Cybersecurity Engineer at LUZA Group building and maintaining SOAR use cases. Collaborating on security incident responses and procedures in Portugal.
Responsibilities
Build and maintain SOAR use cases and automated playbooks (Cortex XSOAR, Microsoft Sentinel, FortiSIEM).
Monitor, correlate and investigate SIEM alerts and logs to detect and respond to security incidents.
Develop and optimize automation to improve response time and reduce false positives.
Document procedures, support post-incident analysis, and mentor junior SOC analysts.
Requirements
Minimum 3 years of experience (at least 1 year with SOAR; candidates with less experience but strong hands-on skills may be considered for a junior role).
Strong knowledge of incident response, threat detection, and security monitoring frameworks, with demonstrable practical experience (examples may be requested).
Hands-on experience with Palo Alto Cortex XSOAR, Microsoft Sentinel, and FortiSIEM (mandatory; equivalent tools will be considered).
Native Portuguese speaker with technical proficiency in English.
XSOAR certifications are a strong plus.
Benefits
Our company does not sponsor work visas or work permits. All applicants must have the legal right to work in the country where the position is based.
Only candidates who meet the required qualifications and match the profile requested by our clients will be contacted.
Microsoft Success Manager helping partners grow secure, scalable Microsoft practices across ANZ. Championing Microsoft security solutions and supporting partner success strategies in the region.
Assistant AVP overseeing a 5 - member team for Access Management services in Pune and Mumbai, ensuring high standards of service delivery and compliance.
Own global security systems infrastructure for QVC, managing access control and networked security systems across multiple regions. Collaborate with IT to ensure security and technology initiatives meet organizational needs.
Sales Account Manager growing ADAPTIT Cybersecurity business in Greece and Cyprus. Responsible for client relations, sales pipeline, and collaboration with the cybersecurity team.
Information Security Engineer focusing on Identity & Access Management and SSO at Westfield. Design, operate, and mature enterprise authentication and federation capabilities.
Cyber Security Engineer responsible for operational support and development activities with Ping Identity. Collaborate with global teams to strengthen cybersecurity and improve customer satisfaction.
Application Security Specialist focusing on security in software development lifecycle at Insight Investment in Manchester, driving DevSecOps practices across teams.
Cyber Security Engineer supporting mission - critical DoD contract at CACI. Involves reviewing infrastructure changes and implementing security measures in a cloud - based environment.
Security Incident Management Analyst coordinating information security incidents. Overseeing cyber incident response and providing guidance to senior management within a leading industrial software company.
Customer Security Engineer managing end - to - end pentesting services at Aikido Security. Ensuring customer value and addressing vulnerabilities for a developer - first security product.