Sigma Software Group

Senior Cyber Security Analyst

Sigma Software Group  •  Warsaw, PL (Onsite)  •  1 day ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Company Description

As a Senior Cyber Security Analyst, you will join a team focused on identifying, investigating, and mitigating malicious web activity across large-scale digital environments. The role combines threat analysis, traffic investigation, detection engineering, and collaboration with customers and internal engineering teams to improve protection mechanisms and threat visibility.

You will work with high-volume traffic datasets, analyze suspicious behavior patterns, and contribute to the continuous improvement of security detections related to bots, fraud attempts, and other web-based threats.

CUSTOMER

Our client delivers advanced cybersecurity solutions designed to protect organizations, users, and digital ecosystems from evolving online threats. The company specializes in bot defense and anti-malvertising technologies for the AdTech industry, supporting SSPs, DSPs, agencies, and publishers through scalable protection platforms, customizable reporting tools, and API integrations.

PROJECT

The project focuses on real-time threat detection and bot mitigation for enterprise-scale clients. Cyber Security Analysts collaborate directly with customers, leveraging advanced analytics platforms to identify malicious traffic patterns and neutralize online threats. This dynamic environment requires both technical expertise and strong communication skills.

Job Description

  • Monitor and investigate potential security threats using tools such as Kibana/OpenSearch and Snowflake.
  • Analyze security logs and investigate suspicious or unusual activity, including spikes in traffic, unexpected changes in attack patterns, and new or disappearing attack signals. 
  • Determine whether detected activity is malicious or benign and identify the appropriate response, including detection engineering to block malicious activity when needed. 
  • Develop, tune, and deploy detection rules based on traffic behavior, HTTP request attributes, headers, device fingerprints, and other indicators to mitigate malicious activity.
  • Monitor existing detections and known attack patterns to make sure they continue to work as expected and identify any unusual changes in volume, sources, IPs, domains, or other indicators. 
  • Support customer onboarding by analyzing web application traffic flows and configuring baseline detection and protection rules.
  • Investigate customer-reported incidents and missed detections, analyze attack traffic, and implement mitigations to improve protection coverage.
  • Document newly discovered threats and attacks, including evidence, findings, and indicators.
  • Communicate findings to Engineering and other stakeholders and provide the necessary technical details to support remediation and improvements to detection and protection mechanisms. 
  • Partner directly with counterparts through a ticketing system and support portal to investigate issues, provide updates, and resolve security-related requests.

Qualifications

  • 3–5 years of experience in Cybersecurity, Threat Research, or Threat Intelligence
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Security, or a related field
  • Strong understanding of web technologies and networking fundamentals, including HTTP/HTTPS, TCP/IP, DNS, authentication, cookies, and browser-server interactions
  • Experience in web security research, bot management, fraud detection, or related domains
  • Hands-on experience with threat investigations, IOC analysis, and threat intelligence research
  • Experience with log analysis and investigation platforms such as Kibana/OpenSearch, Snowflake, Datadog, or similar tools
  • Strong SQL skills, including working with large datasets and UDFs
  • Basic knowledge of JavaScript for web and client-side analysis
  • Strong analytical and problem-solving skills
  • Ability to work independently and manage investigations with minimal supervision
  • Strong communication and collaboration skills
  • Passion for cybersecurity and continuous learning

NICE TO HAVE:

  • Knowledge of MITRE ATT&CK, malware analysis, vulnerabilities, and adversary TTPs
  • OSINT and cyber threat intelligence research experience
  • Python and Jupyter Notebook experience for investigations and automation
  • Experience with GitHub and version control workflows
Sigma Software Group

About Sigma Software Group

Sigma Software Group, an award-winning and trusted IT partner, has been serving customers for over 22 years, providing comprehensive IT solutions to various businesses, ranging from startups to established software product houses. As one of Europe's substantial IT consultancies, it brings together a dedicated workforce of over 2,100 professionals in 40 offices across 19 countries. With a diverse client base, including more than 300 enterprises, including Fortune 500 stalwarts, Sigma Software Group is a preferred choice for developing solutions that help businesses create cutting-edge products while meeting their unique needs.

Sigma Software Group operates as a dynamic ecosystem of tech companies, offering 25 ready-to-implement innovative products and 40+ value-added services. Furthermore, Sigma Software Group is committed to fostering innovation through initiatives such as the Sigma Software Labs business incubator, Sigma Software University, the SID Venture Partners VC Fund, UA Tech Network, Techosystem, the European Business Association, and other collaborative efforts.

Since 2015, Sigma Software Group has consistently earned recognition on the IAOP's prestigious World's Top 100 Outsourcing list. The company's accomplishments have also been acknowledged by prominent global media outlets such as Forbes, CNBC, The Times, and Reuters.

Industry
IT & Software
Company Size
1,001-5,000 employees
Headquarters
Stockholm, SE
Year Founded
2002
Social Media