- Страна
- Испания
Откликайтесь
на вакансии с ИИ

Senior SOC Engineer
Отличная вакансия в известном финтех-единороге с сильным соцпакетом и современным стеком. Высокий балл за возможность влиять на архитектуру безопасности и работу с передовыми технологиями (Google SecOps, Deceptive Security).
Сложность вакансии
Высокая сложность обусловлена требованиями к глубоким знаниям AWS (Kinesis, Lambda, Glue) и опытом работы с высоконагруженными пайплайнами данных. Роль предполагает лидерство в технических инициативах и владение инструментами Infrastructure as Code.
Анализ зарплаты
Зарплата в вакансии не указана, но для Senior Security ролей в Барселоне и Берлине рынок предлагает конкурентные условия. В Берлине медиана обычно выше, чем в Барселоне, но N26 как международная компания часто выравнивает компенсацию по верхним границам рынка.
Сопроводительное письмо
I am writing to express my strong interest in the Senior SOC Engineer position at N26. With over five years of experience in security engineering and a deep focus on AWS cloud infrastructure, I have a proven track record of building scalable logging pipelines and optimizing SIEM ingestion workflows. My expertise in Terraform and Python, combined with a proactive approach to automation, aligns perfectly with N26's mission to evolve its cloud-based security operations.
In my previous roles, I have successfully integrated complex telemetry sources and mapped detection capabilities to the MITRE ATT&CK framework. I am particularly excited about the opportunity to work with Google SecOps and contribute to purple team exercises at N26. I am confident that my technical background in managing high-volume data streams and my commitment to continuous improvement will significantly strengthen your SOC platform's reliability and effectiveness.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в n26 уже сейчас
Присоединяйтесь к команде N26 и станьте архитектором безопасности одного из ведущих необанков Европы!
Описание вакансии
About the Opportunity
We are seeking a Senior / Lead SOC Platform Engineer to own and evolve the cloud-based logging and automation platforms that power our Security Operations Center. Our SOC Engineering team does design scalable AWS logging pipelines and manage ingestion into Google SecOps, and believes in proactive security, automation, and continuous improvement to stay ahead of evolving threats. In this role, you will lead key initiatives that strengthen visibility, automation, and detection capabilities across the organization
*This is a Hybrid role based in Berlin or Barcelona.*
In This Role, You Will:
- Lead SOC engineering initiatives including SOC automation, SIEM–IT Service Management (ITSM) integration, and threat framework mapping and adoption (e.g., MITRE ATT&CK).
- Own data ingestion workflows for the Security Information and Event Management (SIEM) system and ensure high-quality, reliable telemetry.
- Support and integrate deceptive security technologies and participate in purple team exercises to enhance visibility and detection coverage.
- Collaborate with detection engineering, incident response, cloud teams, and security leadership to improve platform reliability and SOC effectiveness.
What You Need to Be Successful
Background:
- 5+ years of experience in SOC engineering, security engineering, cloud engineering, or platform engineering.
- Proven experience designing and operating large-scale logging pipelines in cloud environments.
- Strong understanding of SOC operations, detection workflows, and modern telemetry requirements.
Skills:
- Deep hands-on experience with AWS (S3, IAM, Lambda, Kinesis, CloudWatch, Step Functions, Glue, Athena, Glacier).
- Expertise with SIEM ingestion pipelines, ideally Google SecOps (Chronicle) with S3 ingestion.
- Strong understanding of log structures (JSON, CloudTrail, VPC Flow Logs, Syslog) and schema normalization.
- Proficiency with Infrastructure as Code (Terraform preferred).
- Strong scripting/programming skills (Python, Bash).
- Experience automating data validation, log onboarding, and pipeline health checks.
- Familiarity with MITRE ATT&CK mapping workflows using Navigator.
- Exposure to deceptive security technologies and telemetry pipelines.
- Experience supporting purple team exercises from a telemetry and engineering perspective.
Nice to Haves
- Google SecOps(Chronicle) engineering experience.
- Experience implementing automation for next-generation or Agentic SOC capabilities.
- Experience with deception frameworks (e.g., Canary, Thinkst, IllusionBLACK).
What’s in it for you:
- Accelerate your career growth by joining one of Europe’s most talked about disruptors 🚀.
- Employee benefits that range from a competitive personal development budget, work from home budget, discounts to fitness & wellness memberships, language apps and public transportation.
- As an N26 employee you will have access to a Premium subscription on your personal N26 bank account. As well as subscriptions for friends and family members.
- Additional day of annual leave for each year of service.
- A high degree of autonomy and access to cutting edge technologies - all while working with a friendly team of peers of diverse nationalities, life experiences and family statuses.
- A relocation package with visa support for those who need it.
Who we are
N26 has reimagined banking for today’s digital world. Technology and design empowereverything we do and it’s how we are building the global banking platform the world loves to use.
We've eliminated physical branches, paperwork, and hidden fees for an elegant digital experience and supreme savings. Giving people the power to live and bank their way is what gets us out of bed in the morning and inspires the work that we do.
We are headquartered in Berlin with offices in multiple cities across Europe, including Vienna and Barcelona, and a 1,500-strong team of more than 80 nationalities.
Sounds good? Apply now for this position.
Equal Opportunities:
We recognize that our strength lies in our people and the varied perspectives they bring to our workforce. We strive to build talented and diverse teams to drive our business success and empower our people to reach their full potential.
We genuinely welcome and encourage applications from people of all backgrounds, cultures, genders, sexual orientations, abilities, neurodiversities, and ages. We're committed to creating an inclusive workspace where everyone feels valued and respected, free from harassment and discrimination. If there's anything you need to make the application process work for you, please let us know by reaching out to candidate.exp@n26.com.
Visit our website to learn more about Diversity, Equity, & Inclusion at N26.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- AWS
- Python
- AWS IAM
- Terraform
- Bash
- AWS Lambda
- JSON
- Amazon S3
- AWS Glue
- Amazon CloudWatch
- SIEM
- MITRE ATT&CK
- AWS Step Functions
- Amazon Athena
- CloudTrail
- Amazon Kinesis
- Google SecOps
- Chronicle
- VPC Flow Logs
Возможные вопросы на собеседовании
Проверка опыта работы с ключевым стеком AWS, упомянутым в вакансии.
Опишите ваш опыт проектирования масштабируемых пайплайнов логирования в AWS. Какие сервисы вы использовали для обработки данных в реальном времени?
Вакансия требует навыков автоматизации и работы с Google SecOps.
Как бы вы организовали процесс автоматической валидации данных и проверки работоспособности пайплайнов при интеграции новых источников в Google SecOps?
Роль включает работу с фреймворком MITRE ATT&CK.
Расскажите о вашем опыте маппинга детектов на MITRE ATT&CK. Как вы приоритизируете внедрение новых правил на основе этого фреймворка?
Позиция подразумевает участие в Purple Teaming.
Какова роль SOC-инженера в учениях Purple Team, и как вы обеспечиваете видимость атак на уровне телеметрии?
Проверка навыков Infrastructure as Code.
С какими сложностями вы сталкивались при управлении облачной безопасностью через Terraform и как вы их решали?
Похожие вакансии
Специалист по защите информации (Mobile Security Engineer)
Senior Information Security (ИБ)
Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)
Senior AppSecOps Engineer
Сеньор AppSecOps-инженер
Старший эксперт SIEM
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- Испания