Operational Cybersecurity Specialist

Kolding, Southern Denmark
Posted 6 days ago
Information Technology (IT)

About the role

Job summary

This position involves enhancing security operations and supporting the development of a modern Managed Detection and Response (MDR) setup. The role is hands-on, focusing on real security events, threat detection, and incident response within the organization.

Qualifications

  • Experience in security operations, SOC, incident response, or a similar hands-on cybersecurity role.
  • Strong understanding of threat detection, investigation, and threat hunting in enterprise environments.
  • Familiarity with SIEM and EDR/XDR technologies.
  • Practical knowledge of the Microsoft security ecosystem, including Microsoft Sentinel and Microsoft Defender.
  • Experience using KQL for log analysis and detection development.
  • Knowledge of attacker techniques and frameworks such as MITRE ATT&CK.
  • Interest in automation and infrastructure as code.
  • Strong communication and collaboration skills.
  • Ability to remain structured and calm under pressure.

Responsibilities

  • Collaborate with a third-party European Security Operations Center (SOC) as a Subject Matter Expert (SME).
  • Conduct proactive threat hunting to identify suspicious activities.
  • Support incident response activities including triage, investigation, and recovery.
  • Develop and maintain detections and analytics to enhance visibility.
  • Utilize KQL for incident investigation and threat hunting.
  • Contribute to the development of the MDR setup using Microsoft technologies.
  • Support automation initiatives to improve response times.
  • Engage in offensive security activities such as penetration tests and red team exercises.
  • Translate findings from incidents into operational improvements.
  • Collaborate with various teams to enhance logging and response capabilities.

Skills

  • Strong analytical and problem-solving skills.
  • Ability to work effectively across technical teams.
  • Ownership and proactive approach to improving security operations.

Education

  • Relevant certifications such as SC-200 or AZ-500 are advantageous.

Tools

  • Microsoft security stack, KQL, SIEM, EDR/XDR technologies.
Full Access

Ready to apply for this role?

Full Access gives you the company name, full job description, and a direct link to apply. The summary above helps you explore the role.

Share this job