
Posted 6 days ago
Senior Security Engineer (SIEM/XDR) | Pharma (Hybrid)
AI Summary
Senior Security Engineer focused on SIEM/XDR monitoring, detection engineering, and automation within a Cyber Intelligence & Security Operations Center.
About this role
We are looking for a Senior Security Engineer to join a global Cyber Intelligence & Security Operations Center (CISOC) team, focusing on security monitoring, detection engineering, and the continuous improvement of SIEM/XDR capabilities.
In this role, you will design and optimize security use cases, develop automation and integrations, and collaborate with Security Detection and Incident Response teams to improve threat detection and remediation. You will also contribute to security reporting, dashboards, documentation, and the evolution of monitoring technologies.
TASKS & RESPONSIBILITIES 🚀:
• Develop and implement security use cases for SIEM/XDR platforms.
• Fine-tune existing use cases to improve detection quality and reduce false positives.
• Develop and maintain scripts and API integrations to automate and enrich security monitoring capabilities.
• Support the implementation of Breach & Attack Simulation (BAS) scenarios to test and improve detection use cases.
• Contribute to the evolution of security monitoring technologies according to the defined roadmap.
• Collaborate with Security Detection and Incident Response teams to strengthen detection capabilities.
• Prepare and manage security monitoring reports, dashboards, and status updates.
• Maintain accurate documentation in line with security processes, SOPs, and working instructions.
• Present monitoring insights and updates to technical stakeholders and management.
SKILLS 🤹:
• Proven experience developing security use cases for SIEM/XDR technologies, such as Microsoft Sentinel or Microsoft Defender.
• Experience with scripting languages such as Python, PowerShell, or Bash.
• Experience with API integrations and security automation.
• Knowledge of security weaknesses, remediation, prioritization, change management, analysis, and triage.
• Experience with reporting or ticketing platforms such as ServiceNow.
• Strong analytical, problem-solving, communication, and teamwork skills.
• Experience working in international and multicultural environments.
• Excellent spoken and written English.
NICE TO HAVE Service Requirements
• Experience with Breach & Attack Simulation (BAS) and threat scenario creation.
• Security certifications such as Security+, GCIH, ECIH, OSCP, or CEH.
• Experience in Security Operations, Detection Engineering, or Incident Response.
SCHEDULE 🕘:
08h-17h from Monday to Friday (flexible)
4 days by remote, 1 day office work (every thursday)
CONDITIONS 🌱:
Salary package based on your profile.
Ticket restaurant included in-office hours.
Flexible compensation plan (free of income tax) where we provide you with medical insurance, public transport ticket and childcare check.
Discounts in gym network.
Training catalogue.
Our goal is that you are well in every way!
Skills
Explore related jobs
More jobs at Ambit Iberia
Cybersecurity Program Support Specialist - Pharma (hybrid)Sant Cugat del Vallès, ES
IT Customer Services | Technological Events - BarcelonaBarcelona, ES
Microsoft Purview Insider Risk Specialist | Pharma (100% remote from Portugal or Spain)Sant Cugat del Vallès, ES
Técnico/a de Validaciones N1Barcelona, ES
Software packager and consultant - Pharma (hybrid)Sant Cugat del Vallès, ES
Técnico/a de Validaciones | Pharma (Híbrido)Barcelona, ES
Browse these categories
Market data for security engineer roles
All reports →- SeriesRole reportsOne role family at a time: how many openings, what changed this week, who is hiring, what it pays.
- SeriesSalary reportsWhat employers publish in job postings, by level and workplace. Not self-reported pay.
- Market overviewState of tech hiring, September 2026: up 4.8%Tech hiring rose 4.8% month over month in September 2026, with 411,122 new listings. Customer support and account executive roles led the growth.