
Role description
Type of contract: Full-time
Place of work: Brno, Czech Republic
We are Group IT Security
We are IT Security division in EmbedIT, we are the ones that shape the landscape of Information Security for our partners, primarily for the Home Credit Group, selected companies in the PPF Group (CME, SKODA GROUP, CETIN and others) and for external partners as well.
Who are we looking for?
We are looking for an SOC Analyst to join our Security Operations Center (SOC) team and help protect our customers against evolving cyber threats. You will play a key role in investigating security incidents, identifying attack patterns, improving detection capabilities, and supporting the continuous development of our SOC services.
We are ready to welcome our new colleague either in our Prague or Brno office.
Your future role
- Lead the investigation and analysis of complex security incidents, determining their scope, impact, root cause, and business risk.
- Coordinate incident response activities, driving containment, eradication, recovery, and post-incident reviews.
- Perform proactive threat hunting to identify advanced threats, attacker persistence, and suspicious activity across enterprise environments.
- Develop, tune, and optimize detection rules, analytics, and SIEM/XDR use cases to improve detection coverage and reduce false positives.
- Conduct advanced log analysis and correlate events across endpoints, networks, cloud platforms, identity providers, and security technologies.
- Create, maintain, and continuously improve incident response playbooks, detection use cases, and SOC operational procedures.
- Mentor and provide technical guidance to L1 and L2 analysts, supporting investigations, escalations, and knowledge sharing.
- Collaborate with engineering, IT, and security teams to improve security posture and drive remediation of identified risks.
- Participate in purple team activities, detection validation, and continuous improvement initiatives.
- Prepare technical reports and executive summaries, communicating findings and recommendations to both technical and management stakeholders.
Your experience and skills
- 5+ years of experience in a SOC, Incident Response, Threat Detection, or Cybersecurity role, including proven experience in an L2 SOC position.
- Extensive hands-on experience with SIEM and XDR platforms (e.g., Microsoft Sentinel, Microsoft Defender XDR, QRadar, Elastic, Splunk).
- Strong experience leading complex incident investigations throughout the entire incident lifecycle.
- Deep understanding of attacker tactics, techniques, and procedures (TTPs), the MITRE ATT&CK framework, Cyber Kill Chain, and modern threat landscapes.
- Advanced experience analyzing endpoint, identity, cloud, network, and application logs to identify malicious activity.
- Strong knowledge of attack vectors including phishing, ransomware, malware, identity attacks, lateral movement, privilege escalation, persistence, and cloud-based threats.
- Experience developing detection content, correlation rules, and threat hunting hypotheses.
- Proven ability to mentor junior analysts, lead investigations, and improve SOC processes and operational maturity.
- Excellent analytical, problem-solving, communication, and decision-making skills.
- Advanced English (written and spoken).
Nice to have
- Experience with Microsoft Azure, Microsoft 365, Defender XDR, Microsoft Sentinel, and Entra ID security.
- Experience with KQL, PowerShell, Python, or other scripting languages.
- Experience with SOAR platforms and security automation.
- Knowledge of malware analysis, digital forensics, or reverse engineering fundamentals.
- Experience with threat intelligence platforms and integrating threat intelligence into detection and response.
- Relevant security certifications such as SC-200, GCIH, GCIA, GCFA, GREM, CySA+, BTL1/BTL2, or equivalent.
- Familiarity with security frameworks and best practices (NIST CSF, NIST 800-61, CIS Controls, ISO 27001).
Join EmbedIT family and enjoy
- Motivating yearly bonus
- 5 weeks of paid vacation
- 5 days of Personal time off
- Meal allowances
- Contribution to the pension scheme or DIP - Long-Term Investment Product
- Access to premium healthcare or a monthly allowance for health activities and relaxation
- Relax room & games room
- Possible internal growth
- Loyalty and referral bonuses
About EmbedIT and how you fit in
Our company is a dynamic fusion of innovation, skill, and vision, dedicated to transforming industries through technology. In this landscape, your unique talents and perspective are the keys to our collective success, contributing to groundbreaking solutions and strategies. Here, you're not just a part of the team; you're a vital contributor to a journey of continuous improvement and exceptional results. Join us, and let's shape the future together, where your growth is an integral part of our shared story.
What do we expect?
Strong technical proficiency and problem-solving skills
Commitment to quality and attention to detail
Proactive attitude and the ability to take initiative
Excellent communication and teamwork capabilities
Adaptability to rapidly changing environments
A customer-focused approach to solutions
Continuous learning and self-improvement mindset
Ability to manage time effectively and meet deadlines
Who are we looking for?
Innovative problem-solvers with a passion for technology
Team players dedicated to collaborative success
Individuals with a continuous learning and growth mindset
Detail-oriented professionals with a focus on excellence
Adaptable personalities ready to thrive in a dynamic environment
By exploring our careers pages, you'll gain insights into our operational style, core values, and the benefits we offer, painting a comprehensive picture of life at our company.
Our benefits
Our benefits are designed to help you go further in multiple aspects of your life, recognising and rewarding you for the value you bring to EmbedIT and our clients.
Everyone is entitled to 5 weeks of paid holiday per year. Plus up to 5 days of personal time off for personal illness or illness of immediate family member.
While you’re at work, we make your meals more affordable. Of the meals you buy at any of our office locations, EmbedIT pays 55% of what you spend.
Our core working hours are from 9:00 to 15:00 daily, but how early you start or how late you work, is up to you. Our hybrid setup includes the option of working from your home.
Everyone is entitled to a pension insurance allowance of CZK 2,000 per month.
Our people have access to premium healthcare or a 500 CZK monthly allowance for health activities and relaxation – whatever works best for them!
We reward your loyalty with Recharge: one extra month of leave for every five years worked.
We have negotiated savings on your behalf at O2, Air Bank, Makro, Home Credit and other vendors.
Professional growth is an essential part of our work—we actively support skill development, hands-on experience, and participation in exciting projects..
Annual all staff parties, fun teambuildings, sport events and our Fail Forward sessions – where we openly share lessons learned from projects to foster growth and innovation.
Our hiring process
Expect a concise hiring process focused on evaluating your fit through an application review, a skills interview, and a culture fit discussion. Our goal is to ensure clarity and feedback throughout.
Here’s what you
can expect
Apply for this position
Let’s talk about the details in person.
Get in touch with us.
You will be taken to a website of PPF Group, the enterprise we belong to.