Home> Security Operations Center Analyst

Senior SOC analyst

NEVERHACK Estonia is a leading managed security service provider (MSSP), offering a comprehensive range of services, such as security event monitoring, incident response, and vulnerability management. Together with NEVERHACK Group, we are becoming the biggest protector in Europe. With over 100 customers, ranging from governmental agencies to start-ups to multinational corporations, our team delivers security in our turbulent times.

Security Operations Center Analyst

Job responsibilities

As part of our security operations team (SOC), your primary responsibilities will include:
  • Responding to incoming customer incidents and security events based on initial triage
  • Reviewing logs, alerts, and external data sources to assess impact on security and/or operations
  • Communicating directly with clients and providing timely, professional support
  • Investigating security incidents using in-house and open-source tools
  • Developing and improving security detections, processes, and solutions
  • Working with modern security technologies, including SIEM, XDR, NDR, and SOAR platforms
  • Conducting network, system, and security audits
  • Managing incidents in accordance with established principles, procedures, and playbooks
  • Supporting, troubleshooting, configuring, and managing a variety of cybersecurity tools
  • Creating clear and accurate reports for clients
  • Working in a shift-based schedule, including occasional work outside regular business hours (8:30-17:00, 21:00-9:00, 14:00-22:00), including night shifts

Who we’re looking for?

These exciting challenges require a special type of professional – someone with a positive attitudestrong work ethic, and a passion for technology and security.
We are committed to your growth and will provide training, mentorship, and continuous skill development to help you succeed in the role.

Required qualifications

  • Experience analyzing and investigating security alerts
  • Solid understanding of the MITRE ATT&CK framework
  • Understanding of the role and value of Threat Intelligence
  • Knowledge of cybersecurity principles, tools, and technologies
  • Very good command of English (written and spoken)
  • Strong communication and documentation skills

Nice to have skills include:

  • Work experience and/or a degree in cybersecurity or a related field
  • Familiarity with SIEM, XDR, NDR, SOAR solutions
  • Working knowledge of TCP/IP and network traffic analysis
  • Programming or scripting skills
  • Experience with HacktheBox , TryHackMe , Rangeforce platforms
  • Networking certifications such as Network+, CCNA
  • Security certifications such as Security+

What do we offer?

  • Flexible working hours and hybrid work opportunities
  • A modern, well-equipped office with complimentary snacks and beverages
  • Five additional days of paid vacation after your first year with us
  • A choice between sports compensation or private health insurance
  • Free on-site parking
  • Development and growth opportunities

Are you ready to join the best cybersecurity team in Northern Europe? Send your application via CV.ee.

The confidentiality of all candidates will be guaranteed.