Cybersecurity Specialist – Incident Response & Threat Detection
DXC Technology · Oeiras
Job description
About the role
We are looking for a Cybersecurity Specialist to lead incident response and threat detection for our clients. The role serves as a senior technical point of reference within the security operations team, guiding analysts and shaping detection content.
Key responsibilities
- Analyze, triage, and respond to security incidents, including phishing, malware, and SOC escalations, through containment, eradication, and recovery.
- Develop and maintain incident response playbooks and runbooks, ensuring they remain current and actionable.
- Create and refine detection use cases, fine‑tune alerts to reduce false positives and broaden coverage.
- Conduct forensic investigations to determine root cause, scope, and impact of incidents.
- Lead proactive threat hunting and detailed phishing analysis across client environments.
- Produce incident reports for technical and client audiences, documenting findings and remediation actions.
- Review analysts’ work, mentor junior team members, and act as escalation point for complex cases.
- Utilize XDR and SIEM platforms to investigate, correlate, and mitigate threats.
- Present technical findings to clients and collaborate with internal and client teams to improve security posture.
- Support reporting and data analysis using Office 365 tools, especially Excel.
Required profile
- Minimum 4 years of experience in cybersecurity services, preferably within a SOC or incident response function.
- Hands‑on experience with XDR and SIEM technologies, including Palo Alto XSIAM, XSOAR and Microsoft Defender.
- Proven ability to develop playbooks, runbooks, detection use cases, and perform alert tuning.
- Strong incident response, forensic, threat hunting and phishing analysis capabilities.
- Experience reviewing analysts’ work and mentoring junior team members.
- Excellent communication and presentation skills for client‑facing interactions.
- Relevant certifications are a plus (e.g., CCD, BTL2, BTL1, OSCP, Palo Alto Networks XSIAM Engineer/Analyst, Microsoft SC‑200).
Required skills
- XDR platforms
- SIEM platforms
- Palo Alto XSIAM
- Palo Alto XSOAR
- Microsoft Defender
- Incident response and forensic analysis
- Threat hunting and phishing analysis
- Office 365, especially Excel
What we offer
- Continuous training in cutting‑edge technologies.
- Participation in large, complex projects with major market players.
- Access to DXC Learning, including free Udemy and LinkedIn courses and certifications.
- Hybrid working model (3 days in the office).
- Health insurance.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Portugal.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Published 1 month ago
Expires 1 week from now
70 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
DXC Technology
Oeiras