InterviewHack.ai
Start free
Jobs / Happyrobot.ai

SOC Analyst

Happyrobot.ai · MadridRemotemid

In short

  • ▸Analista de Seguridad (SOC) enfocado en triage rápido y preciso de alertas.
  • ▸Días típicos: analizar logs, investigar incidentes, comunicar con claridad y mejorar procedimientos.
  • ▸Destacado: operas en un equipo con alto impacto real, donde el error tiene consecuencias inmediatas.

Escritura clara de informes e incidentes en inglés (B2+)

Apply on company site ↗Share on WhatsApp

In ~1 minute you get: who interviews you, the likely questions answered from your CV, and your CV tailored to this job. Free, no card.

🎧Land the interview? Bring the copilot. Our free extension listens to the live interview and flashes 3-4-word anchors from your resume and prep — glance, connect, talk. Get the extension →

What they ask for

  • ✓2–3 años como analista de SOC o en equipo azul.
  • ✓Experiencia práctica en triage de alertas con SIEM y EDR.
  • ✓Análisis de logs en nube, identidad y endpoints.
  • ✓Conocimiento de MITRE ATT&CK y patrones de ataque comunes.
  • ✓Escritura clara de informes e incidentes en inglés (B2+).
  • ✓Disponibilidad para turnos de cobertura.

Don't tick every box? That's normal — your free dossier shows your gaps and how to cover them in the interview.

SIEMEDRAWSAzureGCPMITRE ATT&CKPythonBashRunbooksSOC 2

Who should you write to at Happyrobot.ai?

Your free dossier identifies the people who'd interview you — their background, what they value, and how to reach out so you stand out before applying.

ABOUT HAPPYROBOT HappyRobot is the infrastructure for enterprises to build and orchestrate AI workforces. Our AI workers don't just communicate through voice and email - they make decisions, take action, and run operations autonomously across entire enterprise systems. Born in Y Combinator (S23) and backed by a16z, Base10, Prysm Capital and Eurazeo with over $150M raised, we power critical operations for global enterprises worldwide. Our platform is battle-tested in the most demanding environments, where AI has real consequences. We started in logistics, built our own voice stack, models, and orchestration layer from the ground up, and are now bringing that infrastructure to every enterprise that runs the real economy. Learn more about our vision in our manifesto. https://www.happyrobot.ai/blog/manifesto   ROLE OVERVIEW We are looking for a SOC Analyst to join our team. You will be the consistent, accountable owner of alert triage during coverage hours — bringing the speed, rigor, and communication discipline that transforms alert handling from a best-effort scramble into a reliable, measurable function. This is not a detection engineering or research role. Your deepest strength is triage: prioritizing fast, distinguishing signal from noise, and escalating with the context that lets engineers act immediately rather than re-investigate from scratch. That said, you operate with a continuous improvement mindset — feeding a structured tuning loop with the SOC Engineer and proposing runbook fixes when the playbook doesn't match reality. What You'll Do - Alert Triage Own the queue during coverage hours. Prioritize and disposition alerts accurately and fast — high-severity alerts acknowledged within 15 minutes, all alerts dispositioned within SLA. Know the difference between a true positive and noise, and act accordingly without waiting to be told. - Log & Threat Analysis Pivot across cloud, identity, and endpoint log sources to build a clear timeline when an alert warrants deeper investigation. Use MITRE ATT&CK as a reference frame to understand what you're looking at and what it means in context. - Incident Escalation & Communication Escalate incidents with complete, actionable context — severity reasoning, timeline, affected systems, and recommended next steps. Write clearly in English. Engineers receiving your escalations should be able to act without asking follow-up questions. - Runbook Discipline & Improvement Follow runbooks rigorously. When a runbook falls short — wrong steps, missing cases, outdated assumptions — flag it and propose a fix. Runbooks improve because analysts use them critically, not just obediently. - Tuning Feedback Loop Run a weekly feedback cycle with the SOC Engineer. Report false positives, patterns in noise, and cases where detection logic needs adjustment. Improve signal quality over time rather than just processing the same noise on repeat. - Audit Readiness Keep monitoring and response evidence current and organized for SOC 2, ISO 27001, and customer incident response commitments. Triage work that isn't documented doesn't exist for audit purposes — make sure yours does. Must Have - 2–3 years as a SOC analyst or in a blue team / detection and response role. - Hands-on alert triage experience with a SIEM and an EDR — investigation, disposition, and escalation. - Log analysis across cloud, identity, and endpoint sources. - Working knowledge of MITRE ATT&CK and common attack patterns. - Clear written incident notes and escalations in English (B2+). - Comfortable operating on a coverage-hours rotation. Nice to Have - Cloud console familiarity with AWS, Azure, or GCP. - Scripting basics in Python or Bash. - Phishing and email threat analysis experience. - Certifications: BTL1, GCIH, Security+, or CySA+. - Exposure to detection tuning or writing simple detection rules. - Prior experience at a SaaS or tech startup.   WHY JOIN US? - Join a

Don't apply unprepared

We research who's interviewing you, tailor your CV and rehearse you live — first one free.

InterviewHack.ai

Prepare for the exact interview: who's interviewing you, a tailored CV, and a real coach.

Product

JobsFree ATS checkerInterview-English checkSalary checkLATAM salary reportFree coursesBlogTailored CVSpoken practiceIt's free

Remote jobs

ReactPythonFull-StackLATAMArgentinaMexicoSee all →

Prepare

Spoken practiceFrontendBackendAI EngineerBy companySell with your CV

Company

For employersAboutContactPrivacyTerms

© 2026 InterviewHack.ai · Your CV is yours. Never used to train anything. · A product of IA-PTY

Similar open roles

Enterprise Account Executive

Happyrobot.ai · Bonn

→

Enterprise Account Executive

Happyrobot.ai · Brazil

→

Machine Learning Engineer

Happyrobot.ai · San Francisco

→

Site Reliability Engineer

Happyrobot.ai · San Francisco

→