For candidates

We will find your next job

Are you looking for a new job in IT? Would you like to get started in this industry, or you simply fancy a new work challenge? We can help you.

Current job offers

1. interview

Initial interview / call with consultant.

We inquire. We ask. We discuss. Our goal during this meeting is to determine, as accurately as possible, which company and position are the right ones specificaly for you.

2. e-mails

First, we’ll send you a summary of what was discussed during the interview (information about the position, the client and links to LinkedIn profile of people you might meet during the selection process).

The second email will include a request for consent to GDPR.

The third email we’ll send is to our client. It will contain information about your profile and why we think you should be the one to enter the selection process.

3. invitation

Once we receive feedback from our client, we’ll contact you again to set up another interview, this time with the client (sometimes you can get a call straight from the client).

4. we want to know about you

Po každém pohovoru, co u klienta absolvujete, se s vámi spojíme s žádostí o zpětnou vazbu. Zjišťujeme jak se vám líbila pozice, firma, potenciální šéf, prostředí, …

Stejně tak zjistíme zpětnou vazbu od klienta, kterou vám sdělíme, abyste věděli, jak si stojíte.

5. offer

  1. we want to know about you

After each interview with the client, we will contact you with a request for feedback. We want to know how you liked the position, the company, the potential boss, the environment, …

We’ll also request the feedback from the client and share it with you so you know where you stand.

6. care

The offer is accepted, and the start date arranged. Congratulations! But we’ll still take care of you. We want to keep in touch with you to make sure everything is okay.

Don't miss

Benefits of working with us

We can help you navigate the job opportunities in the world of IT.

You don’t have to spend your time looking through lists of job positions — we’ll find them for you.

We will present only the relevant positions, and it will be up to you to choose whether you’d like to participate in the selection process.

We negotiate the best possible options and conditions for you.

Our references

What is said about us?

I can highly recommend agency for their effectiveness, kindness, great communication skills, and assertiveness. Throughout the recruiting process, I always felt like a valued individual, which is definitely not common nowadays.

Miroslav Fabian

SAN and Storage Engineer

I have been cooperating with siteq. for several years and was always exceedingly satisfied with the services provided, the high degree of professionalism and their wonderful human approach. It is enjoyable to work with people who are able to embrace the whole spectrum of the company’s needs and to understand the needs of an individual in an organization. The quality and the broadness of the services provided rank siteq. among the absolute top in the Czech human resources market.

Andrej Remis

Senior Integration Architect

I appreciate the professional and specialist approach. I have cooperated with siteq. twice whilst looking for a job. There are lots of human resources agencies in the job market but it is difficult to find an agency which is able to assess your abilities, understands your field of activity, listens to your wishes and requirements, and on the basis of this is able to find an adequate job for you.

Miroslav Osmančík

Networking & Securite Lead

More references

Frequently asked questions

FAQ


What is the role of the headhunter towards me, a candidate?

Our goal is not just to interview you and send your CV to our client. We inquire. We ask questions. We discuss. This is so that we can determine as accurately as possible which company and position is the right fit for you, and also so we can then sell you to our client well.

We are there for you during the selection process. We arrange deadlines, get feedback, and mediate between you and your future employer. We negotiate for you. And we do it in a way to protect your interests.

We take care of you even when we don’t need to. When you join our client, we’re always in touch with you. We want to make sure that you’re enjoying your time with the company and that you are satisfied. We can resolve uncomfortable situations for you if necessary.

We are your partners. We fight for you.


Can I take some time to think about it?

We’ve discussed the options together, you like the position and our client, but at the end of the conversation, there’s a question or a statement that you’ll think it over and get back to us in a bit. That is of course possible. We won’t force you to do anything you don’t want to. However, please be aware that by the time you decide, the position may no longer be available. The saying “first come, first served” applies in this situation.
Please remember that being part of the selection process does not commit you to anything.


What is the financial compensation for the position?

A very frequent question and in most cases, it always gets the same answer. We have a budget, a ceiling from our clients, but we also tell all of our clients to not close their doors. So the important thing is that the candidate knows their worth and can justify it. Most of our clients are open to talking to quality candidates who demonstrate their value and worth (literally).


Selected IT positions

Latest job openings


SIEM Engineer – Splunk / Microsoft Sentinel

Location

Hlavní město Praha
Remote

Job Type

Permanent

Field

Networks / Security

Salary

90.000 - 130.000

Our client is a global technology and professional services company with a Cyber Center based in Prague. The team supports enterprise clients across multiple industries and operates as a mature, production-grade security organization — not a lab environment or short-term pilot setup. The Prague office consists of approximately 270 professionals. The broader security operations unit has around 80 people, including roughly 27 engineers responsible for the technical layer — SIEM platforms, detection pipelines, and incident response tooling. English is used for client-facing communication and documentation; Czech is the day-to-day language within the local team. Why This Role Exists Now: The security operations team is expanding. Two new engineers are joining in parallel — one focused on broader SIEM platform operations (separate ad), while this role is aimed at someone with deeper expertise in cloud SIEM architecture, detection engineering at scale, and advanced-level Splunk Enterprise Security or Microsoft Sentinel analytics. The team already includes senior engineers who designed parts of the current detection architecture, meaning critical knowledge and mentorship are available from day one. IBM QRadar is entering maintenance mode. If you've spent years on QRadar and know the transition is coming, this is where that transition happens — with a team already running Splunk ES and Sentinel in production, and a clear onboarding path into both.What Matters Most: This role is for someone who thinks in terms of detection logic, not just queries. Three things are essential: — Advanced SIEM expertise — Splunk Enterprise Security (risk-based alerting, notable event management, ES data models) or Microsoft Sentinel (analytics rules at scale, KQL optimization, UEBA, Fusion), with 3+ years of real production experience — Detection engineering mindset — understanding of threat models (MITRE ATT&CK), ability to map detection gaps to adversary behavior, and write detection rules that are effective without generating excessive noise — Strong understanding of data pipelines — knowledge of log source behavior, normalization principles, and the impact of broken parsing rules English should be strong enough for technical documentation and client-facing reporting. If your background is QRadar or a single-vendor environment — that's fine. SPL and KQL are tools. We care about how you think about detection, not which query language you currently know. Nice to Have: — Chronicle / Google SecOps experience — YARA-L detection rules, UDM data model — SOAR experience — Splunk SOAR (Phantom), Microsoft Sentinel playbooks, or similar tooling — Certifications such as Splunk Core Power User / Architect, Microsoft SC-200, GCIA, GCIH — Threat hunting experience — proactive analysis of historical data for indicators of compromiseRole / Mission: Your primary responsibility will be detection engineering and SIEM platform ownership — not alert monitoring. You'll design and maintain correlation rules and analytics, ensure incoming data is properly parsed and normalized, and build detection logic that identifies meaningful threats without overwhelming analysts with noise. Primary platforms include Splunk (including Splunk Enterprise Security) and Microsoft Sentinel. Chronicle / Google SecOps is present in selected client environments, so experience with it is a strong advantage. QRadar and ArcSight still exist in several legacy environments. Success after 12 months means owning at least one major detection domain. Your analytics rules have measurably reduced false positives, and you can clearly explain why specific rules are tuned the way they are. Key Responsibilities: — Design, build, and maintain detection analytics in Splunk ES (correlation searches, risk-based alerting) and/or Microsoft Sentinel (analytics rules at scale, KQL, Fusion detections) — Manage data ingestion pipelines — onboarding log sources, parsing, normalization, field extractions — Conduct threat-informed detection reviews: map coverage against MITRE ATT&CK, identify gaps, prioritize improvements — Support incident response escalations through platform-level investigations — advanced queries, timeline reconstruction — Contribute to SOAR playbook development and automation logic — Participate in on-call rotation and lead post-incident reviews related to platform-level issues What This Role Is NOT: — Not a Tier 1 analyst role — you'll work upstream from triage, designing the logic that enables effective detection and response — Not a pure administration role without detection ownership — the expectation is to build and improve, not only configure — Not an isolated research position — your work directly impacts live enterprise environments, so quality matters from day one Operating Model: Standard working hours, no shift work. On-call rotation is shared across the engineering team. Hybrid setup in Prague or fully remote is also possible. Reports to: Head of Security Engineering Language: English for client-facing communication and technical documentation; Czech for internal team collaboration Travel requirements: minimal.Interested? Let's Talk If this sounds like the kind of challenge you're looking for, apply now. Throughout the process, you'll work with a senior recruiter who has hands-on IT experience. Straightforward communication, technically grounded discussions, and no unnecessary recruitment overhead. Send your CV or LinkedIn profile to or connect via linkedin.com/in/jirisoljak Interview Process: — Intro call with a SITEQ recruiter — 30 minutes covering the role and client context — First interview with the team lead — team structure, responsibilities, day-to-day collaboration — Technical interview with a senior engineer from the security operations team — detection logic, platform depth, real-world scenarios (no trick questions) — Offer Please note: this position is open only to candidates who are eligible to work in the EU without visa sponsorship and are able to reside and work in the Czech Republic.

Security Operations Engineer – SIEM & Platform

Location

Hlavní město Praha
Remote

Job Type

Permanent

Field

Networks / Security

Salary

90.000 - 130.000

Our client is a global technology and professional services company with a Cyber Center in Prague. The team serves enterprise clients across multiple industries and operates as a mature, production-grade security operation — not a lab, not a pilot. The Prague team is around 270 professionals. The security operations unit has ~80 people, including roughly 27 engineers who own the technical layer — SIEM platforms, detection pipelines, incident response tooling. English is the language of client-facing work; Czech is day-to-day inside the team. Why This Role Exists Now: The security operations team is expanding. Two new engineers are joining — this is one of two roles being filled at the same time. The other role goes deeper on cloud SIEM (separate ad). The team has experienced engineers who know the detection architecture well, and now is a good moment to join — the knowledge transfer opportunity is real and accessible from day one. If you've been in an MSSP environment where detection ownership stays with the vendor or a central content team — this role is built differently. Most MSSP setups give you the SIEM. This one gives you the rules.What Matters Most: We're not looking for someone who ticked every checkbox on a certification list. Three things actually matter: — SIEM hands-on time — you've worked with Splunk (SPL queries, correlation searches) or Microsoft Sentinel (KQL, analytics rules) for at least 2 years in a production environment — Linux system knowledge — you understand how logs are generated, how syslog works, what endpoint telemetry looks like — Detection thinking — you can write a correlation rule from scratch, explain why it's tuned the way it is, and recognize when a low-severity alert is worth investigating English needs to be solid for reading technical documentation and writing client-facing reports. If your background is primarily QRadar or ArcSight — that's a valid starting point. We care more about your engineering instincts than the vendor logo. Nice to Have: — Experience with Chronicle/Google SecOps — YARA-L rules, UDM data model — Familiarity with QRadar or ArcSight from client or previous employer environments — Security certifications: GCIA, CEH, CompTIA Security+, Microsoft SC-200, or Splunk Core Certified — Scripting for automation — Python, PowerShell, or bash for log parsing or playbook triggers Don't let the nice-to-haves stop you. If you have the three core things, the rest can be learned.Role / Mission: Your job is to keep the SIEM infrastructure healthy and make sure the detections it runs actually catch things worth catching. Day-to-day: monitoring and triaging alerts, maintaining log source pipelines, tuning correlation rules, and working with analysts when something escalates. You'll also write and maintain playbooks so the team doesn't reinvent the wheel during incidents. Tech context: the team runs Splunk and Microsoft Sentinel as primary platforms. QRadar and ArcSight in the mix from legacy clients. Chronicle/Google SecOps is present in some environments — knowledge there is a plus. Success in 12 months: you own your detection playbooks, you've added at least one meaningful improvement to the ingestion or detection layer, and when someone has a question about platform behavior, they come to you first. Key Responsibilities: — Monitor, triage, and investigate alerts across SIEM platforms (primarily Splunk and Microsoft Sentinel) — Build, tune, and maintain detection rules and correlation logic — SPL, KQL, or both — Maintain SIEM infrastructure: log sources, ingestion pipelines, platform health, onboarding new data feeds — Write and update incident response playbooks; support L1/L2 analysts during active investigations — Participate in on-call rotation; contribute to post-incident documentation and lessons learned What This Role Is NOT: — Not a pure L1 analyst position — you're here to engineer and improve, not just watch dashboards — Not a client-facing sales or advisory role — this is delivery, inside the engine room — Not a solo build-from-scratch project — you're joining an existing team with live infrastructure Operating Model: Standard working hours, no shift work. On-call is a shared rotation across the engineering team. Hybrid setup in Prague or fully remote is also possible. Reports to: Head of Security Engineering. English for client documentation; Czech for internal team communication. Travel is minimal.Interested? Let's Talk If this sounds like your kind of challenge, apply now — let's build something great together. Throughout the process, you'll be guided by a senior recruiter with hands-on IT experience. Straightforward, technically grounded, without unnecessary recruitment overhead. Send your CV or LinkedIn profile to or reach out via linkedin.com/in/jirisoljak Interview process: — Intro call with SITEQ recruiter — 30 minutes, we'll explain the role and client context — First interview with the team lead — get to know each other, talk about the team and day-to-day — Technical interview with a senior engineer from the security operations team — hands-on discussion, no trick questions — Offer Please note: this position is open only to candidates eligible to work in the EU without visa sponsorship, able to reside and work in the Czech Republic.

IT Project Manager

Location

Hlavní město Praha
Hybrid

Job Type

Permanent

Field

Management / Project Management

Salary

80.000 - 120.000 CZK

Mezinárodní technologická skupina s více než 30 lety na trhu, 800+ odborníků a zastoupením v několika zemích střední a východní Evropy. Realizuje projekty v oblasti IT infrastruktury, datových center, cloudových řešení, kybernetické bezpečnosti, robotizace a IT outsourcingu. Firma provozuje rostoucí portfolio managed services pro enterprise zákazníky. Delivery je core byznys — ne interní funkce. Prostředí, kde projektové řízení dává smysl a výsledky jsou měřitelné.— IT projektové řízení — 3–5 let praxe, ideálně v ICT integrátorovi nebo managed services — ITSM a delivery governance — ITIL nebo ekvivalent, Jira, SLA/change/incident management — Zákaznická komunikace — přímý kontakt se zákazníkem, eskalace, operativa Angličtina B2/C1. Pokud je silnější písemně než ústně — firma nabídne jazykový program. Výhoda (ne podmínka): certifikace PRINCE2 nebo PMI (PMP), projekty na Cisco / Fortinet / Palo Alto / F5.Role / Mission: Budeš zodpovědný za řízení technologických projektů a service delivery napříč oblastmi infrastruktury, networkingu, security a datových center. Převezmeš část portfolia projektů a poneseš odpovědnost za jejich delivery — od kickoffu po předání. Tvůj záběr zahrnuje jak infrastrukturní projekty, tak managed services zakázky pro enterprise zákazníky. Nemáš přímé reporty, ale koordinuješ technické specialisty a držíš projekt pohromadě směrem k zákazníkovi i internímu týmu. Za 12 měsíců máš za sebou projekty s měřitelnými výsledky (forecast vs. actuals — scope, budget, timeline, kvalita, rizika) a reputaci partnera, na kterého se zákazník i tým spoléhají. Key Responsibilities: — Řídíš životní cyklus projektů od kickoffu po předání — plánování, scope, rizika, budget, reporting — Sleduješ SLA a kvalitu dodávky — identifikuješ odchylky a eskaluješ včas, ne až ex-post — Komunikuješ přímo se zákazníky — jsi jejich operativní PM kontakt, ne prostředník — Koordinuješ technické specialisty na projektech — lidé ti nereportují, ale spolupracují s tebou — Pracuješ s Jira — ticketing, tracking, reporting pro vedení i zákazníka What This Role Is NOT: — Není to team lead role — nevedeš lidi přímo, zodpovídáš za projekty a jejich výsledky — Není to čistě provozní role — řešíš komplexní projekty pro enterprise zákazníky, ne jen operativu — Nejsi zodpovědný za technický návrh řešení — k tomu máš architekty a presales; musíš ale rozumět kontextu a dopadům rozhodnutí Operating Model: Praha, full time, HPP (IČO není možné). Hybrid — 2 dny v kanceláři týdně. Čeština primárně; angličtina B2/C1 potřebná.Zaujalo tě to? Napiš nebo pošli reakci: | linkedin.com/in/jirisoljak CV není potřeba — stačí LinkedIn profil a pár vět o sobě. Budeš mluvit přímo se zkušeným IT headhunterem s vlastní IT praxí — 500+ náborů. Relevantní diskuze bez HR balastu. Proces: — Krátký úvodní call (15–30 min) — Maximálně 2 kola — pokud věc dává smysl, rozhodnutí přijde i po prvním — Před finálním rozhodnutím osobní setkání — V každém kroku víš, kde jsi. EU work authorization required. No visa sponsorship.

IT Project & Delivery Lead

Location

Hlavní město Praha
Hybrid

Job Type

Permanent

Field

Management / Project Management

Salary

100.000 - 140.000 CZK

Mezinárodní technologická skupina s více než 30 lety na trhu, 800+ odborníků a zastoupením v několika zemích střední a východní Evropy. Realizuje projekty v oblasti IT infrastruktury, datových center, cloudových řešení, kybernetické bezpečnosti, robotizace a IT outsourcingu. Firma provozuje rostoucí portfolio managed services pro enterprise zákazníky. Delivery je core byznys — ne interní funkce. Stabilní organizace s prostorem pro lídra, který chce věci skutečně řídit.— IT projektové řízení a delivery — 5–7 let praxe, ideálně v ICT integrátorovi nebo managed services — Vedení lidí — min. 2–3 roky jako team lead nebo manager — ITSM a delivery governance — ITIL nebo ekvivalent, Jira, SLA/change/incident management Angličtina C1. Pokud je silnější písemně než ústně — firma nabídne intenzivní jazykový program. Výhoda (ne podmínka): certifikace PRINCE2 nebo PMI (PMP), projekty na platformách Cisco / Fortinet / Palo Alto / F5.Role / Mission: Reportuješ přímo Head of PMO & Delivery. Pod sebou máš tým 4–5 IT projektových manažerů — společně koordinujete technické specialisty na projektech i v servisní složce. Rozložení práce: 50 % vedení a koordinace, 50 % vlastní projekty. Tahle architektura je záměrná — projekty a tým máš strukturovaně oddělené, ne ve věčném přetlaku. Za 12 měsíců máš za sebou projekty s měřitelnými výsledky (forecast vs. actuals — rozsah, budget, čas, kvalita, rizika), tým, který funguje bez mikromanagementu. Key Responsibilities: — Nastavuješ standardy PM práce v týmu — od plánování přes řízení rizik po reporting vedení — Hlídáš SLA a kvalitu dodávky — sleduješ KPI, identifikuješ odchylky a navrhuješ konkrétní opravy — Komunikuješ přímo se zákazníky a řešíš eskalace — jsi pro ně partner, ne jen provozní kontakt — Plánuješ kapacity napříč projekty i servisními zakázkami — Přicházíš se změnami — optimalizace procesů, stabilizace rizikových projektů, nastavení standardů jak se věci dělají What This Role Is NOT: — Tahle role není Head of PMO — strategická agenda firmy není tvůj záběr; tvůj záběr je delivery, tým a zákazník — Není to čistě manažerská role — půl tvého času jsi sám na projektech jako PM — Nejsi zodpovědný za technický návrh řešení — k tomu máš architekty a presales; musíš ale rozumět o čem se mluví Operating Model: Praha, full time, HPP (IČO není možné). Hybrid — 2 dny v kanceláři týdně. Čeština primárně + angličtinaZaujalo tě to? Aplikuju, nebo napiš: | linkedin.com/in/jirisoljak CV není potřeba — stačí LinkedIn profil a pár vět o sobě. Budeš mluvit přímo se zkušeným IT headhunterem s vlastní IT praxí — 450+ náborů. Relevantní diskuze bez HR balastu. Proces: — Krátký úvodní call (15–30 min) — Maximálně 2 kola — pokud věc dává smysl, rozhodnutí přijde i po prvním — Před finálním rozhodnutím osobní setkání — V každém kroku víš, kde jsi. EU work authorization required. No visa sponsorship.

Contact

>_Do you have any questions?

    >_Are you looking for a new job opportunity? Send us your CV or LinkedIn profile.

    IT jobs