Deutsche Telekom IT Solutions

Senior Security Analyst (SOC L2/L3) - REF5729J

Debrecen, Budapest, Pécs, Szeged, hu · Posted yesterday

salary not listedseniorpermanenthybridDept: Technik HU
SIEMEDRXDRIDSIPSFirewallTCP/IPDNSHTTP/SWindowsLinuxMITRE ATT&CKElasticSigmaYARAPythonPowerShellBash

Job Description

Join our Security Operations Center Technology (SOC-T) team!

As a Security Analyst (L2/L3), you will play a key role in detecting, analyzing and responding to cyber security threats across one of Europe's largest telecommunications environments.

This role is ideal for experienced SOC professionals who enjoy investigating complex security incidents, performing threat hunting activities and working with modern security technologies to continuously improve cyber defence capabilities.

Your responsibilities

As part of our international SOC-T team, you will:

  • Analyze and assess security alerts generated by SIEM, EDR/XDR, IDS/IPS, firewall and cloud security solutions.
  • Investigate suspicious activities by reviewing security logs and identifying affected users, systems and potential attack paths.
  • Perform hypothesis-driven threat hunting activities to detect malicious behaviour before it escalates.
  • Map attacker behaviour to the MITRE ATT&CK framework and leverage threat intelligence to assess emerging cyber threats.
  • Support incident response, containment and remediation activities.
  • Document incidents, findings, timelines and recommendations in a structured and understandable way.
  • Contribute to the continuous improvement of SOC processes, playbooks and operational procedures.
  • Collaborate with internal stakeholders during security investigations and incident handling.

Must have

  • Professional experience in a Security Operations Center (SOC) or a similar cyber security environment.
  • Hands-on experience with SIEM, EDR/XDR and IDS/IPS technologies.
  • Good understanding of TCP/IP networking, DNS, HTTP/S and firewall concepts.
  • Experience analyzing Windows and Linux security logs.
  • Knowledge of MITRE ATT&CK and common attacker techniques.
  • Ability to investigate alerts, validate incidents and document findings.
  • Strong analytical thinking and problem-solving skills.
  • Structured, reliable and self-driven working style.
  • Fluent English communication skills.
  • Basic German language skills.

Nice to have

  • Experience with Elastic.
  • Experience with Threat Hunting methodologies.
  • Knowledge of Detection Engineering and rule tuning.
  • Sigma or YARA.
  • Malware analysis or Digital Forensics.
  • Python, PowerShell or Bash scripting.
  • Experience mentoring junior analysts.
  • Stakeholder management experience.
  • Continuous improvement mindset.

What we offer

  • Work on real-world cyber security incidents in an international environment.
  • Opportunity to investigate sophisticated security threats using modern SOC technologies.
  • Collaboration with experienced cyber security professionals.
  • Continuous learning and professional development.
  • Hybrid working model.
  • Competitive compensation and comprehensive benefit package.
  • Long-term career opportunities within Deutsche Telekom IT Solutions.

About You:

You are an analytical and solution-oriented security professional who enjoys investigating security events, identifying threats, and solving complex problems. You are curious by nature, pay attention to detail, and remain calm when working with security incidents. You communicate proactively, collaborate effectively with international teams, and continuously seek opportunities to improve detection capabilities and strengthen cyber security operations.

* Please be informed that our remote working possibility is only available within Hungary due to European taxation regulation.