Senior CyberSecurity L&M Service Specialist (On-site) – Warsaw, Poland

IT · Warsaw

Inscribirme

Descripción

⭐Senior CyberSecurity L&M Service Specialist (On-site) – Warsaw, Poland


📍 Location: Warsaw, Poland

🏢 Work Mode: On-site

💼 Contract Type: Freelance

🗣️ Language: English B2 (required)

📅 Duration: Long-term project


🚀 Role Overview

We are looking for a CyberSecurity L&M Service Specialist to support cybersecurity operations, monitoring capabilities, SIEM platforms, threat detection, and security architecture initiatives within a large-scale enterprise environment.

The role focuses on logging and monitoring solutions, security operations, detection engineering, security analytics, and continuous improvement of cybersecurity monitoring capabilities.

The ideal candidate will combine hands-on operational expertise with strong knowledge of security monitoring architecture, threat detection methodologies, and cybersecurity best practices.


🛠 Responsibilities

• Develop and maintain logging and monitoring standards.

• Support security monitoring and detection engineering activities.

• Design and optimize SIEM integrations, correlation rules, and detection logic.

• Analyse security logs, telemetry, and monitoring data.

• Develop dashboards, reports, KPIs, and monitoring capabilities.

• Configure, integrate, and optimize cybersecurity solutions.

• Support incident response, forensic investigations, and remediation initiatives.

• Implement and maintain cybersecurity controls and operational procedures.

• Contribute to monitoring architecture design and security operations improvements.

• Produce technical documentation, playbooks, operational procedures, and recommendations. 


💻 Requirements

• Minimum 10 years of IT experience.

• Minimum 8 years of experience in similar cybersecurity roles.

• At least 3 of the following certifications:

  • CISSP (or equivalent)
  • CCSP (or equivalent)
  • GIAC GPEN (or equivalent)
  • Splunk Enterprise Certified Admin
  • Splunk Enterprise Security Certified Admin
  • TOGAF 9 Certified (or higher) 

• Strong knowledge of Secure SDLC and security architecture principles.

• Experience with Windows and Linux security monitoring.

• Knowledge of network security, telemetry collection, and monitoring architectures.

• Experience with threat modelling and offensive/defensive security practices.

• Knowledge of MITRE ATT&CK and MITRE D3FEND frameworks.

• Experience with: 

  • Splunk Enterprise
  • Splunk Enterprise Security
  • Splunk SOAR
  • Splunk UBA
  • Cribl Stream 

• Experience developing correlation searches and detection rules.

• Experience with Infrastructure as Code (IaC) and Azure DevOps.

• Experience creating automated playbooks and security workflows.

• Strong technical documentation and reporting skills.

• Experience designing cybersecurity roadmaps and monitoring capabilities.

• English B2 (required). 


⭐ Nice to Have

• Experience with MSSP environments.

• Experience with SOC operations.

• Experience presenting cybersecurity strategies to executive stakeholders.

• Knowledge of security governance, data protection, and privacy frameworks.

• Experience working in highly regulated environments. 


🎁 Benefits

• Long-term international project.

• Opportunity to work on advanced cybersecurity monitoring initiatives.

• Exposure to enterprise SIEM, SOAR, and security analytics platforms.

• Collaborative and multicultural environment.

• Participation in strategic cybersecurity programmes.


📩 Apply now!

Localización