1 день назад
Cyber Defence & Incident Response Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cyber Defence & Incident Response Engineer (Cybersecurity): Building incident-response automation, detection engineering, and SIEM visibility for Glovo’s cyber defence ecosystem with an accent on digital forensics, cloud-native monitoring, and threat hunting. Focus on designing response playbooks, fine-tuning high-fidelity alerts, automating SOCless workflows, and investigating security incidents across AWS infrastructure.
Location: Barcelona, Spain; on-site role with the option to work from home two days per week.
Company
is a local delivery platform operating as part of the Delivery Hero Group across around 65 countries.
What you will do
- Support digital forensics and incident response investigations into security breaches and anomalies.
- Design and maintain incident-response playbooks and investigation methodologies.
- Create, validate, and fine-tune security alerts to improve fidelity and reduce noise.
- Build automation and orchestration tooling to support ’s SOCless cyber-defence model.
- Research emerging threats and conduct threat-hunting exercises across the infrastructure.
- Help manage security log-ingestion tools and the SIEM to maintain broad visibility.
Requirements
- Experience with incident response and digital forensics.
- Operational experience with AWS and cloud-native security logs.
- Python or Golang experience for automating responses and building security tooling.
- Knowledge of threat monitoring, detection engineering, and alert tuning.
- Understanding of threat hunting and the MITRE ATT&CK framework.
- Strong written and verbal communication skills for documenting incidents and supporting post-mortems.
Nice to have
- GCIH, GCFA, GNFA, or AWS Certified Security – Specialty certification.
- Experience with SOAR platforms.
- Knowledge of data privacy regulations and security protocols for data breaches.
Culture & Benefits
- Private health insurance and enhanced parental leave.
- Monthly credit and discounts on transportation, food, kindergarten expenses, and gym memberships.
- Extra time off and flexible home-working options.
- Opportunity to work from anywhere for up to three weeks per year.
- Online therapy, wellbeing benefits, and an office-based nursery.
- Inclusive workplace focused on diversity and equal opportunity.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Senior SOC Analyst, Security Operations (AWS/Elastic)
1 день назад
Security Analyst - Incident Response (Cybersecurity)
62 500 - 75 000€
6 дней назад
CTI Senior Analyst (Cybersecurity)
5 дней назад
Senior Cybersecurity Operations Engineer - ODS (Cybersecurity)
22 часа назад
Cyber Security Analyst L1
4 дня назад
Cybersecurity Lead Engineer/Architect (AI)
175 000 - 225 000$