Unlock Full Resume Report

New offer - be the first one to apply!

September 21, 2026

IT Security (SOC) Analyst

Mid • Hybrid

Prague, Czech Republic

Quick Facts

  • Role: IT Security (SOC) Analyst

  • Work model: Hybrid (Prague office + remote within Czech Republic)

  • Contract: Full-time; initial 1-year assignment with potential extension to an open-ended contract

  • Language: English required (Czech is a plus)

Description

Act as an escalation point in the SOC, owning escalated security events and leading investigations from alert validation through to resolution. You will validate alerts, determine impact and root causes, and provide technical input during incidents, including documentation and post-incident analysis. The role also focuses on improving incident response procedures, playbooks, and the maturity of detection and response capabilities.

Responsibilities

  • Lead in-depth investigation and response for escalated security incidents through to resolution, in coordination with relevant stakeholders.
  • Perform investigative analysis to validate alerts, assess impact, and identify root causes.
  • Collaborate with internal teams, incident coordination functions, and external service providers to ensure consistent SOC operations.
  • Provide clear and accurate technical input during incidents, including documentation, reporting, and post-incident analysis.
  • Develop and improve incident response procedures, playbooks, and technical standards based on industry best practices.
  • Refine processes, use cases, and day-to-day practices to support continuous maturity of detection and response.
  • Maintain situational awareness of security posture and the evolving threat landscape to inform response priorities.
  • Support additional security operations initiatives as required.

Requirements

  • 3+ years of SOC analyst experience (preferably within an internal SOC environment).
  • Hands-on incident analysis and response in enterprise-scale environments (on-premises, cloud, or hybrid).
  • Practical experience with security monitoring and response tools such as SIEM and EDR/XDR.
  • Ability to validate alerts, assess impact, and support incident containment and remediation.
  • Day-to-day security operations experience handling security events and alerts across multiple sources.
  • Working knowledge of operating systems, authentication flows, and networking fundamentals (TCP/IP, DNS).
  • Exposure to cloud platforms, including security logging and control mechanisms; ability to interpret cloud security signals.
  • Familiarity with scripting and automation (Python, PowerShell, or similar) for investigation/response/operations tasks.
  • English proficiency; Czech is a plus.

Benefits

  • Full-time position on a one-year assignment initially, with potential extension to an open-ended contract after one year.
  • Hybrid working model: Prague office work plus remote work in the Czech Republic.
  • Preferential consideration for candidates located in the Czech Republic who do not need a work visa.

Similar jobs you might like