Zagreb, Croatia (Hybrid)
At Ericsson Nikola Tesla, we don’t just follow technology—we shape it. With nearly 3000 professionals, mostly from STEM fields, we’re a powerhouse of innovation built on over 75 years of experience. As the region’s leading R&D center and a leading exporter of software development services, we blend deep expertise with bold ideas—lighting the way toward a more connected, secure, and intelligent future. Beyond our cutting-edge ICT solutions in the telecom sector, we’re also shaping the future in healthcare, transport, public services, and multimedia. Our innovative technologies make a real difference—enhancing everyday life and delivering meaningful value to communities.
Our Enterprise IT unit is currently seeking an IT Security Specialist who is passionate about building and automating solutions to defend against evolving cyber threats. In this role, you will play a vital role in ensuring our platforms and business operations remain secure and resilient.
Location: Zagreb
What you’ll be doing:
- Perform security analysis of incidents, alerts and suspicious activities
- Independently investigate security events, identify root causes and propose remediation
- Correlate inputs from multiple sources (SIEM, EDR, email security, logs, user reports)
- Actively hunt for anomalies and potential security threats
- Document investigation findings in a clear and structured manner, and escalate incidents when required
- Plan, prepare and facilitate tabletop exercises for cyber incidents
- Design and run phishing simulation campaigns, including analysis of results and follow‑up improvement actions
- Develop and deliver security awareness and education activities for employees
- Translate real incidents and investigation findings into practical training and awareness content
- Continuously improve organizational readiness and overall cyber resilience
We are looking for:
- University degree in ICT or a related field
- Strong communication skills, with the ability to clearly explain findings to both technical and non‑technical audiences
- Strong written and spoken English skills
Would be considered a plus:
- 2+ years of experience in security operations, incident response or SOC environments
- Experience with L2 alert analysis or incident investigations
- Knowledge of security frameworks (ISO 27001, NIST, OWASP)
- Experience with phishing simulations, security awareness or user training
- Familiarity with SIEM, EDR, email security solutions and vulnerability tools
- Any relevant security certification (Security+, CEH, SANS, ISO 27001, etc.)
We offer:
You won’t just work on cutting-edge technology—you’ll be part of a team that values your ideas, supports your growth, and makes sure you enjoy the journey along the way. Here’s what you can look forward to:
- Smooth start – a company laptop, and a mobile phone with great plan.
- Flexibility – hybrid work and flexible hours that fit your lifestyle.
- Career growth – level up with mentoring, scholarships, and continuous learning.
- Performance rewards – annual awards, performance-based bonuses, innovation incentives, and a holiday allowance.
- Commute covered – full reimbursement for public transportation.
- Beyond basic health – regular medical check-ups, supplementary & additional health insurance, and well-being programs.
- Family support – 2000 EUR newborn gift, kindergarten subsidy, and extra days off for family needs.
- Referral reward – earn a bonus for bringing great talent.
- Meal perks – 100 EUR monthly meal allowance and access to our on-site restaurant in Zagreb.
- Life beyond work – join sports, cultural, and community activities.
- Active lifestyle – stay active with a partially subsidized Multisport card.
- Time to recharge – enjoy compensatory time off during the Christmas holidays.
- And much more.
Please submit your application, including your CV, written in either Croatian or English. Any personal projects (on GitHub or similar) are also welcome.
Croatian citizenship or a work permit for Croatia is mandatory.
Candidates will be evaluated and contacted after passing the initial screening.