Back to Jobs
Posted 1 week ago
Endava

Lead Cyber Security Analyst

Undisclosed
Estimate 1,550 - 3,750 EUR Gross / month · Based on 51 similar listings
Timișoara, TM, Romania
Office
Full-time

Required technologies

Job description

This position is based in Timișoara, TM, Romania, Romania.

We are looking for a lead Lead Cyber Security Analyst.

We offer a full-time position.

Additional information

Job Description The Senior SOC Analyst is a Tier 2 cybersecurity specialist responsible for advanced incident investigation, threat hunting, and guiding SOC operations to protect enterprise systems and networks. This role involves acting as the escalation point for L1 analysts, leading complex investigations, and driving improvements in security detection, response, and prevention strategies. The Senior SOC Analyst also mentors junior staff and collaborates with cross-functional teams to strengthen the organization's security posture. Responsibilities: - Lead triage, investigation, and containment of complex security incidents escalated from L1. - Lead Security Incidents and coordinate Incident Response - Coordinate with stakeholders to contain, eradicate, and recover from security incidents. - Conduct root cause analysis, malware analysis, and advanced forensics (network, endpoint, and cloud). - Develop and refine incident response playbooks. - Proactively hunt for threats using SIEM, EDR, and threat intelligence feeds. - Support the creation and optimization of detection rules, correlation logic, and automation scripts. - Perform gap analysis to improve detection capabilities. - Monitor and analyze security alerts from SIEM, IDS/IPS, EDR, DLP, and other security platforms. - Correlate events across multiple data sources for accurate threat assessment. - Support audits, compliance checks, and risk assessments. - Mentor and train SOC L1 analysts on investigation techniques and tools. Qualifications Experience: - 3+ years in cybersecurity, with at least 2 years in SOC/Incident Response. - Advanced knowledge of SIEM, EDR, IDS/IPS, DLP, IAM, and cloud security tools. - Hands-on experience in malware analysis, memory forensics, and log analysis. - Strong understanding of network protocols, secure configurations, and common attack techniques (MITRE ATT&CK). - One or more of the following certifications: OSCP, GCIA, GCIH, CEH, CompTIA Security+, CompTIA Cysa, CISSP, Security Blue Team L1/L2 - Familiarity with cloud environments (AWS, Azure, GCP) and container security Additional Skills: - Strong problem-solving and analytical skills. - Ability to remain calm and decisive during high-pressure incidents. - Excellent communication skills, both technical and non-technical. - Continuous learning mindset and willingness to explore new tools and methods. Additional Information Discover some of the global benefits that empower our people to become the best version of themselves: - Finance: Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus; - Career Development: Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership; - Learning Opportunities: Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences; - Work-Life Balance: Hybrid work and flexible working hours, employee assistance programme; - Health: Global internal wellbeing programme, access to wellbeing apps; - Community: Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations. At Endava, we’re committed to creating an open, inclusive, and respectful environment where everyone feels safe, valued, and empowered to be their best. We welcome applications from people of all backgrounds, experiences, and perspectives—because we know that inclusive teams help us deliver smarter, more innovative solutions for our customers. Hiring decisions are based on merit, skills, qualifications, and potential. If you need adjustments or support during the recruitment process, please let us know. Company Description Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change. By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses. From prototype to real-world impact - be part of a global shift by doing work that matters.

About Company Endava

Endava is a leading provider of next-generation technology services, dedicated to enabling its customers to accelerate growth, tackle complex challenges and thrive in evolving markets.
Work setups
Office
Offices in: Iași, IS, Romania, Cluj-Napoca, CJ, Romania, Brașov, BV, Romania, Timișoara, TM, Romania

Compensation

Undisclosed
Estimate 1,550 - 3,750 EUR Gross / month
Based on 51 similar listings

Contract details

Employment type Full time
Contract type Full-time employee

Pre-apply checklist

Quickly verify the listing has the essentials so you can compare offers fairly.

  • Is the salary gross or net, and what period is it for?
  • Is it employee (CIM) or contractor (B2B/PFA/SRL)?
  • What does “remote/hybrid” mean in practice (office days, overlap)?
  • Is the scope and seniority level clear?

Flag missing or inconsistent details so the listing stays accurate.

How to evaluate this job (beyond the title)

A strong application is not just “I know the stack”. It’s proof you can deliver outcomes in this specific context: team setup, constraints, seniority expectations, and the way success is measured. Use this checklist to decide whether to apply and what to highlight.

Clarify scope and expectations

Many ads are intentionally broad. Your job is to identify the core responsibilities and whether they match your strengths today.

  • Look for ownership signals: “design”, “architecture”, “lead”, “on-call”, “mentoring”.
  • Check if the role is feature delivery vs platform/infra vs maintenance.
  • If the description is short, use company size + industry + stack to infer the likely day-to-day.

Validate work setup and collaboration

Remote/hybrid/office labels are not enough. The real constraints are overlap hours, office days, and communication style.

  • Confirm whether “remote” is worldwide/EU/Romania-only and whether overlap hours are required.
  • For hybrid roles, ask how many days per week and whether they are fixed or flexible.
  • Check language requirements and cross-team dependencies (product, design, stakeholders).

Compare compensation realistically

To compare two offers, normalize everything to the same baseline and contract type. If salary is undisclosed, build a range based on market and validate early.

  • Normalize gross vs net and month vs year before you compare.
  • For B2B, account for taxes, accounting, unpaid time off, and risk.
  • Use market data as a sanity check, then negotiate with evidence (impact, scope, seniority).

Useful links for your decision

These pages help you sanity-check salary ranges and contract choices (especially when switching between employment and B2B).