Flsmidth
Cyber Security Analyst
Bucharest
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →hirly's read of this role
- Seniority
- Mid level
- Country
- RO
- Work mode
- On-site / unstated
- First seen by hirly
- 30 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
We are seeking an experienced Cyber Security Analyst professional to support and enhance our global security operations. The role is responsible for continuous monitoring, incident response, threat investigation, vulnerability management, endpoint compliance and security reporting across the enterprise environment
This is a shift-based hybrid role with office presence, requiring coverage across a 24x5 operational model and support for Cyber Security Operations and services, with occasional after-hours activities for complex changes or critical tasks.
JOB Responsibilities
- Provide L2 Cyber support by handling escalations from users via ServiceNow, Awareness campaign, Phishing, performing monitoring activities, troubleshooting and resolution.
- Take ownership of complex incidents, ensuring timely resolution within agreed SLAs
- Perform in-depth diagnostics and root cause and remediation action.
- Provide 24x5 security monitoring support and participate in weekend/On-Call rotations.
- Ensure timely detection, triage and response to security incidents.
- Perform deep-dive investigations for Critical and High Priority security incidents.
- Lead critical incident response activities and coordinate stakeholder communications.
- Work closely with Infrastructure, Network, Cloud and Application teams to drive issue resolution.
- Track remediation activities and ensure closure within agreed SLAs
- Monitor Microsoft Defender compliance across Windows Server , Endpoints and Linux servers.
- Identify non-compliant assets and coordinate remediation efforts.
- Support endpoint security policy implementation and enforcement.
- Analyse phishing alerts and suspicious emails, perform email header analysis and determine threat indicators.
- Knowbe4 awareness recommend and implement appropriate containment and user awareness actions.
- Conduct advanced threat investigations using Cisco Umbrella to perform URL analysis, Smart Search investigations, blacklist management and threat hunting activities and other security tools.
- Identify malicious domains, indicators of compromise (IOCs) and emerging threats.
- Manage vulnerability remediation activities using Tenable and related platforms.
- Track CVEs, Out-of-Band (OOB) patches and third-party software vulnerabilities.
- Coordinate Patch deployment Compliance with relevant tower and validate remediation effectiveness.
- Support vulnerability risk assessments and reporting to each group.
- Develop and maintain monthly security dashboards and compliance reports..
- Drive incident resolution end-to-end, including coordination with L3 teams, vendors and external providers.
- Review, validate and execute non-standard and complex operational changes following change management processes.
- Participate actively in major incident management, including technical bridge calls when required
- Ensure problem management activities, including identifying recurring issues and driving permanent fixes.
- Remote support and endpoint troubleshooting Security issue.
- Maintain and improve Operational documentation, runbooks, troubleshooting guides and knowledge base articles
- Contribute to service improvement initiatives, automation opportunities and operational efficiency.
Job Qualifications:
- Bachelor’s degree in computer science, Information Technology, Cybersecurity or a related field.
- 3–5 years of hands-on expertise in IT Operations and Cybersecurity analysis.
- Relevant certifications (e.g., CompTIA Security+, CCSP, CISSP, CEH, GIAC certifications) are a plus.
- Strong understanding of network protocols, operating systems (Windows, Linux) and cloud environments (Azure, OCI)
- Microsoft Defender for Endpoint, SIEM Platforms.(Microsoft Sentinel, Cisco Umbrella, Defender for Linux, beyond trust privilege management and Identity management )
- Endpoint Security - Security Event Analysis , Log Correlation, Malware Analysis and IOC Investigation.
- Proven experience in handling complex incidents and escalations
- ServiceNow or similar ITSM platforms
- Ability to work independently and take technical ownership
- Excellent communication and stakeholder management skills
- Ability to perform under pressure in a high-availability enterprise environment
- Strong analytical and problem-solving skills
Annual base pay: 145,000 Ron - 190,000 Ron
We offer all employees access to a dedicated recognition platform, empowering you to celebrate achievements, share appreciation and stay connected globally.
Similar jobs
- Information Security Analyst (f/m/x)Db · Bucharest, 6A Dimitrie Pompeiu BlvdFirst seen 3d ago
- Information Security Analyst (f/m/x)Db · Bucharest, 6A Dimitrie Pompeiu BlvdFirst seen 3d ago
- Senior Cybersecurity Analyst - (Cyber Defense Operations) Talan · Bucharest, Bucharest, RomaniaFirst seen yesterdayremote
- Cybersecurity Analyst (Product/Application Security)NOV · Kochi, Kerala, IndiaFirst seen today
- Cyber Security Analyst - Application SecurityFord Global · Chennai, Tamil Nadu, IndiaFirst seen today
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job