
What we propose
DIGIT CERT-EU is looking for a proactive Security Operations Centre analyst with demonstrated expertise in monitoring, analysing, and triaging security events within multi-entity and heterogeneous environments:
- Monitor security alerts and events from various sources including cloud security tools, firewalls, IDS/IPS, and other security platforms.
- Perform initial triage and in-depth analysis of suspicious activities.
- Correlate events across multiple data sources to identify patterns and potential incidents.
- Leverage internal and external threat intelligence to enrich investigations.
- Act as a primary point of contact for Union entities regarding security events and investigations.
- Contribute to the improvement of SOC processes, playbooks, runbooks, and automation workflows.
- Participate to the detection engineering effort enhancing detection rules and use cases to improve coverage and reduce false positives.
Who we look for
We are looking for a candidate who will demonstrate some of the following required skills and characteristics:
- Experience in monitoring, analysing, and triaging security events within a SOC or similar operational security environment.
- Hands-on experience with public cloud or on-premises SIEM platforms (e.g., log analysis, query writing, alert investigation, dashboard interpretation).
- Experience managing security incidents such as phishing, impersonation, typo squatting, malware alerts, or suspicious login activity, following established investigation and escalation procedures.
- Working knowledge of macOS, Linux, and Windows operating systems, including log analysis and common attack techniques.
- Basic to intermediate experience with Python, automation platforms, or other scripting/programming languages to support automation, data analysis, and process improvement.
- Ability to clearly document investigations, summarize findings, and communicate effectively with stakeholders.
- Proactive attitude toward improving detection capabilities, reducing false positives, and enhancing SOC processes.
The ideal candidate will possess some, or all, of the following:
- A university degree in IT and at least 3 years of hands-on professional experience in a SOC or CSIRC team.
- Work experience within a MSSP-like environment.
- A high level of customer orientation.
- Strong analytical and problem-solving skills, including the ability to deal with a large amount of information in a limited time.
- Ability to establish and maintain effective working relations with coworkers in an international and multi-disciplinary work environment.
- A high degree of commitment and flexibility.
- Work experience in a complex public sector environment.
- Excellent communication skills in English, both orally and in writing.
- Experience in delivering trainings and public presentations.
- A focus on constant learning and improvement of technical and personal skills.
- Experience with a vast array of IT technologies and the ability to quickly master new ones.
The candidate must hold a security clearance at EU SECRET level or be in a position to be security cleared.
What we offer
- A friendly and multicultural workplace
- A stimulating and unique environment where personal development, growth and initiative are encouraged
- Continuous learning opportunities
- Working with a supportive and dynamic team with a deep sense of mission
- Flexible scheduling with the possibility to work from home on a part-time basis
- An attractive salary.
Consult the Jobs at the European Commission page for more information on the working conditions. Please note that the position is based in Brussels, Belgium. Full remote work is not possible at this time.
Are you eligible
To apply, you have to:
- Be a national of one of the Member States of the European Union
- Be able to provide a certificate of good conduct
- Have fulfilled any legal obligations related to military service
- Be able to produce evidence of thorough knowledge of one of the official EU languages (level C1) and satisfactory knowledge of a second official EU language (level B2).
Additionally, to be recruited as a contract agent, you must have:
For function groups II and III
You must meet one of the following criteria:
- Hold a post-secondary education diploma
- Meet both of the following conditions:
- Hold a secondary education diploma that provides access to post-secondary education, and appropriate professional experience of at least three years
- Have professional training or professional experience of an equivalent level, where justified in the interest of the service.
For function group IV
You must meet both of the following criteria:
- Hold a university degree corresponding to completed university studies of at least three years attested by a diploma
- Have professional training of an equivalent level, where justified in the interest of the service.
If so, then apply!
- Send an email to secretariat@cert.europa.eu with your CV (and a motivation letter in a single pdf). Please provide the title of the position you are applying for in the subject of your email.
- If your skill set matches the requirements, your CV will be shortlisted for further evaluation, and you will need to take a CAST test. Worry not, our wonderful secretariat will supply all the necessary information.
- If you are successful at the CAST, your application will be reviewed for further consideration.