New

Security Platform Engineer

Europe - Remote

About the role

Strengthen Sporty’s security monitoring and detection capability by managing, tuning, and continuously improving EDR and SIEM platforms. Ensure security alerts are accurate, actionable, and provide reliable visibility across endpoints, servers, cloud infrastructure, and corporate systems.

What you'll be doing

  • Administer, maintain, and monitor EDR and SIEM environments.
  • Tune detection rules, correlation logic, and security policies to improve detection quality and reduce false positives.
  • Configure and maintain endpoint policies, agent health, log collection, and platform integrations.
  • Develop and maintain dashboards, reports, alerts, and security use cases.
  • Investigate noisy or ineffective detections and continuously improve alert fidelity.
  • Validate that endpoint protection, log collection, and response capabilities operate as expected.
  • Integrate new log sources and improve visibility across endpoints, servers, cloud services, and network infrastructure.
  • Convert findings from incidents, threat intelligence, vulnerability assessments, and offensive security exercises into improved monitoring content.
  • Monitor platform health, storage, agent connectivity, licensing, and overall service availability.
  • Support the Information Security team during security investigations by improving visibility, detections, and response workflows.
  • Work with Infrastructure and IT teams to onboard new systems into EDR and SIEM.
  • Produce operational documentation, standard operating procedures, and platform runbooks.
  • Track detection coverage, platform performance, and continuous improvement initiatives.

What you'll bring

  • Experience administering enterprise SIEM, XDR, or EDR platforms.
  • Hands on experience with Wazuh, Trend Micro Vision One, Microsoft Defender XDR, Microsoft Sentinel, Elastic Security, Splunk, or similar platforms.
  • Strong understanding of endpoint security, Windows, Linux, macOS, Active Directory, cloud environments, and network security.
  • Experience tuning detection rules and reducing false positives.
  • Familiarity with log collection, parsing, correlation, and security event analysis.
  • Understanding of MITRE ATT&CK and common attacker techniques.
  • Experience writing automation or scripting using Python, PowerShell, or Bash.
  • Strong analytical and troubleshooting skills.
  • Excellent documentation and communication skills.

What's in it for you

  • Sporty is a remote-first company in pursuit of sustainability
  • A competitive salary plus individual performance-based bonuses every quarter
  • 28 days paid annual leave
  • Core working hours of 10am-3pm in your local time zone, with flexibility outside of these hours
  • Referral bonuses and flash bonuses
  • Top-of-the-line equipment
  • Annual company retreats that provide opportunities to connect and collaborate with colleagues from around the world

Interview Process

  • Remote video screening with our Talent Acquisition Team
  • Online assessment via Hackerrank
  • Remote video interview with Team Members (60 Mins)
  • Final discussion with the hiring manager (60 mins)

If you're interested, we encourage you to apply! Every application is reviewed by a member of our team and we aim to respond within 48 hours.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...
We are committed to providing an inclusive and accessible hiring experience. Do you require any reasonable accommodations or additional support during the recruitment process or, if successful, to perform this role on-site, if required? *
Select...

Sporty is committed to protecting your personal data and ensuring transparent, compliant handling of all information you provide during the application process. Your data will be processed in accordance with applicable privacy laws and retained securely. For details, please review our Privacy Policy.

Select...