Job Description

Company Description

Accesa is a leading technology company headquartered in Cluj-Napoca, with offices in Oradea and 20 years of experience in turning business challenges into opportunities and growth.

A value-driven organisation, it has established itself as a partner of choice for major brands in Retail, Manufacturing, Finance, and Banking. It covers the complete digital evolution journey of its customers, from ideation and requirements setup to software development and managed services solutions.

With more than 1,200 IT professionals, Accesa also has a fast-growing footprint, establishing itself as an employer of choice for IT professionals who are passionate about problem-solving through technology. Coming together in strong tech teams with a customer-centric approach, they enable businesses to grow, delivering value for our clients, partners, industry, and community.

Job Description

About the Team & Culture

You will be joining a team that operates as consultants and partners to our clients, helping them innovate their existing processes and tools. We are focused on efficiency, strong communication, and sustainable learning paths. You will have an impact on the project’s evolution and the chance to contribute your own ideas to build successful client relationships.

The Role

We are looking for a SOC Analyst - Level 2 with strong experience in deeper investigation, incident validation, response recommendations, targeted hunting, and hands-on guidance for the analysts around them.

This is the escalation and deeper-investigation analyst lane. It is expected to take technically demanding cases further than the Level 1 lane, improve case quality across the team, and help shape practical service improvements. It is not a baseline architecture role, and it is not the default owner of recurring detection content or day-to-day platform administration.

This role includes scheduled weekly on-call escalation coverage outside normal working or rota hours, according to the agreed service process.

Key Responsibilities

Operations (Threat Detection & Incident Response)

  • Lead the investigation of higher-severity, ambiguous, or fast-moving incidents across available security telemetry and case evidence
  • Determine likely root cause, affected identities and assets, probable scope, and the next actions that matter most
  • Use targeted hunting and hypothesis-testing workflows to validate suspicious activity and uncover related activity that is not obvious from the initial alert
  • Produce clear investigation records and evidence-based response recommendations that support timely decision-making through the customer approval path
  • Support clear customer-facing incident handling by turning technical findings into usable evidence summaries and next-step recommendations within the defined case path
  • Review escalations from Level 1 analysts and help move difficult cases forward without unnecessary reinvention
  •  Provide scheduled weekly on-call escalation support according to the agreed service process • identify visibility gaps, weak alert context, and recurring investigative friction that should feed into detection tuning, playbook refinement, or workflow improvement
  •  Propose practical automation ideas where repetitive investigation work can be made faster or more consistent
  • Support the technical growth of other analysts through case guidance, review, and operationally useful feedback

Qualifications

Required Skills:

  • Strong hands-on experience in SOC, MDR, or incident-response work
  • Practical depth in investigation across endpoint, identity, email, cloud, network, and case evidence
  • Strong analytical skills for investigation, hunting, and validating suspicious activity
  • Ability to assess scope, impact, and urgency in higher-severity cases
  • Ability to produce evidence-based recommendations and clear escalation or response records
  • Strong written and verbal communication in English
  • Ability to guide Level 1 analysts through technically difficult casework
  • Willingness and ability to participate in weekly on-call escalation coverage
  • Responsible AI literacy, including the ability to use approved AI-assisted workflows cautiously, validate outputs against source evidence, avoid entering customer-sensitive data into unapproved or public AI tools, and avoid treating AI output as evidence, approval, or authority
  • Ability to challenge weak AI-assisted analysis from others when it skips evidence validation, creates false confidence, or exceeds the approved operating model

Soft Skills:

  • Consultative Approach: Ability to explain technical risks to non-technical business stakeholders.
  • Communication: Excellent written and verbal communication in English (German is a strong plus).
  • Proactive Mindset: A history of self-driven learning (e.g., setting up a home lab, following security researchers).

Nice to Have:

  • 3-5+ years of relevant experience in cybersecurity operations, incident response, or MDR delivery
  • Hands-on exposure to Microsoft Sentinel, Microsoft Defender XDR, Cortex XSOAR, Elastic Security, Vectra NDR, or similar security operations platforms
  • Strong KQL or equivalent query-language experience for investigation and hunting
  • Experience with Logic Apps, SOAR workflows, or operational automation
  • Familiarity with ATT&CK-style analysis and coverage discussions
  • PowerShell or similar scripting experience for investigation support or workflow improvement • Microsoft SC-200, SC-100, AZ-500, or similar operational security certifications
  • German would be an advantage

Additional Information

At Accesa you can

Enjoy our holistic benefits program that covers the four pillars that we believe come together to support our wellbeing, covering social, physical, emotional wellbeing, as well as work-life fusion.

  • Physical Wellbeing: Our wellbeing program includes medical benefits, gym support, and personalised fitness options for an active lifestyle, complemented by team events and the Healthy Habits Club.
  • Work-Life Fusion: In very dynamic industries such as IT, the line between our professional and personal lives can quickly become blurred. Having a one-size-fits-one approach gives us the flexibility to define the work-life dynamic that works for us.
  • Emotional Wellbeing: We believe that to maintain our overall health, we need to invest in our mental wellbeing just as much as we do in our physical health, social connections or in achieving work-life balance.
  • Social Wellbeing: As a growing community in a hybrid environment, we want to ensure we remain connected not just by the great work we do every day but through our passions and interests.
Share this job:
Please let accesa.eu know you found this job on Remote First Jobs 🙏

6 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like accesa.eu

Find your next opportunity with companies that specialize in Cloud Solutions, Custom Development In Microsoft Azure​, Custom Development In Aws, and Sap Commerce Cloud (hybris) Platform Development. Explore remote-first companies like accesa.eu that prioritize flexible work and home-office freedom.

Callibrity Logo

Callibrity

A software consultancy specializing in custom software development, cloud consulting, and legacy modernization services.

View company profile →

Designs and builds data products and custom software for Fortune 500 and mid-market companies.

View company profile →
iHorizons Logo

iHorizons

Provides business solutions and technology services, including AI, cloud infrastructure, and software development, across MENA.

View company profile →
Inventive Works, LLC Logo

Inventive Works, LLC

Custom software applications and cloud migration services for businesses of all sizes.

View company profile →
Parkar Logo

Parkar

201-500 parkar.in

Enabling enterprises to build data and AI capabilities through modern platforms, intelligent automation, and outcome-driven engineering.

View company profile →
8th Light Logo

8th Light

Designs, develops, and deploys tech solutions, partnering with clients for digital product transformation.

View company profile →

Project: Career Search

Rev. 2026.6

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply