It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.
All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS!
Tasks
As a SOC Automation (Senior) Consultant (m/w/d) located in Germany, you will help customers modernize and scale their Security Operations Center (SOC) by designing, implementing and improving automation capabilities across detection, triage, investigation and response workflows. You understand that the SOC of today is no longer driven by SOAR alone, but by a combination of AI-assisted decision support, agentic execution models, deterministic workflows and strong operational governance.
You support customers in increasing efficiency, consistency and resilience in their security operations by combining the right level of automation with the right level of human oversight. You are able to translate operational SOC needs into sustainable automation strategies and practical implementations, covering not only tooling and playbooks, but also data quality, log onboarding, governance and lifecycle management.
You have strong communication and interpersonal skills, which enable you not only to understand requirements, but also to put these requirements into an implementation roadmap, explain it to customers and guarantee proper execution. You have an open and approachable mind, in line with NVISO's values.
Typical tasks include but are not limited to:
- Designing and implementing SOC automation solutions across detection, triage, investigation and response workflows;
- Helping customers evolve from traditional SOAR-centric approaches toward broader automation architectures that combine deterministic workflows, AI capabilities and analyst-in-the-loop decision making;
- Building, configuring and integrating automation platforms, case management workflows, orchestration capabilities and supporting services;
- Developing and maintaining playbooks, automations and integrations that support customer-specific use cases, processes and technology stacks;
- Defining higher-level automation patterns and reusable building blocks rather than only point solutions for individual use cases;
- Advising on governance for SOC automation, including ownership, testing, change management, exception handling, auditability and operational risk control;
- Participating in technical workshops with SOC management, engineers and analysts to capture functional and operational requirements and translate them into implementation plans;
- Helping customers identify where AI and agentic capabilities can add value in the SOC, while ensuring solutions remain trustworthy, explainable and operationally safe;
- Ensuring you remain up to speed with latest trends and technologies in SOC automation, AI for security operations and security engineering.
- You are passionate about cyber security, engineering and automation. Building practical solutions and working with customers energizes you and you look forward to growing in all the aforementioned domains.
Requirements
Technical Skills:
- You hold citizenship in one of the 32 NATO member states or the Austrian citizenship;
- Experience with SOC automation technologies, including SOAR platforms, orchestration tooling, workflow engines, or related automation capabilities;
- A strong foundation in Python and/or other relevant scripting or automation languages;
- A solid understanding of SOC operations, incident response processes and detection and response workflows;
- An open mind toward modern SOC capabilities, including AI-assisted operations, agentic workflows and advanced automation concepts;
- The ability to think beyond individual playbooks and contribute to scalable operating models, governance approaches and implementation roadmaps;
- Ideally, hands-on experience in a SOC role, such as SOC Analyst, Detection Engineer, Security Engineer or Incident Responder;
- Ideally, experience with security integrations, APIs, data transformation, enrichment pipelines and system interoperability;
- Ideally, foundational knowledge of one or more major security ecosystems such as Microsoft, Palo Alto, Splunk, Google, SentinelOne or similar.
Soft Skills:
- Ability to work independently and keep track of your priorities;
- Strong interpersonal and verbal/written communication skills that enable the ability to work effectively in a collaborative team environment across the entire company;
- Excellent English communication skills, both verbal and written;
- German is a plus;
- A positive, team-oriented and mission-driven attitude;
- Ability to prepare, document and present your work to colleagues and customers;
- Comfort in combining strategic thinking with hands-on implementation.
Benefits
At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non-financial components:
- Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc);
- Generous training budget of 10.000 EUR + 10 man days for attending lectures rolling over 2 years;
- Base salary range (depending on experience and skillset): 69.000 EUR p.a. – 91.000 EUR p.a.;
- Regular team-building and fun events;
- Our commitment to coach and counsel you and help you grow; each employee receives a personal coach within the team, whose role is to ensure your well-being and helps you grow in your career!
- Flexible working hours and home office possibilities (incl. working abroad weeks within the EU);
- Business Bike Leasing;
- BahnCard 50 1st class + public transfer ticket;
- 30 holidays;
- Company Pension Scheme;
- Cool offices in the center of Frankfurt, Munich and Vienna (with BBQ, kicker table, table tennis, playstations, etc.).
Disclaimer on the Use of AI Tools in the Application Process
Please be aware that the creation and submission of application documents (e.g. CV, cover letter, case studies, etc.) using AI-powered tools is only permitted to a limited extent.
Our expectations:
Application documents must authentically reflect your own qualifications, personality, and motivation.
The use of AI for supportive purposes (e.g. spell-checking, improving wording) is acceptable.
Fully generated application documents created by AI without personal adaptation or review are not permitted.
Under no circumstances may NVISO information, data, or documents be uploaded to or processed by external AI tools.
We reserve the right to exclude applications from the selection and interview process that are clearly created primarily or exclusively by AI and show no recognizable personal input.
The purpose of this policy is to ensure a fair and transparent recruitment process and to obtain an authentic impression of our applicants.