Capco Logo

Capco

Security Operations Engineer (She/ He/ They)

Posted 3 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in Poland
Mid level
Remote or Hybrid
Hiring Remotely in Poland
Mid level
Design, build, and optimize SIEM detection rules (primarily Microsoft Sentinel); develop and automate detection validation; onboard critical applications; gather logging requirements; lead stakeholder workshops; produce detection and threat-model documentation; collaborate with SOC, engineering, and red teams; and support DORA-aligned compliance and threat verification.
The summary above was generated by AI

CAPCO POLAND 

*We are looking for Poland based candidate. 

Capco is a fully independent, global management and technology consultancy. For 25 years we have combined innovative thinking with deep industry knowledge to deliver business consulting, digital transformation and technology services to Finance and Energy markets. Our collaborative and efficient approach helps clients reduce costs and manage risk and regulatory change while increasing revenues. We are thinkers, innovators, and disruptors. We are small enough to care but large enough to matter.

We are seeking a highly skilled Security Operations Engineer to support the expansion of a strategic security program focused on onboarding critical applications into enhanced monitoring capabilities.In this role, you will play a key part in building and optimizing SIEM detection capabilities, supporting threat verification, and enabling regulatory alignment with DORA (Digital Operational Resilience Act) requirements by the end of 2026. You will work at the intersection of SIEM engineering, threat modelling, and security operations, contributing directly to improving detection accuracy and strengthening overall security posture.

Key Responsibilities:

  • Detection Engineering: Design, build, and optimize SIEM detection rules (with a focus on Microsoft Sentinel)
  • Testing & Automation: Develop and execute test cases for detection logic; automate validation processes using scripting
  • Application Onboarding: Support onboarding of critical applications into the security monitoring ecosystem
  • Requirements Gathering: Collaborate with application teams to define logging requirements and detection use cases
  • Workshop Facilitation: Lead and moderate workshops with stakeholders to align on threat scenarios and security capabilities
  • Technical Documentation: Produce clear and comprehensive documentation covering detection logic, threat models, and validation results
  • Collaboration: Work closely with SOC, engineering, and red teams to enhance alert fidelity and incident response effectiveness
  • Compliance Delivery: Contribute to threat verification and ensure deliverables meet ALaM program and DORA milestones

Required Skills and Experience:

    • SIEM Expertise: Hands-on experience with SIEM platforms (strong preference for Microsoft Sentinel)
    • Detection Engineering: Proven track record in creating, tuning, and testing detection rules
    • Scripting & Automation: Proficiency in Python, PowerShell, Bash, or similar for automation use cases
    • Communication: Strong English communication skills with the ability to confidently lead stakeholder workshops
    • Technical Knowledge: Understanding of cloud (Azure, AWS), operating systems (Windows, Linux), and database environments (SQL, Oracle)
    • Autonomy: Ability to work independently in a dynamic, high-volume onboarding environment
    Technology Stack
    • SIEM & Security: Microsoft Sentinel
    • Cloud & Infrastructure: Azure, AWS, Windows, Linux, SQL, Oracle
    • Scripting & Automation: KQL, Python, PowerShell, Bash

Nice to have:

  • Experience in threat modelling and defining threat profiles
  • Familiarity with DORA or other regulatory frameworks in financial services

We have been informed of several recruitment scams targeting the public. We strongly advise you to verify identities before engaging in recruitment related communication. All official Capco communication will be conducted via a Capco recruiter.

We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.

#LI-REMOTE

Similar Jobs at Capco

14 Hours Ago
Remote or Hybrid
Junior
Junior
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Responsible for translating cybersecurity requirements into product specifications, maintaining product backlogs, and enhancing stakeholder communication across B2B SaaS and B2C product lines.
Top Skills: Azure DevopsB2B SaasB2CChargebeeCybersecurityIso 27001LucidchartNistSmartlingSoc 2Stripe
3 Days Ago
Remote or Hybrid
Mid level
Mid level
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
The Requirements Engineer will gather, analyze, and document business and system requirements, ensuring alignment between stakeholders while supporting IAM and compliance projects, and maintaining documentation using Jira and Confluence.
Top Skills: AgileConfluenceIdentity & Access ManagementJIRASdlc
4 Days Ago
Remote or Hybrid
Senior level
Senior level
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Design, develop, and maintain backend services and APIs for a banking client's trading platform, focusing on .NET technologies and Oracle PL/SQL.
Top Skills: .Net FrameworkC#Oracle Pl/SqlRest Apis

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account