Romania - Cyber Defense Service Monitoring Specialist, Enterprise Security
1 week ago
Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.
As part of our Booking Holdings Romania team, you will have the opportunity to be a part of the world's leading provider of online travel, with a mission of making it easier for everyone to experience the world through five-primary consumer facing brands: , Priceline, Agoda, KAYAK and OpenTable.
Role description
The Cyber Defense Service Monitoring Specialist is an internal technical role within – Enterprise Security – Cyber Defense & Response.
This position is responsible for oversight and technical validation of security services delivered by BKNG Shared Cybersecurity Services, ensuring they meet 's operational, technical, and quality standards.
The specialist acts as a technical liaison, metrics analyst, and process improvement lead, monitoring BKNG Shared Cybersecurity Services activities, reviewing SOPs, driving tuning and automation, and collaborating with internal engineering and incident response teams to continuously enhance 's security operations.
This role provides a hybrid way of working with an onsite presence of 2 days/week.
Key Job Responsibilities and Duties
Monitoring & Technical Review:Monitor and validate alerts, escalations, investigations and operational activities from BKNG Shared Cybersecurity Provider to ensure accuracy, completeness, and adherence to standards.
Monitor alert categorization, incident handling, and workflows to ensure alignment with policies and technical requirements.
Review and improve both BKNG Shared Cybersecurity Services and internal SOPs, identifying gaps and recommending enhancements for operational effectiveness.
Metrics, Analysis & Trend Identification:Track and analyze key operational metrics (SLA adherence, MTTA, MTTR, alert volumes, FP/TP rates, ingestion/detectors anomalies, alert trends, etc) across all BKNG Shared Cybersecurity Services.
Identify trends, inefficiencies, or gaps, and propose actionable improvements to enhance detection, response, SOPs and overall SOC efficiency.
Tuning, Automation & Continuous Improvement:Review BKNG Shared Cybersecurity Services proposals for detection rules, tuning, workflows, and automation; assess technical feasibility and impact for
Drive analysis and implementation process of approved proposals to optimize 's Security Operations.
Proactively identify and implement workflow, SOP, processes and automation improvements for both BKNG Shared Cybersecurity Services and internal processes to increase efficiency and service quality.
Collaboration, Technical Leadership & Knowledge Sharing:Serve as the technical liaison for , representing the Enterprise Security organization in meetings and discussions with BKNG Shared Cybersecurity Services.
Collaborate with internal engineering, incident response, and other security teams to implement tuning, automation, tooling, SOP and workflow enhancements.
Act as a Subject Matter Expert, providing guidance and knowledge transfer to both internal teams and BKNG Shared Cybersecurity Services on 's environment, tools, processes, and requirements.
Ensure alignment between internal teams and BKNG Shared Cybersecurity Services on technical, operational, and strategic objectives.
Project Ownership & Delivery:Collaborate on various departmental projects that strengthen 's cybersecurity posture and support organizational objectives.
Ensure project outcomes are measurable, aligned with risk reduction goals, and effectively integrated into ongoing operations.
Role Qualifications and Requirements
Required:
3-5+ years in Cyber Defense, SOC Operations, Threat Detection, or Incident Response.
Strong technical knowledge of SOC workflows, alert triage, detection engineering, incident investigation, and multiple cybersecurity services.
Hands-on experience with SIEM/SOAR platforms, EDR solutions, Cloud Enviroments, alert tuning, workflow optimization, and SOP analysis.
Ability to analyze metrics, trends, and operational data to drive technical improvements.
Excellent communication skills for technical discussions with internal teams and BKNG Shared Cybersecurity Services.
Preferred:
Previous experience in shared-services or managed SOC environments.
Knowledge of automation and orchestration tools (SOAR).
Strong understanding of corporate, production, and cloud environments.
Relevant certifications, but not mandatory: GCIA, GCIH, GCFR, GCDA, or equivalent.
Benefits & Perks
Contributing to a high scale, complex, world renowned product and seeing real-time impact of your work on millions of travelers worldwide
Working in a fast-paced and performance driven culture
Technical, behavioral and interpersonal competence advancement via on-the-job opportunities, experimental projects, hackathons, conferences and active community participation
Competitive compensation and benefits package
Vast amounts of data to validate your ideas and the opportunity to experiment with real users
Booking Holdings is proud to be an equal opportunity workplace and is an affirmative action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status. We strive to move well beyond traditional equal opportunity and work to create an environment that allows everyone to thrive.
Pre-Employment ScreeningIf your application is successful, your personal data may be used for a pre-employment screening check by a third party as permitted by applicable law. Depending on the vacancy and applicable law, a pre-employment screening may include employment history, education and other information (such as media information) that may be necessary for determining your qualifications and suitability for the position.
-
Bucharest, Bucureşti, Romania Booking Holdings Full time €30,000 - €60,000 per yearRole Description:Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our...
-
Booking Holdings Romania
1 week ago
Bucharest, Bucureşti, Romania Booking Holdings (NASDAQ: BKNG) Full time €30,000 - €60,000 per yearBooking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...
-
Security Automation Engineer
1 week ago
Bucharest, Bucureşti, Romania MSD Romania Full time €60,000 - €120,000 per yearJob DescriptionThe Cyber Defense AI & Automation team are seeking Security Automation Engineer to design and deliver enterprise-scale automation that reduces manual workload, suppresses noise, and accelerates cyber defense outcomes. This role is responsible for building secure, auditable, and guardrail-enforced automation workflows that operate across the...
-
Romania - Offensive Security Manager
1 week ago
Bucharest, Bucureşti, Romania Booking Holdings Full time 120,000 - 240,000 per yearRole Description:Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our...
-
Security Expert
2 weeks ago
Bucharest, Bucureşti, Romania Vodafone Full time 40,000 - 80,000 per yearIdentify and validate threats by data analysis (e.g. log file information, consolidated event / alert data, firewall data) with the wide range of security tools and cyber defense products.Deliver qualified analysis about actual threats and indications / recommendations how the associated risk can be investigated and responded, reporting to the CSOC Team...
-
Cyber Threat Analyst
1 week ago
Bucharest, Bucureşti, Romania Throne Solutions Full time €30,000 - €60,000 per yearJob Title:Cyber Threat Analyst / Soc AnalystLocation:Bucharest, Romania (Onsite)Employment Type:Full-time / W2 ContractStart Date:As early as possibleAbout the Role:Throne Solutions is seeking a skilled and analytical Cyber Threat Analyst to join our cybersecurity operations team in Bucharest. In this role, you will be responsible for monitoring, detecting,...
-
Booking Holdings Romania
1 week ago
Bucharest, Bucureşti, Romania Booking Holdings (NASDAQ: BKNG) Full time €40,000 - €80,000 per yearBooking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...
-
Security Architect
1 week ago
Bucharest, Bucureşti, Romania Neurony Full time 120,000 - 240,000 per yearWe're looking for asecurity architectto join our client's cyber security department and participate in securing users, products and services.The security architect will be part of securing SSDLC, as well as securing IT and cloud services. In addition to securing new technologies and 3rd party integrations.Responsibilities:Develop and maintain the security...
-
Bucharest, Bucureşti, Romania ING Full time 20,000 - 60,000 per yearREQ 26/08/2025Non Financial RiskBoekarest, RoemeniëING HubsDiscover ING Hubs RomaniaING Hubs Romania offers 130 services in software development, data management, non-financial risk & compliance, audit, and retail operations to 24 ING units worldwide, with the help of - , , .We started out in 2015 as ING's software development hub, then steadily epanded our...
-
Bucharest, Bucureşti, Romania Mastercard Full time €100,000 - €120,000 per yearOur PurposeMastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships...