Security Analyst (compliance and controls)
#LI-IV1
The role
This role is for a security analyst focused on maintaining security compliance and controls within the IT Infrastructure team. The work revolves around remediating security incidents that occur on Nebius infrastructure and ensuring that our technology infrastructure stays compliant to compliance controls and standards.
You are welcome to work in our Amsterdam office or remotely in Europe.
Your responsibilities will include:
Monitor, investigate, and respond to security incidents across SIEM, CSPM and other security solutions.
Evaluate impact of security incidents on compliance posture, and remediate technical compliance violations.
Propose and implement detections to detect compliance violations.
Collaborate with internal and external auditors to provide evidence of continued adherence to compliance requirements.
Create and maintain automation for security compliance and incident investigations (Logic Apps, PowerShell scripts, Sentinel playbooks).
Provide reporting and documentation for incidents, investigations, and compliance requirements.
Collaborate with Technology, SecOps, Compliance and Audit teams to improve compliance to various standards across the infrastructure.
We expect you to have:
2+ years of hands-on experience as a security analyst using various Security technologies (SIEM, EDR, CSPM) in enterprise environments.
Experience with:
Microsoft Sentinel (KQL queries, analytic rules, automation playbooks, dashboards).
Microsoft Entra ID (identity protection, conditional access, PIM).
Microsoft Purview (DLP, sensitivity labels, insider risk, eDiscovery).
Experience working with internal and external auditors to provide and validate evidence for compliance controls like SOX, DORA, GDPR, SOC II in cloud environments.
Experience remediating security incidents.
Understanding of identity and access management lifecycle.
Knowledge of SIEM/SOAR concepts.
Knowledge of compliance controls and frameworks like NIST, SOX, GDPR e.t.c.
Intermediate written and spoken English is required.
It will be an added bonus if you have:
Microsoft certifications:
SC-200 (Security Operations Analyst)
SC-300 (Identity and Access Administrator)
SC-400 (Information Protection Administrator)
Experience with cloud security posture management and vulnerability management tools.
Familiarity with DevOps practices for security automations. (GIT, Azure DevOps)
Familiarity with EDR
Experience in remediating compliance violations.
Development/scripting experience using:
PowerShell
RESTful APIs / Microsoft Graph API
Python or Bash