Skip to main content
Defensive Security

SOC Analyst.

Location
Spain
Hybrid/Remote, Barcelona
Employment
Full-time
Team
MDR / SOC

You do not just categorize alerts. You investigate, trace back to the source, assess impact, and respond. At DEFION's Barcelona SOC, every threat gets the attention it deserves.

Apply now
About the role

Investigate, respond, protect

DEFION's MDR and Managed Threat Intelligence services are expanding internationally. As a SOC Analyst in Barcelona, you join the DRTI team to detect, analyze, and mitigate cyber threats for our clients. You work with CrowdStrike, Microsoft Sentinel, and other leading SIEM/EDR platforms.

This is not a checkbox role. You will investigate alerts thoroughly, apply threat intelligence to anticipate attacks, contain threats, and write clear reports with actionable recommendations. You collaborate with Red Team, Blue Team, and detection engineers to keep getting better.

What you will do

  • Monitor and analyze security alerts in EDR/SIEM platforms, identifying suspicious activity and assessing origin and scope
  • Analyze threat intelligence to anticipate potential attacks against clients
  • Respond to detected threats: contain, mitigate, minimize impact
  • Write reports and client notifications with clear findings and recommendations
  • Improve detection rules, develop procedures and playbooks, automate tasks with scripting
  • Participate in client meetings for ongoing reviews and onboarding support

What you bring

Must have:

  • At least 1 year of experience analyzing security alerts in SIEM and/or EDR platforms (CrowdStrike, Sentinel, Cortex, Splunk, Elastic, etc.)
  • Knowledge of Windows and Linux system administration
  • Solid understanding of networks and protocols: TCP/IP, DHCP, DNS
  • Scripting skills in Bash, Python, or PowerShell
  • Analytical thinking: ability to correlate events, detect attack patterns, and solve complex problems
  • Clear communication in English for international collaboration
  • Availability for 24/7 on-call rotation

Nice to have:

  • Cybersecurity certifications or a master's degree
  • Degree in Engineering, Cybersecurity, or related field
What we offer

Why you will love working here

Red + Blue access

Collaborate with Red Team and Blue Team. Access EDR, SIEMs, threat intel, and other tools.

Continuous training

Internal and external training, certifications, and annual conference attendance.

Career plan

Personalized development plan tailored to your interests and growth trajectory.

Barcelona or remote

Flexible remote work or a central Barcelona office. Summer reduced hours.

Health + flex benefits

Private health insurance, flexible compensation plan (meals, transport, childcare, training).

International team

Young, dynamic, international team. Excellent work environment and work-life balance.

Apply now

Send your CV and motivation. We respond within 3 business days.

By applying you agree to our privacy policy.