Sobre esta vaga de Threat Detection and Response Specialist na PwC
Job Description & Summary
About the team
For us, SOC is not just a ticket or detections „washing machine “. We perceive incident response as a mandatory part of our services, along with other proactive activities such as: Threat Hunting, Threat Intelligence, Vulnerability Management, as well as post-incident activities like Forensic Analysis and more.
Threat Management team consists of cybersecurity professionals focused on prevention of the cyberattacks via detection and responding to cyber threats. The key pillars consist of incident response, threat hunting, threat intelligence, security monitoring, vulnerability management, engineering and consulting services.
About your manager
Lubomír has over 10 years of cyber security experience with different projects related to mainly cyber security managed services, building and operating Security Operation Centers (SOC), Threat Hunting & Intelligence and Vulnerability Management. Lubomír is also responsible for team leading, project management, designing of cyber security managed services, creation and development of training plans and is a proven coach to train other team members or client staff. Outside of work, he is involved in teaching, science, and research at the University of Hradec Králové, where he guarantees and teaches the course Surveillance Systems and Forensic Analysis.
Job description & summary
We are building a new, compact delivery team (2-3 FTE) focused on Threat Detection & Response (TDR), which will be the backbone of our professional services offering. This team does not operate purely as a specialized "tool team" nor solely as an advisory team without technical depth.
We are looking for individuals who want to combine hands-on technical work with a consulting overlay—a skill set that includes structuring problems, designing solutions, communicating them effectively to clients, and seeing projects through to completion. If you are looking for a role where you spend 80% of your time on slides and only 20% on technology, this position is not for you. if you also prefer to work exclusively in a SOC and have no interest in client context, this role is also not suitable.
As a Senior Associate in our TDR team, you will be a key member of our delivery team, combining technical depth with a consulting approach. You will work directly on client projects, handling everything from technical analysis and implementation, to preparing deliverables and presenting findings to the client. You are not just a "tool operator" – you are a "security thinker" who understands not only technology but also its impact on our clients' business.
This role offers the opportunity to build deep expertise in Threat Detection & Response from both technical and business perspectives while developing key consulting skills, including stakeholder management, problem solving, and executive communication. You will gain hands-on experience across diverse client environments and security challenges, contribute to the development of new service offerings, and benefit from a clear path toward a Manager role based on demonstrated performance and growth.
Technical Delivery (~50% of Time)
Engage in hands-on work with SIEM (primarily Splunk, secondarily Microsoft Sentinel) including configuration, optimization, and troubleshooting.
Develop and refine detection rules/use cases based on threat landscapes and client requirements.
Conduct threat hunting activities and support incident response processes, including analyzing incidents and recommending remediation actions.
Assess the maturity of clients' detection and response capabilities.
Client Communication (~30% of Time)
Lead technical workshops and working sessions with client security teams.
Present findings, recommendations, and remediation actions, translating technical concepts into clear business outcomes.
Build strong client relationships and drive discussions around priorities, scope, and next steps.
Documentation and Business Development (~20% of Time)
Prepare high-quality deliverables: assessment reports, solution proposals, recommendations, and roadmaps.
Assist in proposal preparation—providing technical input, labor estimation, and scope definition.
Contribute to the internal knowledge base and aid in the development of service offerings.
What matters to us
3–6 years of experience in the field of cybersecurity (consulting experience not mandatory).
Practical hands-on experience in at least one of the following areas: SIEM (preferably Splunk), Threat Hunting, Incident Response, Detection Engineering.
Ability to independently analyze data, draw conclusions, and prepare technical outputs.
Capable of presenting work results to clients (you don’t need to be a showman, but clear communication is essential).
Proficient in English at a working level (B2+); Czech is an advantage.
Structured thinking with the ability to break down problems into parts and design a plan of action.
Willingness to work in a hybrid model: combining technical work, client interaction, and documentation
What will help you stand out
Experience with Microsoft Sentinel and cloud security (Azure/AWS).
Familiarity with SOAR platforms or automation of security processes.
Certifications such as GIAC (GCIH, GCIA, GCDA), CompTIA CySA+, Splunk certifications, SC-200.
Previous experience in a consulting or professional services environment.
Knowledge of the MITRE ATT&CK framework and its practical application.
Why you’ll enjoy working here
Professional growth that matches your ambitions and pace. Gain in months the kind of experience that can take years to build elsewhere.
Fair pay with no gaps. We are among the few companies in the Czech Republic certified for Equal Pay.
A flexible benefits programme with 55,000 points to spend on what matters most to you.
35 days of paid time off, including three well-being days and two additional days off at the end of the year.
An opportunity to give back to the community with one paid volunteering day every year.
The chance to work from one of PwC’s international offices (available from the Senior Associate level).
We support your learning and development journey: Benefit from training and certifications in business and digital skills aligned with your area of expertise, as well as soft-skills development covering presentation skills, coaching, effective communication, and more. We cover the costs of professional certifications.
A buddy programme, regular feedback, and access to a coach who can support your professional development and career path.
Extensive well-being support and initiatives promoting a healthy lifestyle, from Dr. Digital and Human Dynamic programmes to workplace yoga and running events.
An ultrabook and an iPhone with unlimited data.
Social events and Away Days.
Check us out on: Cyber & Privacy | Czech Republic
At PwC, we help clients solve today’s and tomorrow’s challenges across audit, consulting, tax, legal, technology, and data. We create an environment where people can learn, grow, and build a career in their own way. We believe the best results come from diverse experiences and perspectives. That’s why we foster an inclusive culture where everyone can be themselves, build on their strengths, and contribute to work that makes a real impact.
Interested in joining us? We’d love to hear from you and tell you more about this opportunity.
Ochrana osobních údajů pro žadatele o zaměstnání / Privacy Statement for Recruitment Applicants.
#LI-EK1