freehire launches on Product Hunt on 26 August.

Follow →

Security Operations Analyst

.

Overview

You will join the Global Security Operation Center, handling the monitoring, analysis, and operational management of security events related to systems, applications, and business workflows that use frontier LLMs, AI agents, RAG, and generative capabilities integrated into business processes.

What your activities will be

  • Detect and investigate threats to corporate AI systems
  • Collaborate with Security Operations, Threat Intelligence, Application Security, Cloud Security, Data Governance, and AI Platform teams to develop detection and response capabilities
  • Analyze and manage alerts related to LLMs, AI agents, RAG systems, and agentic workflows
  • Investigate attempts at prompt injection, jailbreak, context manipulation, abuse of integrated tools, and anomalous access
  • Support AI incident response, with a focus on data leakage, unauthorized actions, and information compromise
  • Define and improve detection use cases by integrating logs, telemetry, audit trails, IAM, DLP, SIEM, and XDR
  • Analyze abuse patterns of frontier LLMs, translating them into monitoring rules and playbooks
  • Maintain a knowledge base on attack techniques and document evidence, TTPs, impacts, and operational recommendations

Who we are looking for

If you have the following characteristics, we are waiting for you:

  • 3-5 years of experience in the role
  • Solid knowledge of Detection & Response tools such as SIEM, XDR, SOAR, EDR, NDR, DLP, IAM, and monitoring platforms
  • Knowledge of the main risks related to LLMs, AI agents, and RAG systems, including prompt injection, jailbreak, data leakage, data poisoning, model extraction, and tool abuse
  • Experience in analyzing application logs, audit trails, API events, cloud telemetry, and security data
  • Experience in optimizing detection use cases, correlation, and response playbooks
  • Scripting and data analysis skills with Python, KQL, or equivalent tools
  • Knowledge of modern application architectures, APIs, cloud, identity providers, and security controls
  • Familiarity with OWASP Top 10 for LLM Applications, MITRE ATLAS, MITRE ATT&CK, and NIST AI RMF

What we offer you

  • Gross annual salary starting from €45.000

  • The Group provides a variable component of remuneration as regulated by the Remuneration Policies available on the Group's website

  • Complementary elements regulated by the National Collective Labor Agreement for the Credit Sector and second-level company agreements

  • Professional development initiatives to support the growth of our people

  • Extensive training offer through the Corporate Academy dedicated to the continuous development of professional, managerial, and soft skills at all levels

  • Possibility to join flexible work arrangements and the 4x9 short week

  • Modern and integrated corporate welfare system ( link)

  • Health coverage and supplementary pension starting from hiring

  • Advantages on the Group's banking products and services

Who we are

We are leaders in Italy and one of the main banking groups in Europe. Join us and be part of our success story! With over 20 million customers in Italy and abroad, we are a true engine of sustainable growth with a strong commitment to the environment and a tangible impact on society.

People are at the center; we take care of them by committing to creating an inclusive culture within the Group where everyone feels like a protagonist and valued.

The Chief Security Officer Governance Area oversees the physical security, cybersecurity, and operational continuity of the Group in an integrated way, leveraging specialized skills and advanced technological solutions, with the goal of ensuring high international security standards.

The Area includes the Security Staff, Group Security Planning & Models Monitoring, Corporate and Physical Security, and Cybersecurity, Antifraud & Business Continuity Management structures, ensuring a coordinated and cross-functional approach to protecting the Group.

Join our international reality. The future is not waited for, it is chosen!

#sharingfuture

We guarantee an inclusive and equal opportunity environment. We will consider all applications regardless of race, religion, sexual orientation, gender identity, marital status, age, disability, or any other protected category in compliance with Legislative Decrees 198/2006, 215/03, and 216/03.

For the evaluation of applications, the data will be used by Intesa Sanpaolo S.p.A. as Data Controller. We invite you to read the dedicated Privacy Notice.

See also