Join Keepit as a SOC Analyst in Copenhagen and play a key role in securing our cloud‑native backup platform. You will join our hybrid information security team to strengthen detection, response and resilience across a global environment.
What you'll do
- Develop and optimise SIEM detection rules using tools such as Microsoft Sentinel and Wazuh.
- Create, update and enforce SOC playbooks and runbooks for incident handling.
- Connect and maintain new log sources across cloud and on‑premises environments to improve visibility.
- Perform threat hunting, malware analysis and digital forensics to identify and mitigate threats.
- Lead and coordinate incident response across Keepit, acting as the spare SOC engineer on a 24/7 rota.
What you bring
- 4+ years of hands‑on SOC experience and deep knowledge of SIEM solutions with the ability to tune detection rules.
- Expertise in malware analysis, threat hunting and forensic investigation.
- Familiarity with incident response frameworks such as NIST and SANS and tools like EDR, IDS, IPS and antivirus.
- Strong understanding of security standards such as ISO 27001 and NIST and experience mapping them to incident procedures.
- Mentorship skills and relevant certifications (CSA, CISSP, GIAC, OSCP, CEH) are preferred.
- Fluency in English and the ability to work in a hybrid environment in Copenhagen.