hirq
← All jobs

SYNTEGON

Senior SOC Analyst

Terrassa, BARCELONA, ES · On-site · Full-time

Apply well, not just fast

Create a free account and upload your resume to get a match score, keyword gaps, a tailored resume, a cover letter and interview prep for this job.

About the role

Incident ResponsePythonA/B TestingCybersecurityCommunication
Syntegon Telstar S.R.U is a company belonging to the Syntegon Group, which operates worldwide with 7,300 colleagues at 49 locations in over 20 countries.is a company belonging to the Syntegon Group, which operates worldwide. As a brand specialising in the development of GMP consulting, engineering, construction and integrated process equipment projects, we serve companies linked to the life sciences market (pharmaceutical and biotechnology, healthcare, cosmetics, veterinary and food industries), as well as hospitals, laboratories and research centres. We also offer solutions using vacuum and high vacuum technologies for traditional and high-tech industries in the energy and aerospace sectors, as well as scientific experimentation. We are looking for a Senior SOC Analyst to join our team at our offices in Terrassa (Barcelona). In this Tier 3 role, you’ll lead the detection, triage, investigation, and response to complex security threats across the organization while serving as a key technical escalation point for critical incidents. You’ll also mentor junior analysts, improve SOC processes, strengthen detection and response capabilities, and help drive the continued maturity of our security operations. The ideal candidate brings deep knowledge of the threat landscape, strong incident response expertise, and a passion for building an effective, collaborative, and resilient SOC. Key Responsibilities - Lead the triage, investigation, and escalation of complex or high-severity security alerts across endpoint, network, identity, cloud, and application domains. - Drive end-to-end incident response for significant security events, coordinating across IT, Cloud, Identity, and business stakeholders and producing thorough incident reports with root cause analysis and remediation recommendations. - Conduct proactive threat hunts based on intelligence and known adversary TTPs, identifying detection gaps and working with the SOC Engineer to translate findings into improved detection content. - Leverage SOAR platforms to execute and refine automated response workflows, identifying repetitive tasks and escalating automation opportunities to the SOC Engineer. - Develop and maintain IR playbooks, runbooks, and SOPs, contributing to process improvements based on lessons learned and operational gaps. - Act as a coach and escalation point for Tier 1–2 analysts, contributing to training, knowledge sharing, and a culture of continuous learning. - Ensure incident handling aligns with relevant compliance requirements and maintain accurate, audit-ready case records and evidence documentation throughout the investigation lifecycle. Required Qualifications: - 4–6+ years in cybersecurity with 3+ years in a SOC analyst or incident response role. - Deep understanding of the incident response lifecycle with proven experience handling complex, multi-domain security incidents. - Strong knowledge of attacker TTPs, threat actor behaviour, and the MITRE ATT&CK framework. - Solid analytical skills across endpoint, network, identity, and cloud attack vectors. - Familiarity with SOAR platforms and experience working within automated triage and response workflows. - Understanding of threat intelligence concepts and how to apply them to detection and investigation. - Strong written and verbal communication skills with the ability to produce clear incident reports for both technical and non-technical audiences.Preferred Qualifications: - Certifications: GIAC (GCIH, GCFA, GCFE, GCIA, GMON), CISSP, or equivalent industry certifications. - Experience with threat hunting methodologies and proactive adversary detection techniques. - Exposure to scripting or automation concepts (e.g., Python, PowerShell) to support workflow improvements. - Experience working within or alongside MSSP/MDR environments. - Familiarity with forensic analysis, malware triage, or reverse engineering. - Exposure to data privacy, eDiscovery, and chain-of-custody requirements during investigations. We kindly ask you to apply in English. Availability to travel (approximately 10–20%) when required (HQ in Germany). Por Syntegon y sus subsidiarias, la diversidad es una preocupación clave. Exclusivamente promovemos un ambiente donde todos los empleados, independientemente de su género, edad, origen, religión, orientación sexual, identidad de género o necesidades especiales, sean tratados de manera equitativa. Si esta oferta de trabajo utiliza únicamente la forma masculina, es por razones de legibilidad y se refiere a individuos de todos los géneros.