Lead Cyber Security Analyst
2 days ago
Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.
By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses.
From prototype to real-world impact - be part of a global shift by doing work that matters.
The Lead Security Analyst is a Tier 2 cybersecurity specialist responsible for advanced incident investigation, threat hunting, and guiding SOC operations to protect enterprise systems and networks. This role involves acting as the escalation point for L1 analysts, leading complex investigations, and driving improvements in security detection, response, and prevention strategies. The Senior SOC Analyst also mentors junior staff and collaborates with cross-functional teams to strengthen the organization's security posture.
Responsibilities:
- Lead triage, investigation, and containment of complex security incidents escalated from L1.
- Lead Security Incidents and coordinate Incident Response
- Coordinate with stakeholders to contain, eradicate, and recover from security incidents.
- Conduct root cause analysis, malware analysis, and advanced forensics (network, endpoint, and cloud).
- Develop and refine incident response playbooks.
- Proactively hunt for threats using SIEM, EDR, and threat intelligence feeds.
- Support the creation and optimization of detection rules, correlation logic, and automation scripts.
- Perform gap analysis to improve detection capabilities.
- Monitor and analyze security alerts from SIEM, IDS/IPS, EDR, DLP, and other security platforms.
- Correlate events across multiple data sources for accurate threat assessment.
- Support audits, compliance checks, and risk assessments.
- Mentor and train SOC L1 analysts on investigation techniques and tools.
Experience:
- 3+ years in cybersecurity, with at least 2 years in SOC/Incident Response.
- Advanced knowledge of SIEM, EDR, IDS/IPS, DLP, IAM, and cloud security tools.
- Hands-on experience in malware analysis, memory forensics, and log analysis.
- Strong understanding of network protocols, secure configurations, and common attack techniques (MITRE ATT&CK).
- One or more of the following certifications: OSCP, GCIA, GCIH, CEH, CompTIA Security+, CompTIA Cysa, CISSP, Security Blue Team L1/L2
- Familiarity with cloud environments (AWS, Azure, GCP) and container security
Additional Skills:
- Strong problem-solving and analytical skills.
- Ability to remain calm and decisive during high-pressure incidents.
- Excellent communication skills, both technical and non-technical.
- Continuous learning mindset and willingness to explore new tools and methods.
Discover some of the global benefits that empower our people to become the best version of themselves:
- Finance: Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus;
- Career Development: Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership;
- Learning Opportunities: Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences;
- Work-Life Balance: Hybrid work and flexible working hours, employee assistance programme;
- Health: Global internal wellbeing programme, access to wellbeing apps;
- Community: Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations.
At Endava, we're committed to creating an open, inclusive, and respectful environment where everyone feels safe, valued, and empowered to be their best. We welcome applications from people of all backgrounds, experiences, and perspectives—because we know that inclusive teams help us deliver smarter, more innovative solutions for our customers. Hiring decisions are based on merit, skills, qualifications, and potential. If you need adjustments or support during the recruitment process, please let us know.
-
Lead Cyber Security Analyst
2 days ago
Timișoara, Timiş, Romania Endava Full time €40,000 - €80,000 per yearCompany Description Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital...
-
Timișoara, Timiş, Romania AUMOVIO Romania Full timeJob DescriptionJoin our growing international security team as an analyst (m/f/diverse) in our Security Operations Center (SOC/CDC). Being on the frontline, shaping the development of our cyber defense, detecting and responding to cyber attacks as they happen. Your tasks include the following responsibilities:Analyzing of EDR/SIEM/security incidents/cyber...
-
IT Team Lead Active Directory
2 weeks ago
Timișoara, Timiş, Romania Continental Full time €30,000 - €60,000 per yearCompany Description Continental develops pioneering technologies and services for sustainable and connected mobility of people and their goods. Founded in 1871, the technology company offers safe, efficient, intelligent and affordable solutions for vehicles, machines, traffic and transportation. In 2024, Continental generated sales of €39.7 billion and...
-
IT Team Lead Active Directory
2 weeks ago
Timișoara, Timiş, Romania Continental Full time 90,000 - 120,000 per yearYour tasksAs an Active Directory Team Lead(m/f/diverse) you will be leading a motivated, collaborative, and skilled team of Directory Services Specialists in a global environment which supports Continental Tires in maintaining and operating the Active Directory multi domain forest environment. The ideal candidate will have a strong technical background in...
-
Cyber Engineer
2 weeks ago
Timișoara, Timiş, Romania Spyrosoft Full time €30,000 - €90,000 per yearRequirements:Strong knowledge of Omada IAM solutionsExperience in managing identity and access management in large organizationsFamiliarity with IAM standards and compliance regulations, such as GDPR and ISOAbility to assess and mitigate risks associated with user access and permissionsStrong analytical skillsEffective communication and collaboration...
-
IAM Analyst
6 days ago
Timișoara, Timiş, Romania Coins Full time €40,000 - €60,000 per yearPosted 28 August 2025LocationTimişoaraJob type PermanentDiscipline GTSReferenceJ15757Job descriptionIAM Analyst We're looking for people to join the Access family, who share our passion for believing in better, and who will help us continue to grow. Love Work. Love Life. Be You. - is central to our success and how we give our customers the freedom to do...
-
Salesforce Tech Lead
2 days ago
Timișoara, Timiş, Romania The Access Group Full time 40,000 - 120,000 per yearWe're looking for people to join the Access family, who share our passion for believing in better, and who will help us continue to grow.Love Work. Love Life. Be You. - is central to our success and how we give our customers the freedom to do more of what's important to them.What does Access offer you?We offer a blended approach to office working,...
-
Privileged Access Management Engineer
6 days ago
Timișoara, Timiş, Romania Continental Full time €30,000 - €60,000 per yearCompany DescriptionContinental develops pioneering technologies and services for sustainable and connected mobility of people and their goods. Founded in 1871, the technology company offers safe, efficient, intelligent and affordable solutions for vehicles, machines, traffic and transportation. In 2024, Continental generated sales of €39.7 billion and...
-
Senior Business Analyst
6 days ago
Timișoara, Timiş, Romania Toluna Full time €30,000 - €60,000 per yearAbout Us:Toluna is the global research and insights leader that enables businesses to make smarter, data-driven decisions – faster. For 25 years, we have partnered with the world's leading brands, delivering transformative impact through our advanced technology platform, comprehensive solution portfolio, expansive global first-party panel, and world-class...
-
Junior Developer/ IT Consultant
6 days ago
Timișoara, Timiş, Romania Cyber Advanced Project and Product Solutions Full time 20,000 - 25,000 per yearCompany DescriptionAt , we build complex IT products and projects — from web & mobile applications to advanced cloud, DevOps, and infrastructure solutions.Now we're entering a new chapter: we want to accelerate digital transformation for Romanian companiesand become an official Odoo partner– a leading ERP and business management platform.Role...