Analyst (Tier 2) - Cybersecurity Operations
Offer summary

(Summary generated by AI based on the full job description)

The project focuses on Cyber Security Operations within a large enterprise environment. Tools used include Qradar SIEM, Cortex XSOAR, SentinelOne, Proofpoint Email, Azure Suite, Zscaler. Responsibilities include incident analysis, security monitoring, threat response following frameworks such as NIST Incident Response, Cyber Kill Chain, ATT&CK. Required skills include network traffic and log analysis and holding an active security certification.

from: 17 August 2026
to: 16 September 2026
salary not specifiedcontract of employment (full-time)
Offer parameters
level:mid • senior
working mode:hybrid
location:Kraków, Lesser Poland
Kraków, Lesser Poland

Requirements

Operating system

Windows

Our requirements

  • 2-4 years of experience on one of the following team(s): Computer Incident Response Team (CIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Center (CSIRC) or a Security Operations Center (SOC)
  • Degree in Computer Science, Information Technology, or equivalent work experience
  • Experience supporting Cyber Security Operations in a large enterprise environment
  • Experience with Incident Response, analysis of network traffic, log analysis, ability to prioritize and differentiate between potential intrusion attempts and false alarms, managing and tracking investigations to resolution
  • Experience with SIEM & Log Management solution
  • Familiarity with one of the following; NIST Incident Response Lifecycle, Cyber Kill Chain, Adversarial Tactics, Techniques & Common Knowledge (ATT&CK) Metrics
  • CCNA Security, GCIA, GCIH, CYSA+, Security+ or other related security certifications
  • At minimum there must be one active security certification
  • Technical writing experience:
  • Standard Operating Procedures
  • Runbooks/Playbooks
  • Incident Response Plans
  • Support training develop with both analysts and tabletop exercises
  • Assist or lead the effort in Tool configuration and content creatio
  • Experience with one or more of the following tools:
  • Qradar SIEM/Cortex XSOAR
  • SentinelOne
  • Proofpoint Email
  • Azure Suite
  • Zscaler

Your responsibilities

  • Correlate threat data from various sources to establish the threat/impact against the network.
  • After assessment of the data, recommend appropriate countermeasures, facilitating tracking, preliminary handling of investigations, and reporting of all security events and computer incidents.
  • Remediation actions and apply lessons learned to security incident investigation and resolution
  • Perform monitoring, identification and resolution of security events to detect threats through analysis, investigations and prioritization of events based on risk/exposure
  • Develop processes which analyzes data, producing accurate, meaningful, easily interpreted results based on user requirements and use cases
  • Develop processes which align with enterprise incident response activities and coordinate closely with other teams within the Security Operations Center
  • Create custom tool content to enhance capabilities of security operations teams
  • Manage the collection, documentation and research of security events generated by the SOC monitoring platform and infrastructure
  • Provide support to Security Incident Management aligned with NIST standards

About the project

Working Hours: 09.00 am to 07.00 pm local time

This is how we organize our work

This is how we work

agile
1. A recruiter will review your application and have an initial conversation with you.
2. You will meet with the Hiring Manager and/or team to discuss the role and your experience.
3. You will meet with the relevant leads to discuss your technical expertise and behavioral
competencies.
4. If successful, we will discuss the final offer and next steps with you.
Company

What we offer

  • Be part of a global cybersecurity team protecting a dynamic enterprise environment.
  • Opportunity to work with modern security technologies and drive tool innovation.
  • Collaborative culture with professional development opportunities.
  • Hybrid work model with our Kraków office as the primary location.

Recruitment stages

  • 1.
    Initial recruiter screening
  • 2.
    Hiring Manager/Team interview
  • 3.
    Technical/Behavioral interview
  • 4.
    Final offer

SYSCO SERVICE CENTRE POLAND SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ

Sysco is the global leader in selling, marketing and distributing food products to restaurants, healthcare and educational facilities, lodging establishments and other customers who prepare meals away from home. Its family of products also includes equipment and supplies for the foodservice and hospitality industries. With more than 71,000 colleagues, the company operates 333 distribution facilities worldwide and serves approximately 700,000 customer locations. For fiscal year 2022 that ended July 2, 2022, the company generated sales of more than $68 billion. Information about our Sustainability program, including Sysco’s 2022 Sustainability Report and 2022 Diversity, Equity & Inclusion Report, can be found at www.sysco.com.

This is how we work

Analyst (Tier 2) - Cybersecurity Operations
I apply to:
SYSCO SERVICE CENTRE POLAND SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ
Kraków, Lesser Poland
Pracodawca zbiera zgłoszenia przez swój system.
Przejdziesz na zewnętrzny formularz.

By clicking "Aplikuj" you confirm that you've read and accepted our Terms and Conditions.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Need more information?

  • Make sure the body of the offer doesn’t already include what you’re looking for.
  • Ask a question if you need more information you’re interested in.
  • We’ll forward your question to the employer and aim to provide a response within 3 business days.

Share this offer