CareerPlanSign in

Senior Security Analyst

Sofia, BG🌐 Remote💼 Full-time🗓 2026-09-23 → 2026-09-25

Core

Lead complex security investigations and act as incident commander across endpoint, identity, cloud, and production environments to protect customers and systems.

Role type

Senior Security Analyst (Incident Response & Threat Hunting)

Builds

Telemetry, detections, and automation to improve alert quality and reduce manual work.

Domain

Cybersecurity, Cloud Security, Threat Intelligence

Deliverable

production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work

Required skills

Incident response, forensics, threat hunting, root-cause analysis, triage, containment, eradication, attacker framework analysis (MITRE ATT&CK, Diamond Model, kill chain), SIEM/EDR/NDR/CSPM tooling, cloud environment monitoring (AWS/Azure/GCP), scripting (Python/PowerShell), query languages (YARA-L/Sigma/KQL/SPL)

Preferred skills

AI-assisted intrusion analysis, supply-chain compromise investigation, post-incident hardening, mentoring analysts

Technologies

SIEM, EDR, NDR, CSPM, AWS, Azure, GCP, Python, PowerShell, YARA-L, Sigma, KQL, SPL

Responsibilities

Lead security investigations covering triage, root-cause analysis, containment, and eradication; Act as incident commander coordinating cross-functional teams; Investigate cases without existing playbooks and build analysis tools; Write and peer-review incident reports and timelines; Hunt for novel threats like AI-assisted intrusions; Drive post-incident hardening and mentor analysts

Seniority

Senior, hands-on IC with mentorship responsibilities

Sourced via workday · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.