Senior SOC Security Specialist with German/Start:September (m/f/d)
Sofia, BULGARIA
Job description
Position Description:
We’re establishing a brand-new technology and innovation hub in Sofia – and you can be part of it from day one.
Here, you won’t just be shaping our services for German clients; you’ll also help us build a strong presence in the Bulgarian market. You’ll collaborate closely with our teams in Germany, bring in your ideas, and influence the tools, processes, and culture of our new Sofia location from the ground up.
In short: We’re blending the energy of a fresh start with the reliability of a global player. If you’re excited about building something new both locally and internationally, this is the place to make your mark. Apply now and be part of our success story in Sofia! #BePartofourStory Let‘s #GrowTogetherNow
Your future duties and responsibilities:
As a Senior SOC Security Specialist, you will support a Security Operations Center (SOC) with a strong focus on operational IT security and the effective handling of cyber threats and security incidents. You will work closely with the SOC team to identify potential threats, assess security events, and develop appropriate detection and response measures. The role combines hands-on security operations with security analysis, incident investigation, and continuous improvement of security processes. You will also collaborate with technical teams and stakeholders and contribute to the development of IT security concepts and solutions.
Please note: Project start in September 2026. We kindly ask applicants to apply only if they are available to join as soon as possible and can accommodate a quick hiring and onboarding process. German language proficiency is mandatory.
· Identify and assess cyber threats, security events, incidents, and vulnerabilities
· Develop SOC detection use cases and define requirements for monitoring and detection capabilities
· Investigate security incidents and develop technical solutions, mitigation measures, and workarounds
· Perform security assessments and risk analyses and identify opportunities to improve the security posture
· Document and manage security-related activities using ServiceNow, Splunk, and Confluence
· Collaborate with customers, development, testing, and operational teams on security incidents and requirements
Required qualifications to be successful in this role:
· Strong professional experience in IT Security, Information Security, or SOC operations
· Hands-on experience with security incident analysis, threat detection, vulnerability management, and incident response
· Experience developing SOC monitoring and detection use cases and working with SIEM/SOC tools, ideally Splunk
· Good understanding of security assessments, risk analysis, IT security concepts, and security processes
· Experience with tools such as ServiceNow, Splunk, and Confluence is an advantage
· High degree of independence, strong analytical and problem-solving skills, and ability to take ownership of security-related topics
· Fluent German (C1) and English, with availability to start in September 2026
What We Offer:
· Team Culture: You’ll find colleagues here who make collaboration enjoyable. We interact openly, use first names across all levels, and don’t think in hierarchies or silos
· Contract & Working Time: Permanent, full-time contract with a standard 8-hour workday
· Flexible Work Setup: Enjoy the best of both worlds with our hybrid work model – combining office presence in Sofia with remote work from home
· Working Hours: Flexible working hours tailored to project needs and client requirements
· Leave Policy: 25 days of paid vacation + 1 day for your Birthday
· Premium supplementary health insurance package: Including coverage for prescription glasses, reimbursement of medical expenses, and dental care
· Volunteer Opportunities: Make a positive impact with 8 hours of paid leave for voluntary work
· Career Development: Benefit from clear career progression paths and opportunities to grow within the company
· Continuous Learning: Access our internal learning platform, CGI Academia, to shape your skills based on your interests. Learn up to 9 languages via goFLUENT
· Referral Rewards: Extend your network – refer friends and earn bonuses through our rewarded referral program
· Health & Wellbeing: Access our Health and Wellbeing Portal for resources that support your physical and mental health
· Multisport Benefit: Аvailable at a preferential price for access to various sports and wellness facilities
· Office Environment: Work in a state-of-the-art co-working space in Sofia, with complimentary coffee, tea, and water to keep you refreshed throughout the day
What you can expect from us:
Together, as owners, let’s turn meaningful insights into action.
Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you’ll reach your full potential because…
You are invited to be an owner from day 1 as we work together to bring our Dream to life. That’s why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our company’s strategy and direction.
Your work creates value. You’ll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace new opportunities, and benefit from expansive industry and technology expertise.
You’ll shape your career by joining a company built to grow and last. You’ll be supported by leaders who care about your health and well-being and provide you with opportunities to deepen your skills and broaden your horizons.
That same commitment to fairness extends to how we use technology. To support our recruitment team, AI tools may be used to help assess applications though they never replace human judgement. All hiring decisions remain entirely in the hands of our recruitment professionals.
Come join our team—one of the largest IT and business consulting services firms in the world.