3 дня назад
Director, Security Operations (Security Engineering)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Director, Security Operations (Security Engineering) (Cybersecurity): Leading global threat detection, security monitoring, threat intelligence, and incident response across Delivery Hero's worldwide entities with an accent on Google SecOps, detection engineering, and operational maturity. Focus on directing CSIRT and SOC teams, commanding critical incidents, integrating threat intelligence into proactive defenses, and measuring detection and response performance with MITRE ATT&CK.
Location: Berlin, Germany; hybrid model with attendance at the Berlin campus two days per week
Company
operates a global local delivery platform across approximately 65 countries, with headquarters in Berlin and a large technology organization.
What you will do
- Lead and mentor global CSIRT and SOC teams responsible for monitoring and incident response across entities.
- Define and execute the multi-year strategy for threat detection, incident response, and threat intelligence.
- Modernize the detection pipeline with Google SecOps, advanced telemetry, high-fidelity detections, and automated response playbooks.
- Act as incident commander and ultimate escalation point for critical security incidents.
- Translate threat actor tactics, techniques, and procedures into proactive detection engineering and strategic defenses.
- Establish operational metrics, including MTTD, MTTR, and MITRE ATT&CK detection coverage, to drive continuous improvement.
Requirements
- Proven leadership of SOC and CSIRT or incident response functions in large-scale enterprise or technology environments.
- Extensive experience managing complex security incidents and building proactive threat hunting programs.
- Hands-on familiarity with cloud-native SIEM and SecOps platforms, telemetry ingestion, detection-as-code, and SOAR playbooks.
- Strong executive communication, crisis management, stakeholder management, and team mentorship skills.
- Experience managing global follow-the-sun or escalation models and measuring security operations performance.
- Ability to balance urgent incident response with long-term strategic capability development.
Nice to have
- Experience with Google SecOps or Chronicle.
- Experience in large-scale platforms, food or logistics delivery networks, or multi-tenant cloud ecosystems.
- CISSP, CISM, GCIH, GCFA, GNFA, or comparable security operations certification.
- Experience with multi-cloud environments, including AWS and GCP.
Culture & Benefits
- Hybrid working model with face-to-face collaboration at the Berlin campus two days per week.
- 27 days of annual leave, with an additional day in the second and third years of service.
- Health checkups, meditation, yoga, gym access, life and accident insurance, and a corporate pension plan.
- Employee share purchase plan, sabbatical bank, public transport discounts, and meal or food vouchers.
- €1,000 annual education budget, language courses, and parental support.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Senior Security Engineer - SecOps
68 000 - 91 000€
4 дня назад
Teamlead - Security Incident Response (Cybersecurity)
85 000€
8 дней назад
Detection Engineer CDC / Security Specialist with SIEM Skills (Cybersecurity)
3 дня назад
Team Lead Incident Response (Cybersecurity)
3 дня назад
Senior AI & Cyber Defense Specialist
9 дней назад