1,035,818open jobs
60,918companies
173,892added this week
Browse all
Salary
≈ $53k – $107k per year (Estimated)
Location
Remote (likely Poland)
Employment
Full-Time

First seen by Alion on Sep 29, 2026.

Overview
Company
Impact
Profile match

The world's digital experiences run on something invisible: the infrastructure and software that keep them fast, reliable, and secure. At Gcore, you'll help design and deliver that foundation for an AI-driven world.

We're a global provider of infrastructure and software solutions for AI, cloud, network, and security, powering everything from real-time communication and streaming to enterprise AI and secure web applications. With 210+ edge locations, 50+ cloud regions, and thousands of GPUs, your work here can reach users and businesses across the globe.

You'll collaborate with leading technology partners such as Intel, NVIDIA, Dell, and Equinix, and work on platforms that power digital products used around the world. Our vision is simple: to connect the world to AI, anywhere, anytime.

Want to work on technology that goes beyond a single product or industry? Join a global team of 550+ professionals building infrastructure and software that supports the entire digital ecosystem.

Gcore WAAP protects customer web applications and APIs against DDoS, bots, and application-layer attacks at CDN edge scale. We are building out a proactive, managed-support offering for enterprise customers, and we need a SOC Analyst to run the day-to-day security operations: watch traffic and alerts, triage false positives, prepare customer-facing threat reports, and escalate real impact to the right team. You will work alongside our Threat Researchers, taking the operational load off them so they can focus on deep analysis. You do not need to be a threat-hunting expert.

You need to be reliable, observant, comfortable in logs and dashboards, and able to tell an attack from legitimate traffic - and know when to escalate.

What You Will Do

  • Monitor WAAP and DDoS activity across customer accounts - dashboards, alerts, and traffic patterns - and recognize when something needs attention.

  • Triage false positives: review traffic flagged by security policies, confirm or dismiss, and keep noise down for customers (this is a large, daily part of the job).

  • Prepare reports: weekly threat summaries per customer and post-incident DDoS reports, in clear customer-facing English.

  • Alert and escalate: when an attack is impacting a customer, signal the engineering team or Support with the right context - e.g. a customer needs to be tagged or a policy adjusted - and follow the escalation runbook.

  • Support customer onboarding: apply standard security configuration based on the customer's profile (resource type, traffic volume, legitimate-traffic exclusions) following playbooks.

  • Follow the reaction-time SLA - our commitment to customers is speed of reaction and clear post-incident reporting, not a prevention guarantee.

  • Contribute to and maintain runbooks so responses are consistent and repeatable.

What We are Looking For

  • Understanding of web security fundamentals: WAF, DDoS, bots, OWASP Top 10.

  • Solid basics in HTTP, TCP/IP, TLS.

  • Comfortable analyzing logs and reading dashboards; can spot anomalies in traffic.

  • Able to distinguish malicious from legitimate traffic and reason about false positives.

  • Clear written English for customer-facing reports.

  • Reliable, detail-oriented, and calm under incident pressure.

  • Willingness to work in a shift/on-call rotation.

Nice to Have

  • Prior SOC L1/L2 or related experience.

  • Basic query/scripting: SQL-like log queries, regex, a bit of Python.

  • Familiarity with CDN/WAF platforms (Cloudflare, Akamai, Imperva, F5, Radware).

  • Exposure to SIEM / alerting tooling and PagerDuty-style on-call.

  • Security certifications (e.g. CompTIA Security+) - a plus, not a requirement.

Explicitly NOT Required

  • Deep threat research, exploit development, malware reverse-engineering. That work stays with our Threat Researchers - this role feeds them clean, triaged signal and takes the routine off their plate.

Why This Role Matters

You become the first line of Gcore WAAP's managed security operations - the person who keeps customers informed and protected day to day, and who lets our specialists focus on the hard problems. High visibility, direct customer impact, and a clear path to grow into threat research or detection engineering.

Benefits

At Gcore, we want you to do your best work and enjoy the journey. Our benefits are designed to support your growth, well-being, and life beyond work:

  • Competitive compensation

  • Flexible working hours and hybrid or remote options, depending on your role

  • Work from anywhere in the world for up to 45 days per year

  • Private medical insurance for you and your family*

  • Extra paid vacation and sick leave days*

  • Support for life's important moments and celebrations

  • Language courses to help you connect and grow

  • Modern, welcoming offices with snacks, drinks, and entertainment*

  • Team sports and social activities*

*Benefits may vary depending on your location.

Equal Opportunity Employer

We provide equal opportunity to all applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity, gender expression, national origin, disability, or any other legally protected characteristics.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,035,818 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Kraków
≈ $75k – $162k per year (Estimated) • Remote (Slovakia) • 4+ years exp • Associate's Degree
Cybersecurity
GDPR
Analytics
Power BI
Apply
≈ $105k – $213k per year (Estimated) • Remote (India) • 5+ years exp • Bachelor's Degree
Cybersecurity
Crowdstrike
MITRE ATT&CK
SIEM
DLP
Apply
≈ $87k – $243k per year (Estimated) • Remote (United States) • Dallas
Python
DevOps
Terraform
Ansible
GitHub Actions
CI/CD
Kubernetes
Shift-Left
Cybersecurity
Snyk
SonarQube
Semgrep
CIS Benchmarks
OWASP ASVS
Shift-Left Security
Threat Modeling
Invicti
Sonatype Nexus IQ
OWASP
Apply
$190k – $215k per year • Equity • Remote (United States) • 15+ years exp • Bachelor's Degree
DevOps
Terraform
Helm
Git
Kubernetes
Cybersecurity
NIST 800-53
NIST 800-171
FedRAMP
Management
Agile
Apply
≈ $118k – $251k per year (Estimated) • Remote (United States) • Full-Time • 10+ years exp • Bachelor's Degree
PowerShell
DevOps
Terraform
GCP
Azure DevOps
CloudFormation
Azure
CI/CD
AWS
SLI/SLO/SLA
Cybersecurity
ISO 27001
SOC 2
GDPR
HIPAA
Least Privilege
Apply
≈ $27k – $54k per year (Estimated) • Hybrid • Moscow
Databases
PostgreSQL
RabbitMQ
Apache Kafka
DevOps
Rest API
Zabbix
Jaeger
Kibana
OpenTelemetry
VMWare
Prometheus
GitLab CI
CI/CD
Jenkins
Docker
Kubernetes
Grafana
SLI/SLO/SLA
TCP/IP
DNS
VLAN
Cybersecurity
Keycloak
Tcpdump
LDAP
Management
Confluence
Jira
ServiceNow
ITIL
ITSM
QA
Postman
Apply
≈ $21k – $52k per year (Estimated) • In office • 2+ years exp • Bachelor's Degree
DevOps
SLI/SLO/SLA
Management
Microsoft Office
Apply
≈ $97k – $190k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Wilmington
Python
PowerShell
AI/ML
LLM Guardrails
DevOps
Rest API
Terraform
Azure DevOps
CloudFormation
Azure
CI/CD
AWS
Kubernetes
Platform Engineering
Bicep
IAM
Cybersecurity
Prisma Cloud
Open Policy Agent
Wiz
MITRE ATT&CK
NIST CSF
CIS Benchmarks
NIST 800-53
Least Privilege
SIEM
OWASP
Management
Jira
ServiceNow
Apply
$68k – $79k per year • In office • 8+ years exp • Dublin
DevOps
Azure
AWS
SLI/SLO/SLA
Cybersecurity
Okta
GDPR
Active Directory
Management
Jira
ServiceNow
ITIL
Apply
$86k – $138k per year • In office • Public Trust • 5+ years exp • High School Diploma • United States
DevOps
GCP
Datadog
Azure
AWS
Incident Management
SLI/SLO/SLA
Linux
Windows
DNS
Management
ServiceNow
ITIL
ITSM
Apply
≈ $78k – $144k per year (Estimated) • Hybrid • 8+ years exp • Kraków
AI/ML
Red Teaming
Cybersecurity
ISO 27001
GDPR
Threat Modeling
Apply
≈ $61k – $106k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • Kraków
Python
JavaScript
C++
DevOps
GCP
CI/CD
Docker
Kubernetes
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
Defense in Depth
Threat Modeling
Apply
≈ $49k – $93k per year (Estimated) • In office • Full-Time • Kraków
Kotlin
Kotlin
MockK
Mobile
JUnit
Jetpack Compose
MVVM
Kotlin Multiplatform
Clean Architecture
Espresso
Compose Multiplatform
Management
Agile
Apply
≈ $31k – $81k per year (Estimated) • Hybrid • Full-Time • 3+ years exp • Kraków • Casablanca • Warsaw • Bratislava • Budapest
ABAP
ABAP
SAP Fiori
Management
Jira
ServiceNow
Apply
≈ $39k – $69k per year (Estimated) • Hybrid • Full-Time • Bachelor's Degree • Kraków
AI/ML
AI Agents
Edge AI
Apply
See all jobs
This is one of many
1,035,818 more open roles from verified company boards, updated every day.