Cyber Security Analyst

Job type:Permanent
Town/City:Stuttgart
Region:Baden-Württemberg
Sector:Cyber Security
Client Company Type:Consulting
Job ref:8246
Post Date:February 9, 2026

About the Role

Cyber Security Analyst
Location: Stuttgart

A role that inspires you

Join a Cyber Security Operations team protecting modern cloud infrastructures in complex, international environments. As a Cyber Security Analyst, you will focus on advanced detection and response, helping to identify, contain, and prevent real cyber threats across critical systems.

Key Responsibilities:

  • Monitor and analyse security alerts in a 24/7 SOC environment, including on-call rotations (Tier 1/2).
  • Perform incident triage and validation using logs, telemetry, and contextual data.
  • Escalate confirmed or high-risk incidents to Tier 3 / Incident Response teams.
  • Support forensic investigations, root-cause analyses, and containment activities.
  • Develop, test, and refine detection rules and use cases aligned with MITRE ATT&CK.
  • Participate in threat hunting and purple team activities.
  • Develop and improve playbooks, runbooks, and cloud-specific response processes.
  • Create dashboards and KPIs, analyse trends, and derive improvements from lessons learned.

Your Profile:

  • Degree in computer science, IT security, or a comparable qualification, or equivalent practical experience.
  • 2–4 years’ experience in a SOC or cyber security operations environment.
  • Hands-on experience in alert triage, incident response support, and detection rule development.
  • Scripting skills in Python, PowerShell, or Bash.
  • Strong knowledge of cloud security (Azure, AWS, or GCP) and container technologies (Docker, Kubernetes).
  • Solid understanding of networking, Linux, and common security controls.
  • Experience with SIEM platforms and threat intelligence tools.
  • Willingness to travel and participate in on-call duties.
  • Very good German and English skills.
  • Security clearance (SÜ2) or willingness to obtain it.

What’s on Offer?

  • A hands-on role in modern cyber security operations.
  • Exposure to real-world threats in cloud-based environments.
  • Competitive remuneration and modern working conditions.
  • Flexible working arrangements, including mobile working options.

More Jobs from this Recruiter

NRW , Nordrhein-Westfalen

Senior IAM Architect

  Senior IAM Architect Our client is a large international organisation seeking an Enterprise Security Architect to join their Group Information Security function, with a focus on Identity and Access Management. You will sit within the Security Architecture department, responsible for the domain-specific development and ongoing enhancement of a group-wide security architecture, with the goal of ensuring and continuously improving IT security and cyber resilience across the organisation. Key Responsibilities: Analyse cybersecurity IAM trends relevant to the organisation, including regulatory developments and emerging technologies such as AI, Cloud and Non-Human Identities Produce IAM-specific risk assessments as part of technical security architecture design, covering cost, benefit and risk reduction Evaluate IAM threat scenarios and design high-level IAM security architectures, including standards, baselines and reusable artefacts such as patterns and blueprints Drive stakeholder alignment and steer solution design and implementation as subject matter expert, including presenting in group-wide security forums Assess IT security posture against best practices and provide actionable recommendations aligned to ISO and NIST frameworks Your Profile: Degree in Computer Science or a comparable qualification Extensive experience in the Identity and Access Management domain, ideally including proven delivery of IAM architecture within large organisations Strong background in security architecture roles, covering both technology-specific and enterprise-level architecture including target state definition and roadmaps Hands-on experience with IAM platforms and tooling, ideally including: IAM: Microsoft Entra ID / Active Directory, Ping Identity, Okta PAM: CyberArk / BeyondTrust IGA: SailPoint / Oracle OIG Zero Trust: NIST 800-207 Understanding of attacker mindset and offensive security; certifications such as OSCP, CEH or equivalent are advantageous Ability to work independently and take ownership of complex technical topics Strong problem-solving mindset with a structured, solution-oriented approach Fluent in English; German language skills are an advantage
Learn More
Bavaria, Bayern

SOC Lead

Director SOC Our client is a large international organisation seeking a senior leader for the newly created role of Director Security Operations. This is a central function responsible for overseeing and managing security vulnerabilities across the organisation's security landscape. You will be accountable for effective monitoring, detection and management of vulnerabilities across Cyber and Product Security, ensuring clear, organisation-wide visibility of threats and weaknesses to enable the relevant teams to act. The focus of this role is transparency, prioritisation and consistent follow-through — direct remediation and incident response are outside its scope. Key Responsibilities: Drive the development of organisation-wide security monitoring and detection capabilities Lead the enterprise vulnerability management framework, ensuring systematic identification, prioritisation and tracking of vulnerabilities across IT, cloud and product environments Build and operate a new Product Security Testing Centre, establishing scalable services for vulnerability analysis and penetration testing Provide decision-relevant situational reporting for IT operational security, product security, system owners and senior leadership including the CISO Act as the escalation point for systemic or uncontrolled vulnerabilities, ensuring transparency and clear accountability Your Profile: Proven experience leading functions in security monitoring, threat detection or vulnerability management Strong working knowledge of SIEM, vulnerability scanning and enterprise-scale testing platforms Experience independently leading an organisation-wide vulnerability management programme with the ability to prioritise on a risk basis Familiarity with product security testing, including penetration testing or fuzzing Track record of building scalable, repeatable operational processes with a focus on signal quality over tool proliferation
Learn More
Frankfurt, Hessen

Cloud Security Expert

Cloud Security Expert  Location: Frankfurt A role that inspires you Join a forward-looking organisation as Cloud Security Expert within the Second Line of Defence. In this independent oversight function, you will assess, challenge, and strengthen cloud security frameworks, ensuring that cloud environments are resilient, compliant, and aligned with enterprise-wide risk governance standards. Key Responsibilities: Act as a Second Line of Defence function providing independent oversight of cloud security risks. Define and maintain cloud security policies, standards, and control frameworks. Conduct independent risk assessments of cloud architectures, configurations, and deployments (e.g. AWS, Azure, GCP). Review and challenge First Line cloud implementations and security controls. Assess risks related to identity and access management, data protection, encryption, and network security in cloud environments. Ensure alignment with regulatory and cybersecurity requirements. Establish monitoring, reporting, and escalation mechanisms for cloud-related risks. Support incident oversight and review root-cause analyses from a governance perspective. Provide expert guidance and training on secure cloud adoption practices. Your Profile: Degree in computer science, cyber security, or a related technical discipline. Several years of experience in cloud security, cyber risk, or security governance. Strong knowledge of major cloud platforms (AWS, Azure, or GCP) and cloud security principles. Experience with security frameworks and control standards (e.g. ISO 27001, NIST, CIS). Familiarity with regulatory requirements in regulated environments is advantageous. Analytical mindset with the ability to independently assess and challenge technical implementations. Strong communication and stakeholder management skills. Fluent English skills; German is an advantage. What’s on Offer? A high-impact Second Line role with organisation-wide visibility. Opportunity to shape cloud security governance and risk oversight. Collaboration with technical and risk teams in a modern cloud-driven environment. Long-term development within a strategically important security function.
Learn More

Latest Blogs

View all blogs