hirly

Flsmidth

Cyber Security Analyst

Bucharest

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Flsmidth first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Seniority
Mid level
Country
RO
Work mode
On-site / unstated
First seen by hirly
30 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

We are seeking an experienced Cyber Security Analyst professional to support and enhance our global security operations. The role is responsible for continuous monitoring, incident response, threat investigation, vulnerability management, endpoint compliance and security reporting across the enterprise environment

This is a shift-based hybrid role with office presence, requiring coverage across a 24x5 operational model and support for Cyber Security Operations and services, with occasional after-hours activities for complex changes or critical tasks.

JOB Responsibilities

  • Provide L2 Cyber support by handling escalations from users via ServiceNow, Awareness campaign, Phishing, performing monitoring activities, troubleshooting and resolution.
  • Take ownership of complex incidents, ensuring timely resolution within agreed SLAs
  • Perform in-depth diagnostics and root cause and remediation action.
  • Provide 24x5 security monitoring support and participate in weekend/On-Call rotations.
  • Ensure timely detection, triage and response to security incidents.
  • Perform deep-dive investigations for Critical and High Priority security incidents.
  • Lead critical incident response activities and coordinate stakeholder communications.
  • Work closely with Infrastructure, Network, Cloud and Application teams to drive issue resolution.
  • Track remediation activities and ensure closure within agreed SLAs
  • Monitor Microsoft Defender compliance across Windows Server , Endpoints and Linux servers.
  • Identify non-compliant assets and coordinate remediation efforts.
  • Support endpoint security policy implementation and enforcement.
  • Analyse phishing alerts and suspicious emails, perform email header analysis and determine threat indicators.
  • Knowbe4 awareness recommend and implement appropriate containment and user awareness actions.
  • Conduct advanced threat investigations using Cisco Umbrella to perform URL analysis, Smart Search investigations, blacklist management and threat hunting activities and other security tools.
  • Identify malicious domains, indicators of compromise (IOCs) and emerging threats.
  • Manage vulnerability remediation activities using Tenable and related platforms.
  • Track CVEs, Out-of-Band (OOB) patches and third-party software vulnerabilities.
  • Coordinate Patch deployment Compliance with relevant tower and validate remediation effectiveness.
  • Support vulnerability risk assessments and reporting to each group.
  • Develop and maintain monthly security dashboards and compliance reports..
  • Drive incident resolution end-to-end, including coordination with L3 teams, vendors and external providers.
  • Review, validate and execute non-standard and complex operational changes following change management processes.
  • Participate actively in major incident management, including technical bridge calls when required
  • Ensure problem management activities, including identifying recurring issues and driving permanent fixes.
  • Remote support and endpoint troubleshooting Security issue.
  • Maintain and improve Operational documentation, runbooks, troubleshooting guides and knowledge base articles
  • Contribute to service improvement initiatives, automation opportunities and operational efficiency.

Job Qualifications:

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.
  • 3–5 years of hands-on expertise in IT Operations and Cybersecurity analysis.
  • Relevant certifications (e.g., CompTIA Security+, CCSP, CISSP, CEH, GIAC certifications) are a plus.
  • Strong understanding of network protocols, operating systems (Windows, Linux) and cloud environments (Azure, OCI)
  • Microsoft Defender for Endpoint, SIEM Platforms.(Microsoft Sentinel, Cisco Umbrella, Defender for Linux, beyond trust privilege management and Identity management )
  • Endpoint Security - Security Event Analysis , Log Correlation, Malware Analysis and IOC Investigation.
  • Proven experience in handling complex incidents and escalations
  • ServiceNow or similar ITSM platforms
  • Ability to work independently and take technical ownership
  • Excellent communication and stakeholder management skills
  • Ability to perform under pressure in a high-availability enterprise environment
  • Strong analytical and problem-solving skills

Annual base pay: 145,000 Ron - 190,000 Ron

We offer all employees access to a dedicated recognition platform, empowering you to celebrate achievements, share appreciation and stay connected globally.

Original posting on Flsmidth's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job