Expleo Group
Expleo Group
Expleo Group is a global engineering, technology, and consulting partner helping organizations transform operations, develop complex products, and improve manufacturing and quality processes. Its work spans consulting, defense, and logistics, with capabilities in artificial intelligence, digitalization, and cybersecurity. Founded in 1966, Expleo combines more than five decades of experience with a team of 18,000 experts working across 29 countries to support innovation and operational performance.

Security Operations Analyst – SIEM and Threat Detection

Support technology and cybersecurity services for the United Nations by developing threat detections and improving SIEM platforms. Strengthen security monitoring and response capabilities through detection engineering and continuous optimization.

Description

  • Design, develop, and refine threat-detection use cases
  • Manage and advance the lifecycle of security-monitoring rules and content
  • Help administer, optimize, and continuously improve SIEM platforms
  • Integrate new data sources and telemetry to expand detection capabilities
  • Work with Threat Intelligence and Incident Response teams to strengthen cybersecurity services
  • Assess detection effectiveness and identify areas for improvement
  • Produce security operations metrics, reports, and dashboards
  • Keep technical documentation, operating procedures, and knowledge bases current
  • Contribute to security-monitoring architecture reviews and strategy development

Requirements

  • More than five years of experience in cybersecurity or security operations
  • Strong hands-on experience with SIEM platforms such as Microsoft Sentinel or Splunk
  • Practical knowledge of security monitoring, threat detection, and incident investigation
  • Extensive experience with Microsoft security solutions
  • Experience working in cloud environments such as Azure, AWS, or GCP
  • Knowledge of and experience with EDR technologies
  • Strong understanding of networking, perimeter security, and incident response
  • High level of written and spoken English
  • Experience designing, implementing, or evolving SIEM platforms is desirable
  • Knowledge of ingestion pipeline design and log monitoring is desirable
  • Scripting experience with PowerShell, Python, or Bash is desirable
  • Specific experience with security monitoring in AWS is desirable
  • Certifications such as SC-200, CEH, GCIH, GIAC, or equivalent are desirable

Benefits

  • Hybrid working arrangement
  • Access to language learning and technical certification programs through Expleo Academy
  • 24 days of annual leave, plus December 24 and 31
  • Padel and running club
  • Summer and Halloween events
  • Medical insurance
  • Meal vouchers
  • Childcare vouchers

Related Jobs

Knowtion Health

Remote Talent Acquisition Manager

Knowtion Health

Oversee recruiting systems, requisitions, analytics, and contingent workforce operations at Knowtion Health. Help support scalable hiring processes for a growing healthcare company.

Open