Security Analyst

1 week ago


Bucharest, Bucureşti, Romania Publicis Full time

Company description Tremend is the newest global software engineering hub for Publicis Sapient. For over 20 years, the company has been infusing its advanced technical expertise into complex and innovative solutions that meet today's digital transformation needs and pave the way for a better and smarter future. By joining forces with Publicis Sapient we're accelerating the impact, providing a good mix of talented engineers, technology, continuous improvement, innovation, and R&D. Here, you'll have the opportunity to unleash your potential, powering up advanced software solutions for some of the world's most iconic brands. Embrace your passion for technology, creativity, and continuous improvement, and join us in making a difference through engineering. Overview The Security Analyst will be part of the 24×7 Security Operations team responsible for continuous monitoring, triage, and initial response across SIEM, EDR, Kubernetes security tools, and cloud platforms. The role involves real-time detection, first-level containment, and accurate escalation for incidents affecting Kubernetes clusters, workloads, application nodes, and databases. Responsibilities * Real-time monitoring of alerts from SIEM, EDR, Kubernetes security platforms, CSPM, and cloud-native logs. * Triage of events related to: Kubernetes clusters (API server access logs, audit logs, kubelet logs) Container runtime anomalies Suspicious pod or deployment behavior Unauthorized configuration changes (RBAC, network policies) * Perform first-level investigations on: Pod/container compromises Lateral movement within clusters Suspicious container images Failed authentications to Kubernetes APIs * Follow SOPs to take initial containment actions such as: Isolating compromised nodes or VMs Triggering automated quarantine for containers Revoking credentials or tokens * Escalate Kubernetes-related incidents to Tier 2 engineering teams with full context. * Maintain detailed investigation records in the case management system. * Identify false positives/noisy alerts in container security and suggest tuning improvements. * Provide structured end-of-shift handovers for 24×7 operations. * Participate in continuous learning on emerging Kubernetes threats, cloud-native attack vectors, and Linux-based compromise techniques. Qualifications Required * 2-3+ years working in a SOC or cybersecurity operations role. * Experience analyzing Linux events (as most Kubernetes nodes are Linux-based). * Understanding of Kubernetes architecture: API Server, kubelet, etcd, scheduler, pods, containers, namespaces. * Familiarity with: Kubernetes audit logs Cloud-native logs (AWS CloudTrail, Azure Activity Logs, GCP Audit Logs) Container runtime basics (containerd, CRI-O, Docker) * Experience with EDR/SIEM investigations and common TTPs (LOTL, lateral movement, privilege escalation). * Knowledge of basic detection areas: Suspicious container spawning Privileged pod creation Unauthorized exec into pods * Strong communication, documentation, and analytical skills. * Willingness to work in rotating 24×7 shifts. Preferred * Certifications: Security+, CySA+, GSEC, CKAD or KCNA basics. * Familiarity with Falco, Aqua, Prisma Cloud, Wiz, Sysdig, or similar tools. Additional information Besides an exciting job in a tremendous team, here's what you can expect: A fast-paced tech environment Continuous growth & learning Open feedback culture Room for own initiative & ideas Transparency about results & strategy Recognition & reward for hard work Working with a flexible schedule Medical subscription Meal tickets Extra vacation days - starting with 25 vacation days Many others perks



  • Bucharest, Bucureşti, Romania Bitdefender S.R.L. Full time

    BitdefenderBitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumer, enterprise, and government environments, Bitdefender is one of the industry's most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling...


  • Bucharest, Bucureşti, Romania Bitdefender Full time

    BitdefenderBitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumer, enterprise, and government environments, Bitdefender is one of the industry's most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling...


  • Bucharest, Bucureşti, Romania Sales Consulting Full time

    Project Description:Join our Development Centre in Bucharest and become a member of our open-minded, progressive and professional team. In this role you will be working for one of our world-famous clients.We are looking for candidates with strong engineering experience in the areas mentioned above to assist in evaluating and selecting the most effective...


  • Bucharest, Bucureşti, Romania SNYK Full time

    Snyk is the leader in secure AI software development, helping millions of developers develop fast and stay secure as AI transforms how software is built. Our AI-native Developer Security Platform integrates seamlessly into development and security workflows, making it easy to find, fix, and prevent vulnerabilities — from code and dependencies to containers...


  • Bucharest, Bucureşti, Romania OPTIVEUM sp. z o.o. Full time

    GRC AnalystLocation: Remote (Poland)Contract Type: B2B through Optiveum PolandSalary: Up to 5,100 USD / month (approx. 18,500 PLN)Our Client is a global organization with complex commercial and manufacturing operations across multiple regions. The company places a strong emphasis on cybersecurity, operational resilience, and data protection. As part of their...


  • Bucharest, Bucureşti, Romania Deutsche Bank Full time

    Position OverviewDB Global Technology is Deutsche Bank's technology center in Central and Eastern Europe. Since its set-up in 2013, Bucharest Technology Centre (BEX) has constantly proven its capacity to deliver global technology products and services, playing a dynamic role in the Bank's technology transformation.We have a robust, hands-on engineering...


  • Bucharest, Bucureşti, Romania Deutsche Bank Full time

    Job Description:DB Global Technology is Deutsche Bank's technology center in Central and Eastern Europe. Since its set-up in 2013, Bucharest Technology Centre (BEX) has constantly proven its capacity to deliver global technology products and services, playing a dynamic role in the Bank's technology transformation.We have a robust, hands-on engineering...


  • Bucharest, Bucureşti, Romania MSD Romania Full time

    Job DescriptionThe Cyber Defense AI & Automation team are seeking Security Automation Engineer to design and deliver enterprise-scale automation that reduces manual workload, suppresses noise, and accelerates cyber defense outcomes. This role is responsible for building secure, auditable, and guardrail-enforced automation workflows that operate across the...


  • Bucharest, Bucureşti, Romania NTT DATA Europe & Latam Full time

    Who We AreBy joining our project, you will be working on an initiative of the European Commission focused on creating a more efficient, modern and secure customs environment within the European Union. Being part of this initiative set on a 5 years' timeline, you will have the opportunity to work on topics such as digitalization of customs processes,...


  • Bucharest, Bucureşti, Romania NTT DATA Europe & Latam Full time

    Who We AreNTT DATA Romania is looking for passionate Cybersecurity Analysts with German C1 (Rotating Shifts 12/24 – 12/48) for the Cyber Defence OT Team. The team is international, so you will use German and English both written and orally, fluency in German and English being mandatory. The current position is open in Bucharest, Cluj-Napoca, Sibiu,...