Cybersecurity Analyst @ Telefónica Tech
Nov 2025 — Present · Madrid · Hybrid
SOC analyst in a 24/7 environment, managing and analyzing security incidents for multiple clients. Technical reference within the SOC, supporting N1 analysts.
- Detect, triage and respond to security alerts for a multi-client SOC operating 24/7.
- Work across major SIEM platforms: Microsoft Sentinel, RSA NetWitness, Splunk ES, ArcSight, QRadar, Google SecOps, XSIAM, McAfee, Akamai and NG SIEM.
- Investigate endpoints using EDR/XDR solutions: Microsoft Defender for Endpoint, Cortex XDR, CrowdStrike Falcon and Cytomic.
- Monitor OT/ICS environments with Nozomi Networks.
- Act as technical reference for the SOC, supporting N1 analysts and escalating complex cases.