Postuler Contacter

Security Operations Center Expert

Ref : 260226C001
  • Date de début
    23/03/2026
  • Localisation

    75007 PARIS

  • Durée
    12 mois (renouvelables)
  • Profil

    Administrateur système, Ingénieur cybersécurité

  • Tarif Journalier Moyen
    Voir le tarif
Logo client
Compétences requises
Linux Python Red Hat Cloud AWS MITRE ATT&CK Anglais Français
Description de la mission

Job description

Lenstra was founded by passionate computer science engineers with a proven track record of delivering high-quality solutions. By combining technical excellence with a strong vision, we support top-tier clients across industries such as Banking & Insurance, Luxury, and Technology.


Our expertise is structured around four core pillars: Software Development, DevSecOps, Data & AI, and Product. Through a holistic understanding of our clients’ environments, we help them address their most complex challenges—from building robust software and secure cloud platforms to designing data-driven solutions that accelerate business impact.


We are looking for a SOC Expert to detect, investigate, and respond to security threats across a global infrastructure. You will lead day-to-day incident response, improve detection coverage and quality, and develop SOAR automation to reduce response time and operational workload. You will also act as a key contact for user-reported security concerns and collaborate closely with Infrastructure and Operations teams to strengthen overall security posture and improve KPIs such as MTTD and MTTR.


Preferred experience

Incident Response & Case Management

Triage, investigate, and resolve security incidents within SLA.

Coordinate containment, eradication, and recovery efforts.

Handle user-reported security issues and escalate when necessary.

Maintain clear documentation in case management systems.


Detection Engineering

Develop and tune SIEM detection rules to improve coverage and reduce false positives.

Integrate new log sources and enhance monitoring visibility.

Map detections and investigations to the MITRE ATT&CK framework.

Build dashboards and reports to track SOC performance and risk.


SOAR & Automation

Design and implement automated playbooks (e.g., endpoint isolation, IP blocking, account disabling).

Integrate security tools to streamline response workflows.

SOC Tooling & Platform Operations

Maintain and optimize SIEM, SOAR, and related security platforms.

Perform updates, health checks, and configuration improvements.


Required Qualifications:

Degree in Computer Science, Cybersecurity, or related field.

5+ years of SOC experience in high-volume, SLA-driven environments.

Strong expertise in SIEM (rule creation, tuning, dashboards) and SOAR automation.

Experience in detection engineering, log analysis, and false-positive reduction.

AWS experience required; Azure is a plus.

Experience mapping detections to MITRE ATT&CK.

Scripting skills: Python, Bash, PowerShell.

Strong knowledge of networking protocols (TCP/IP, DNS, HTTP/S, SSL/TLS, firewalls).

Proficiency in Linux and Windows environments.

Experience with CI/CD and Git-based workflows.

Certifications such as CISSP, GCIA, GCIH, CEH, and/or SIEM/SOAR preferred.

Fluent in English and French.


View less

Recruitment process:

- 30 minutes recruiter screen

- 1h role and cultural fit interview

- 1h Dive Deep interview

D'autres offres
Administrateur système Linux

Ces missions pourraient vous intéresser !

TOULOUSE – Technicien N2 / Administrateur systèmes / Ingénieur systèmes réseaux et sécurité

Linux Active Directory Windows VMware SCCM
ASAP
31 - TOULOUSE
6 mois
Voir la mission

RENNES - Techncien N1 / N2 / Administrateur systèmes et réseaux / chef de projet

SQL Unix Linux Active Directory Windows
ASAP
35 - RENNES
6 mois
Voir la mission

NICE - Technicien N1 / N2 / Administrateur systèmes et réseaux

Linux Active Directory Windows SCCM Windows 10
ASAP
06 - NICE
6 mois
Voir la mission

Lead ingénieur Linux ( Production )

Unix Linux Script Shell Automator GitLab
ASAP
75 - PARIS
12 mois
Voir la mission

Administrateur Linux

Linux Red Hat
ASAP
77 - RÉAU
6 mois
Voir la mission

Ingénieur de Production

Unix Linux Windows Automator Grafana
ASAP
75 - PARIS
12 mois
Voir la mission

Technicien N2 confirmé / Administrateur / Chef de projet

SQL Linux Active Directory Windows VMware
ASAP
75 - PARIS
3 mois
Voir la mission

Ingénieur Système Linux & Messagerie Open Source h-f

Linux Zimbra
ASAP
Télétravail
12 mois
Voir la mission

Responsable Infrastructure

LAN Linux Active Directory Windows VMware
ASAP
31 - TOULOUSE
9 mois
Voir la mission

Ingénieur Intégrateur Système

C++ Linux
ASAP
92 - LE PLESSIS-ROBINSON
6 mois
Voir la mission
Postuler Contacter