Gcore logo

Gcore

SOC Analyst (WAAP)

Work from home

Remote role where the employee must remain based in a particular country.

Poland only

Employer listed it 2 weeks ago · Added yesterday

Been open since 2 weeks ago, still checked daily, but it has been live a while.

Salary

Not stated

Location

Poland only

Timezone

CET ±2

Contract

Full-time

Experience

Mid

Category

Software

This employer didn't state pay. Jobs like this usually pay around $165k–$255k a year, a typical range taken from 594 mid-level software roles on Nomaders that do state pay. It's a guide, not an offer.

Remote flexibility

Work from home

This is a remote role, but the employee must be based in Poland. It is work from home rather than work from anywhere.

What the employer says

  • Source listing states candidate location: "Krakow, , Poland, Krakow, pl, Remote"
  • Job description states: "Work from anywhere"

What Nomaders makes of it

  • Payroll and tax are likely handled in that country only

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

This position is available only under an employment (labor) agreement. 

The world’s digital experiences run on something invisible: the infrastructure and software that keep them fast, reliable, and secure. At Gcore,  you’ll help design and deliver that foundation for an AI-driven world. 

We’re a global provider of infrastructure and software solutions for  AI, cloud, network, and security,  powering everything from real-time communication and streaming to enterprise AI and secure web applications. With  210+ edge locations, 50+ cloud regions, and thousands of GPUs,  your work here can reach users and businesses across the globe. 

You’ll collaborate with leading technology partners such as  Intel, NVIDIA, Dell, and Equinix,  and work on platforms that power digital products used around the world. Our vision is simple: to connect the world to AI, anywhere, anytime. 

Want to work on technology that goes beyond a single product or industry?   Join a global team of  550+ professionals  building infrastructure and software that supports the entire digital ecosystem. 

Gcore WAAP protects customer web applications and APIs against DDoS, bots, and application-layer attacks at CDN edge scale. We are building out a proactive, managed-support offering for enterprise customers, and we need a SOC Analyst to run the day-to-day security operations: watch traffic and alerts, triage false positives, prepare customer-facing threat reports, and escalate real impact to the right team. You will work alongside our Threat Researchers, taking the operational load off them so they can focus on deep analysis. You do not need to be a threat-hunting expert.

You need to be reliable, observant, comfortable in logs and dashboards, and able to tell an attack from legitimate traffic - and know when to escalate.

What You Will Do 

Monitor WAAP and DDoS activity across customer accounts - dashboards, alerts, and traffic patterns - and recognize when something needs attention.

Triage false positives: review traffic flagged by security policies, confirm or dismiss, and keep noise down for customers (this is a large, daily part of the job).

Prepare reports: weekly threat summaries per customer and post-incident DDoS reports, in clear customer-facing English.

Alert and escalate: when an attack is impacting a customer, signal the engineering team or Support with the right context - e.g. a customer needs to be tagged or a policy adjusted - and follow the escalation runbook.

Support customer onboarding: apply standard security configuration based on the customer's profile (resource type, traffic volume, legitimate-traffic exclusions) following playbooks.

Follow the reaction-time SLA - our commitment to customers is speed of reaction and clear post-incident reporting, not a prevention guarantee.

Contribute to and maintain runbooks so responses are consistent and repeatable.

What We are Looking For

Understanding of web security fundamentals: WAF, DDoS, bots, OWASP Top 10.

Solid basics in HTTP, TCP/IP, TLS.

Comfortable analyzing logs and reading dashboards; can spot anomalies in traffic.

Able to distinguish malicious from legitimate traffic and reason about false positives.

Clear written English for customer-facing reports.

Reliable, detail-oriented, and calm under incident pressure.

Willingness to work in a shift/on-call rotation.

Nice to Have

Requirements

  • ·Explicitly NOT Required
  • ·Deep threat research, exploit development, malware reverse-engineering. That work stays with our Threat Researchers - this role feeds them clean, triaged signal and takes the routine off their plate.
  • ·Why This Role Matters
  • ·At Gcore, we want you to do your best work and enjoy the journey. Our benefits are designed to support your growth, well-being, and life beyond work: 
  • ·Competitive compensation 

Benefits

  • ·At Gcore, we want you to do your best work and enjoy the journey. Our benefits are designed to support your growth, well-being, and life beyond work: 
  • ·Competitive compensation 
  • ·Flexible working hours and hybrid or remote options, depending on your role 
  • ·Work from anywhere in the world for up to  45 days per year  
  • ·Private medical insurance for you and your family* 

How to apply

  1. 1Check the flexibility label above, work from home, matches where you plan to live and work.
  2. 2Tailor your CV to the role at Gcore, mentioning your remote working experience and working hours (CET ±2).
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 1d ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

Typically $165k–$255k · You'll be taken to the employer's careers page.