
Senior Security Operations Center Engineer
Uphold
full-time
Posted on:
Location Type: Hybrid
Location: Braga • 🇵🇹 Portugal
Visit company websiteJob Level
Senior
Tech Stack
CloudCyber SecurityPython
About the role
- Assist with operations with our internal SOC and its core technologies, with a primary focus on our SIEM (Security Information and Event Management) system
- Design, implement, and tune detection rules, correlation logic, and alerts to reduce noise and improve signal fidelity
- Perform proactive threat hunting based on emerging threats, IOCs, and behavioral analysis
- Investigate escalated alerts and security incidents from detection to containment and remediation
- Build and maintain SOC runbooks, incident response workflows, and playbooks for consistent and rapid handling of events
- Work with internal teams to onboard new log sources and enrich security telemetry
- Provide recommendations and insights on security controls and detection coverage across systems and services
- Stay informed of the latest threat trends, adversary tactics, and detection techniques, applying them to our environment
- Support audit and compliance efforts related to monitoring and incident response
Requirements
- 3+ years of hands-on experience in a Security Operations Center or similar role, with deep familiarity in SIEM configuration, rule creation, and tuning
- Solid knowledge of cybersecurity operations, including threat detection, response, and threat intelligence
- Experience working with security log sources such as firewall, endpoint, cloud infrastructure, and application logs
- Strong scripting or query language proficiency (e.g., Python, PowerShell, KQL, Sigma, Regex)
- Understanding of MITRE ATT&CK and threat modeling concepts
- Ability to work independently and interface cross-functionally with technical and non-technical stakeholders
- Excellent problem-solving skills with attention to detail and a strong security mindset
- Fluent written and oral English skills
Benefits
- An amazing work environment in a company that continues to grow, driven by extraordinary and passionate people
- An international team, in a cutting edge field, working on the most fascinating projects
- Growth and career opportunities, and the chance to be proactive and creative
- A flexible and enthusiastic work environment that offers you snacks, a lot of coffee and other great benefits
- Open and transparent culture - we get together on a weekly basis to share updates, strategic plans, and engage with each other informally over food and drinks
- Interesting events that keep you connected with the team and celebrate our success
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
SIEMdetection rulescorrelation logicthreat huntingincident responsescriptingquery languageMITRE ATT&CKthreat modelingcybersecurity operations
Soft skills
problem-solvingattention to detailsecurity mindsetindependent workcross-functional communication