Senior Security Engineer (SOC) (m,f,x)

HelloFresh
Berlin
Workplace: HybridFull timeFunction: CybersecuritySkills: ["Incident response","Threat hunting","Investigation reporting","Mentoring","Communication"]

Join the HelloFresh SOC team as a Senior Security Engineer, handling escalations and driving complex investigations with a hands-on, incident-response focus. You’ll mature logging and monitoring across AWS and enterprise IT, optimize security event pipelines, run threat hunts, and improve detection logic using correlation rules and query-based detections. Serve as point of contact for Berlin SOC leadership during major incidents, mentor junior analysts, and continuously refine SOC processes and reporting.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
HelloFresh
HelloFresh
2 days ago

Senior Security Engineer (SOC) (m,f,x)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 9 hours agoStatus: Live

Job Summary

Join the HelloFresh SOC team as a Senior Security Engineer, handling escalations and driving complex investigations with a hands-on, incident-response focus. You’ll mature logging and monitoring across AWS and enterprise IT, optimize security event pipelines, run threat hunts, and improve detection logic using correlation rules and query-based detections. Serve as point of contact for Berlin SOC leadership during major incidents, mentor junior analysts, and continuously refine SOC processes and reporting.
Location: Berlin
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Mature logging and monitoring for cloud, IT, and application workloads through automation and IaC.
  • •Ingest, filter, and optimize security events from large log streams (e.g., app, Kubernetes, CloudTrail, CloudFlare, ELB).
  • •Conduct threat hunts for file-less malware and APTs using EDR, OS/network telemetry and open-source tooling.
  • •Develop and improve detection capabilities using advanced correlation/cross-correlation rules and detection logic (Sigma/KQL).
  • •Lead incident detection and response in AWS and enterprise IT environments, serve as shift communicator/point of contact, and mentor L1 SOC analysts.

Pay and Benefits

Perks:PensionLearning BudgetGym MembershipHealth InsuranceCommuter Benefits

Key Requirements

  • •Proven security monitoring and incident response experience in public cloud environments.
  • •Experience with cloud SIEM & SOAR platforms and DDoS/Layer-7 web perimeter security controls.
  • •Strong programming skills for security automation and data parsing (Python/Go).
  • •Ability to write detection rules (Sigma, KQL) and optimize query performance and coverage.
  • •Hands-on log analysis experience using tools such as ElasticSearch, Splunk/SumoLogic, and Graylog; open to rotational on-call shifts.
Experience:Public cloudSOCIncident response
Skills:Incident responseThreat huntingInvestigation reportingMentoringCommunication
Languages:English
Tech Stack:AWSKubernetesCloudTrailCloudFlareELB logsEDRSysmonOsqueryRITAZeekPythonGoSigmaKQLElasticSearchSplunkSumoLogicGraylogLLMsClaude

Company Brief

HelloFresh
HelloFresh is a meal-kit and food subscription company that delivers fresh ingredients and recipes to consumers, offering convenient home-cooked meals through weekly subscription boxes across multiple international markets.
Industry: FoodTech
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Berlin, Germany
Founded: 2011
Glassdoor
Glassdoor: 3.6
WebsiteLinkedIn