SOC Engineer L3

aiopsgroup· Security&Infrastructure
Apply Now ↗
📍 Hybrid📍 Sofia, Bulgaria, BulgariaEmployee

About this role

About us:

AIOPSGROUP, a valantic company, is a multidisciplinary digital competency center that builds extensive e-commerce expertise and a track record of successfully delivered projects. We provide specialized services at the intersection of e-commerce, data, and technology. Our portfolio includes Consulting, Customer Acquisition & Retention, Commerce Implementation, CX Monitoring, and 24/7 Support Services. We are committed to helping global enterprise clients achieve sustainable digital growth, while maintaining strong client relationships and delivering meaningful results.


valantic is a leading provider of digital transformation services and one of the most dynamic companies in the fields of digital solutions, consulting, and software. The company is trusted by numerous major brands and internationally recognized organizations. With its unique structure of divisions, competence centers, and expert teams, valantic offers solutions tailored precisely to the digitalization needs of modern businesses—from strategy to implementation.

 

What Are You Going to Do?

We are looking for a seasoned Senior Security Operations Analyst to join our Security team and take ownership of our most complex security challenges — from leading major incident response and proactive threat hunting to detection engineering and digital forensics. As a senior member of the team, you will also play a key role in mentoring Tier 1 and Tier 2 analysts, helping to build a stronger and more resilient security function.


Please note that this role may require on-call shifts availability.

 

Main Responsibilities:

  • Major Incident Response: Lead and coordinate cross-functional teams during severe security breaches, ransomware attacks, or insider threat incidents, ensuring swift containment and effective resolution
  • Proactive Threat Hunting: Design and execute hypothesis-driven threat hunting exercises to uncover hidden threats that evade automated security tools, continuously strengthening the organization's defensive posture.
  • Detection Engineering: Optimize SIEM logic, tune threat intelligence feeds, and develop custom correlation rules and automation playbooks to enhance the accuracy and efficiency of threat detection.
  • Digital Forensics & Malware Analysis: Conduct in-depth forensic investigations to reconstruct multi-stage intrusions and analyze malicious code, providing actionable insights to prevent future incidents.
  • Mentorship: Provide ongoing guidance, coaching, and training to Tier 1 and Tier 2 analysts, fostering a culture of continuous learning and professional development within the security team.

 

What Do We Expect?

  • Technical Domains: Deep architectural understanding of network protocols, operating system internals (Windows/Linux), cloud ecosystem components, and distributed endpoint telemetry.  
  • Tooling Expertise: Proven proficiency navigating and exploiting advanced SIEMs like Microsoft Sentinel, enterprise EDR/XDR suites like MS Defender, SOAR platforms, and deep-dive packet analysis tools like Wireshark.  
  • Soft Skills: Demonstrated ability to coordinate, command, and guide both technical engineering cells and business units under extreme operational pressure. Strong strategic thinking and clear executive communication.  

 

Nice to have (big advantage):

  • Advanced Incident Capabilities: Proven background executing live disk/memory forensics and parsing obfuscated malicious binaries via static and dynamic analysis.  
  • Elite Certifications: Advanced industry certifications such as GIAC (GCFA, GCIH), CISSP, or equivalent high-tier defensive engineering credentials. 

 

Why Join Us?

  • Competitive remunerations and benefits package
  • Opportunity to grow your career and get exposure to international brands, working on complex multi-technology projects
  • Friendly, yet competitive work environment where everyone’s success is celebrated
  • Flexible working hours/working location

Frequently Asked Questions

Is the salary disclosed for the SOC Engineer L3 position at aiopsgroup?
The salary for this SOC Engineer L3 role at aiopsgroup is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the SOC Engineer L3 position at aiopsgroup located?
This SOC Engineer L3 role at aiopsgroup is based in Hybrid, Sofia, Bulgaria, Bulgaria. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the SOC Engineer L3 role at aiopsgroup full-time or part-time?
This is listed as a Employee position. It is posted as a SOC Engineer L3 role in the Security&Infrastructure department at aiopsgroup.
Which team or department does the SOC Engineer L3 at aiopsgroup belong to?
This SOC Engineer L3 position is part of the Security&Infrastructure department at aiopsgroup. See the full job description for more information about the team structure and responsibilities.
How do I apply for the SOC Engineer L3 position at aiopsgroup?
Click the "Apply Now" button on this page. You will be redirected to aiopsgroup's official application portal hosted on bamboohr where you can submit your application directly.
When was the SOC Engineer L3 job at aiopsgroup posted?
This SOC Engineer L3 position at aiopsgroup was posted on Jun 15, 2026. Apply as soon as possible — early applications are often reviewed first.
SOC Engineer L3
aiopsgroup
Apply for this role ↗

You'll be redirected to aiopsgroup's official application page on bamboohr.