Security Operations Engineer
Offer summary

(Summary generated by AI based on the full job description)

The project focuses on security operations and incident response across infrastructure and services. Key technologies are SIEM (e.g., Elastic, Splunk, Datadog, Sentinel), EDR (e.g., CrowdStrike, SentinelOne, Wazuh), AWS/GCP security (CloudTrail, GuardDuty, IAM), vulnerability scanners (Nessus, Qualys) and container security (Docker, Kubernetes). Responsibilities include monitoring and triaging alerts, investigation and containment, tuning detection rules, access reviews and IAM audits, maintaining runbooks, supporting SOC 2/ISO 27001, coordinating vulnerability remediation and collaborating with DevOps on hardening. Offered: competitive salary, remote-first setup, dedicated budget for security tooling and training and a growth path toward detection engineering and security architecture.

newyou can start ASAP

Security Operations Engineer

Company: Fun Crafters

from: 23 September 2026
to: 23 October 2026
salary not specifiedB2B contract (full-time)
salary not specifiedcontract of employment
Offer parameters
level:mid
working mode:remote
Kraków, Prądnik Czerwony
Kraków, Prądnik CzerwonyPromienistych 1View on map

Requirements

Expected technologies

SIEM platform
EDR platform
Nessus
OpenVAS
Qualys
AWS
GCP
Python

Optional technologies

Tines
Shuffle
Splunk SOAR
Zeek
Suricata
Wireshark
Cloudflare Access
Tailscale
NetBird

Operating system

Windows
macOS
Linux

Our requirements

  • 2+ years in a security operations, SOC, or similar role
  • Experience with at least one SIEM platform (e.g., Elastic SIEM, Splunk, Datadog Security, Microsoft Sentinel)
  • Experience with alert triage, log analysis, and basic threat hunting
  • Familiarity with the MITRE ATT&CK framework for incident classification
  • Experience with at least one EDR platform (e.g., CrowdStrike Falcon, SentinelOne, Wazuh)
  • Experience with vulnerability scanning tools (e.g., Nessus, OpenVAS, Qualys)
  • Working knowledge of AWS or GCP security controls (e.g., Security Groups, IAM, CloudTrail, GuardDuty)
  • Operational-level Windows & Linux administration (e.g., log analysis, process inspection, basic system hardening)
  • Familiarity with containerized environments (Docker, Kubernetes) from a security perspective
  • Experience supporting SOC 2 or ISO 27001 audits
  • Ability to write clear incident reports, runbooks, and policy documentation
  • Experience with access review processes and IAM audits
  • Scripting proficiency in Bash or Python for operational automation (e.g., log parsing, report generation)
  • No advanced software development experience required

Optional

  • Experience with SOAR platforms (e.g., Tines, Shuffle, Splunk SOAR)
  • Experience with network traffic analysis tools (e.g., Zeek, Suricata, Wireshark)
  • Familiarity with threat intelligence feeds and IOC management
  • Experience with zero-trust tools (e.g., Cloudflare Access, Tailscale, NetBird)
  • Relevant certifications (e.g., CompTIA Security+, CEH, GCIH)

Your responsibilities

  • Monitor and triage security alerts from SIEM, EDR, and cloud security tools
  • Investigate security incidents, contain threats, and contribute to post-incident reviews
  • Maintain and tune detection rules to improve signal quality and reduce false positives
  • Track and coordinate vulnerability remediation across infrastructure and services
  • Perform access control reviews, privileged account audits, and maintain IAM hygiene
  • Maintain security runbooks, playbooks, and incident response documentation
  • Support SOC 2 and ISO 27001 audits, including evidence collection, control validation, and gap remediation
  • Conduct scheduled internal security assessments and assist with penetration test scoping
  • Collaborate with DevOps on system and cloud configuration hardening

About the project

We are looking for a Security Operations Engineer to monitor, detect, and respond to threats across our infrastructure and services. You will own security monitoring and incident response, including SIEM operations, alert triage, and threat investigation. You will work closely with DevOps and engineering teams to improve detection capabilities and strengthen system security.

This is how we organize our work

This is how we work

in houseyou have influence on the choice of tools and technologiesyou have influence on the technological solutions applied

Team members

backend developerfullstack developertechnical leader
Company

What we offer

  • Competitive salary
  • Remote-first, async-friendly team
  • Dedicated budget for security tooling and training
  • Clear growth path toward Senior SecOps or DevSecOps Engineer, with increasing ownership of detection engineering, automation, and security architecture

Benefits

  • private medical care
  • sharing the costs of foreign language classes
  • sharing the costs of professional training & courses
  • remote work opportunities
  • flexible working time
  • fruits
  • integration events
  • no dress code
  • coffee / tea
  • drinks
  • parking space for employees
  • employee referral program

Recruitment stages

  • 1.
    HR Interview
  • 2.
    Technical interview
  • 3.
    Third interview
  • 4.
    Information about the decision
Security Operations Engineer
I apply to:
Fun Crafters
Kraków, Prądnik Czerwony
Pracodawca zbiera zgłoszenia przez swój system.
Przejdziesz na zewnętrzny formularz.

By clicking "Aplikuj" you confirm that you've read and accepted our Terms and Conditions.



This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Need more information?

  • Make sure the body of the offer doesn’t already include what you’re looking for.
  • Ask a question if you need more information you’re interested in.
  • We’ll forward your question to the employer and aim to provide a response within 3 business days.

Share this offer