Internship / Job

Security Operations Center Analyst

Category
IT
Subcategory
Cybersecurity
Type
Full-time with shifts
Company
NEVERHACK Estonia
Position address
Veskiposti 2, Tallinn
Required languages
English

Details about the role

Job responsibilities

As part of our security operations team (SOC), your primary responsibilities will include:

- Responding to incoming customer incidents and security events based on initial triage
- Reviewing logs, alerts, and external data sources to assess impact on security and/or operations
- Communicating directly with clients and providing timely, professional support
- Investigating security incidents using in-house and open-source tools
- Developing and improving security detections, processes, and solutions
- Working with modern security technologies, including SIEM, XDR, NDR, and SOAR platforms
- Conducting network, system, and security audits
- Managing incidents in accordance with established principles, procedures, and playbooks
- Supporting, troubleshooting, configuring, and managing a variety of cybersecurity tools
- Creating clear and accurate reports for clients
- Working in a shift-based schedule, including occasional work outside regular business hours (8:30-17:00, 21:00-9:00, 14:00-22:00), including night shifts

Expectations for the candidate

Who we’re looking for?

These exciting challenges require a special type of professional - someone with a positive attitude, strong work ethic, and a passion for technology and security.
We are committed to your growth and will provide training, mentorship, and continuous skill development to help you succeed in the role.

Required qualifications

- Experience analyzing and investigating security alerts
- Solid understanding of the MITRE ATT&CK framework
- Understanding of the role and value of Threat Intelligence
- Knowledge of cybersecurity principles, tools, and technologies
- Very good command of English (written and spoken)
- Strong communication and documentation skills

Nice to have skills include:

- Work experience and/or a degree in cybersecurity or a related field
- Familiarity with SIEM, XDR, NDR, SOAR solutions
- Working knowledge of TCP/IP and network traffic analysis
- Programming or scripting skills
- Experience with HacktheBox , TryHackMe , Rangeforce platforms
- Networking certifications such as Network+, CCNA
- Security certifications such as Security+

Opportunities

What do we offer?

- Flexible working hours and hybrid work opportunities
- A modern, well-equipped office with complimentary snacks and beverages
- Five additional days of paid vacation after your first year with us
- A choice between sports compensation or private health insurance
- Free on-site parking
- Development and growth opportunities
- Friendly and smart colleagues

Applying for a job

One can apply until the end of the application period.

Application period
16.04.2026 - 15.05.2026