About the role
Join Keepit's Information Security team to protect SaaS workloads worldwide. As a SOC Analyst, you'll develop and optimize SIEM rules, build playbooks for incident handling and knowledge transfer, connect new log sources and optimize parsing, conduct threat hunting, root cause analysis and forensic investigations, lead incident response efforts, and act as a spare SOC engineer.
Responsibilities
- Develop and fine-tune SIEM rules to reduce false positives.
- Create and maintain incident response playbooks and ensure knowledge transfer across the team.
- Connect new log sources, optimize log ingestion, and maintain parsing.
- Perform threat hunting, root cause analysis, and forensic investigations.
- Lead incident response efforts and coordinate across IT, security and management teams.
- Act as a backup SOC engineer when needed.
Requirements
- 4+ years of experience in SOC environments or equivalent monitoring roles.
- Expertise in SIEM solutions such as Microsoft Sentinel or Wazuh, with ability to create, optimize and manage rules.
- Hands-on experience with malware analysis, reverse engineering and forensics.
- Advanced knowledge of incident response frameworks (NIST, SANS) and tools including EDR, IDS, IPS and centralized antivirus.
- Strong understanding of security standards (ISO 27001, NIST) and ability to map them to incident handling procedures.
- Leadership and mentorship skills with a track record of training junior analysts.
- Relevant certifications such as CSA, CISSP, GIAC, OSCP, CEH are an advantage.
- Excellent analytical, problem-solving and communication skills, and ability to work in cross-functional teams.
- Fluent in English.
What we offer
- Competitive salary and pension scheme.
- Modern, energetic work environment with a flexible hybrid working model.
- Opportunities for professional development and career advancement.
- Regular team-building activities.
- Work with cutting-edge technologies and contribute to a product-centred company where cybersecurity is a top priority.
About Keepit
Keepit is a fast-growing SaaS company that builds cloud-based backup services for Microsoft 365, Google Workspace, Salesforce, Entra ID, Dynamics 365, Zendesk and other SaaS platforms. Our platform provides immutable historical archives to protect customers from ransomware and accidental data loss. We are product-centred, and solving complex problems is part of our DNA.