Lead SOC Analyst (F/H)

Thales
France
Workplace: HybridFull timeFunction: CybersecurityExperience: 5+ yearsEducation: mastersSkills: ["Rigueur","Attention aux détails","Analysis de logs","Communication","Leadership technique"]

Lead the SOC’s advanced investigations and incident management for a cloud-hosted digital platform on Microsoft Azure. Supervise SOC analysts across continents in a follow-the-sun model, coordinate 24/7 incident response, and run investigations using Microsoft Sentinel and Defender, including forensics and crisis exercises. Improve detection rules and playbooks, monitor cloud security and vulnerabilities (AKS, GitLab CI/CD, Artifactory), and perform CTI/threat hunting with MITRE ATT&CK—plus supply-chain attack simulations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Thales
Thales
1 day ago

Lead SOC Analyst (F/H)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Lead the SOC’s advanced investigations and incident management for a cloud-hosted digital platform on Microsoft Azure. Supervise SOC analysts across continents in a follow-the-sun model, coordinate 24/7 incident response, and run investigations using Microsoft Sentinel and Defender, including forensics and crisis exercises. Improve detection rules and playbooks, monitor cloud security and vulnerabilities (AKS, GitLab CI/CD, Artifactory), and perform CTI/threat hunting with MITRE ATT&CK—plus supply-chain attack simulations.
Location: France
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Manager level

Key Responsibilities

  • •Lead end-to-end security incident investigations (detection, qualification, containment, remediation, closure) using Microsoft Sentinel, Defender, and other SOC tools.
  • •Technically supervise SOC analysts and coordinate major incidents, including forensics and crisis exercises, under the SOC Leader.
  • •Coordinate 24/7 follow-the-sun operations across a team in Europe, the Americas, and Asia, participating in on-call and handling crises.
  • •Write detailed incident reports, provide regular stakeholder reporting, and improve detection rules, SOC processes, playbooks, and security controls.
  • •Secure cloud platforms and manage vulnerabilities in collaboration with infrastructure, cloud, development, and DevOps teams; run advanced CTI/threat hunting and supply-chain attack simulations.

Key Requirements

  • •At least 5 years of cybersecurity experience for information systems, including at least 2 years managing security incidents within a SOC.
  • •Strong experience with Azure environments, Kubernetes (AKS), and DevOps tooling such as GitLab and Artifactory.
  • •Proficiency in log/event analysis and security scripting.
  • •Expertise in SIEM (Microsoft Sentinel), including KQL, and understanding of EDR.
  • •Ideally hold SC-200 and SC-100 certifications (additional certifications like AZ-500, Security+, and GIAC are a plus).
Experience:5+ yearsCybersecuritySOC
Education:Master's in informatique, cybersécurité
Skills:RigueurAttention aux détailsAnalysis de logsCommunicationLeadership technique
Certifications:SC-200SC-100AZ-500Security+GIAC
Languages:English
Tech Stack:Microsoft AzureMicrosoft SentinelMicrosoft DefenderKubernetes AKSGitLab CI/CDArtifactoryMITRE ATT&CKSIEMEDRNDRKQLCalderaSafeTitanAttackIQ

Eligibility

Security Clearance:Secret

Company Brief

Thales
Designs and delivers advanced systems and services for aerospace, defence, security, and digital identity and cybersecurity markets, serving government and commercial customers worldwide.
Industry: Defense Technology
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Paris, France
Founded: 2000
WebsiteLinkedIn