# CyberSecurity L&M Service Specialist

> Qualco Group · Warsaw, Poland (Hybrid) · — · Posted 2026-08-21

**Workplace:** hybrid

**Department:** Projects

## Description

![](https://workablehr.s3.amazonaws.com/uploads/photos/5614/bf80b0c5f73169840fe9697f09ef2229.png)

At Quento, the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic partnerships to support business growth.

![](https://workablehr.s3.amazonaws.com/uploads/photos/5614/d69bbc5f960699cadb1e6aeee498e20c.png)

At Quento Technologies S.A., we empower our people to innovate and lead in delivering transformative ICT solutions to our clients worldwide. Quento Technologies seeks a highly motivated **CyberSecurity L&M Service Specialist**  
  
**Responsibilities:**

-   Design, develop, maintain, and continuously improve enterprise security monitoring, logging, and SIEM capabilities.
-   Administer and optimize monitoring platforms through health checks, performance tuning, capacity planning, and license utilization management.
-   Analyze, normalize, and correlate security logs and events, leveraging frameworks such as MITRE ATT&CK to enhance threat detection.
-   Design, implement, and maintain security monitoring use cases, correlation rules, detection content, and alerting mechanisms.
-   Lead the onboarding and integration of new log sources, security events, and cybersecurity solutions into the SIEM ecosystem.
-   Translate security monitoring policies and requirements into technical detection rules, operational controls, and monitoring procedures.
-   Securely configure, maintain, upgrade, and support cybersecurity systems, services, and products to ensure their resilience and effectiveness.
-   Implement, monitor, and continuously improve cybersecurity controls, procedures, and technical safeguards across the IT environment.
-   Evaluate security assessments, audit findings, vulnerabilities, and risks, prioritizing and implementing appropriate remediation measures.
-   Perform forensic investigations, provide expert support during security incidents, and contribute to incident response and threat analysis activities.
-   Define and maintain security dashboards, KPIs, reports, playbooks, technical documentation, and operational procedures supporting security operations.
-   Contribute to the design and evolution of security monitoring architectures, working closely with system owners and security operations teams to assess security event detection solutions and support the development of monitoring capabilities.
-   Ensuring that all activities and duties are carried out in full compliance with regulatory requirements and supporting the continued implementation of the Group Anti-Bribery and Corruption Policy.

## Requirements

-   Bachelor’s degree in Information Technology, Computer Science, Engineering, or a related field.
-   Minimum 10 years of IT experience, including at least 8 years in the relevant field.
-   At least three (3) internationally recognized certifications are required from the following: CISSP, CCSP, GIAC Penetration Tester (GPEN), Splunk Enterprise Certified Admin, Splunk Enterprise Security Certified Admin, and TOGAF 9 Certified (or equivalent certification recognized)
-   Strong knowledge of Secure SDLC principles and the integration of security controls throughout the software development lifecycle.
-   Strong understanding of Windows, Linux, and network security architectures, including access controls, configuration auditing, security logging, network segmentation, secure protocols, and traffic analysis.
-   Expertise in enterprise security controls, security telemetry, anomaly detection, security monitoring, and threat detection engineering.
-   Strong knowledge of offensive and defensive security practices, including penetration testing, red teaming, incident triage, threat hunting, incident response, and detection use-case development.
-   Strong understanding of cybersecurity threats, vulnerabilities, exploit mechanisms, and adversarial tactics, with hands-on application of MITRE ATT&CK and MITRE D3FEND frameworks.
-   Proficiency in scripting, automation, troubleshooting, and the implementation and configuration of enterprise security controls and cybersecurity monitoring solutions.
-   Hands-on experience administering, integrating, and optimizing Splunk Enterprise, Splunk Enterprise Security, Splunk SOAR, Splunk UBA, and Cribl Stream platforms, including data ingestion pipelines and lifecycle management.
-   Experience developing, testing, and fine-tuning SIEM correlation rules, detection logic, automated playbooks, and security orchestration workflows, leveraging MITRE ATT&CK and D3FEND methodologies.
-   Experience applying Infrastructure as Code (IaC) and CI/CD practices using Azure DevOps to deploy, configure, and manage security platforms and monitoring infrastructure.
-   Experience designing and implementing security monitoring capabilities and architectures, including High-Level Designs (HLDs), Low-Level Designs (LLDs), technical blueprints, security monitoring use cases, and supporting technical documentation.
-   Strong technical writing and communication skills, including the development of technical reports, security policies and procedures, business cases, cybersecurity roadmaps, executive presentations, and the evaluation of cybersecurity technologies, MSSPs, and strategic security initiatives.
-   Very good command of English (minimum B2 level).
-   Eligibility to obtain an EU Personal Security Clearance, at a later stage is required.

## Benefits

**This role is an onsite opportunity Poland.**

**CV submitted in English.**

Your race, gender identity and expression, age ethnicity or disability make no difference in Quento we want to attract, develop, promote, and retain the best people based only on their ability and behavior.

Disclaimer: Quento collects and processes personal data in accordance with the EU General Data Protection Regulation (GDPR). We are bound to use the information provided within your job application for recruitment purposes only and not to share these with any third parties. For more details on the processing of your personal data during the Recruitment procedure, please be informed in the [Recruitment Notice](https://www.qualco.eu/recruitment-notice), before the submission of your application.

## Apply

[Apply at Qualco Group](https://apply.workable.com/qualcogroup/j/C4B472BA54/apply)

---
Powered by [Workable](https://www.workable.com)
