybrid work model.
\#LI\-LV1