Junior Analyst, Cyber Security Operations
Betzdorf, LU

(Junior) Analyst, Cyber Security Operations
What You Will Be Doing
• In this role, you will gradually take part in improving how the SOC operates from a technical perspective. Your work will focus on making detection more accurate, processes more efficient, and data more useful for analysts.
• A significant part of your work will involve automation. You will write scripts and build tools that reduce manual effort for analysts, whether that is enriching alerts with additional context, extracting relevant data, or streamlining repetitive investigation steps. You will also support the development of automated workflows and playbooks that help standardize how common scenarios are handled.
• You will work directly with security data, including logs, alerts, and enrichment sources. This means understanding how data is structured, how it flows between systems, and how it can be transformed into something meaningful. You will help improve data quality, consistency, and usability, which are essential for effective detection and investigation.
• As part of the team’s ongoing evolution, you will also be exposed to AI-assisted approaches within the SOC. This may include using AI tools to support alert analysis, summarization, or pattern identification. You will help assess how these capabilities can be used effectively and responsibly.
• You will remain closely connected to SOC operations.
What We Are Looking For/Must Have
• Bachelor’s degree and 1 to 4 years of experience in Cyber Security, Computer Science, Information Technology, Data Engineering, Data Analysis, or similar technical field (a combination of experience and education will be considered)
• We are looking for someone who is comfortable working with code, data, and systems, and who is motivated to apply these skills in a cybersecurity environment.
• You should have a solid foundation in Python or similar scripting languages, and feel confident writing code to process data, automate tasks, or integrate systems. Experience with SQL and structured data is important.
• You should have either a basic understanding of core concepts of cybersecurity (such as logs, alerts, threats, and incidents or clear evidence of self-learning through labs, courses, certifications, or personal projects). A genuine interest in cybersecurity is essential.
• Fluency in English, any other language is considered as an asset
• Ability to undergo security clearance process
Nice to Have
• Some candidates may already have exposure to areas that are directly relevant to this role. While not required, these can help you ramp up more quickly.
• Experience with SIEM, SOAR, or other security tools can provide useful context for how detections and workflows operate in practice. Familiarity with detection frameworks or attacker behaviour models can also be beneficial.
• Exposure to AI or machine learning concepts—even at a basic level—is a plus, particularly if you have experimented with data analysis, anomaly detection, or AI-assisted tools.
• Knowledge of APIs, integrations, version control, or cloud platforms can also be valuable, as much of the work involves connecting systems and handling data across environments.
SES and its Affiliated Companies are committed to providing fair and equal employment opportunities to all. We are an Equal Opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, gender, pregnancy, sex, sexual orientation, gender identity, national origin, age, genetic information, protected veteran status, disability, or any other basis protected by local, state, or federal law.
For more information on SES, click here.