Назад
Company hidden
18 часов назад

Cybersecurity Incident Responder

3 500 - 6 500€
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
France/Poland/Spain +21 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cybersecurity Incident Responder (Incident Response/Digital Forensics): Managing the full lifecycle of cybersecurity incidents and investigating endpoints, servers, and cloud workloads with an accent on containment, eradication, recovery, and forensic analysis. Focus on handling ransomware and data-exfiltration cases, coordinating multi-tenant response activities, and maintaining rapid on-call readiness.

Location: Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Hungary, Italy, Latvia, Lithuania, Luxembourg, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, or The Netherlands

Salary: EUR 3,500–6,500 per month gross

Company

hirify.global provides cybersecurity and digital services for international organizations operating secure IT infrastructure, data management, and digital services.

What you will do

  • Execute the full incident lifecycle, including triage, containment, eradication, recovery, and lessons learned.
  • Perform digital forensics across endpoints, servers, and cloud workloads using disk, memory, and log analysis.
  • Investigate escalated SOC alerts and determine the scope and impact of security incidents.
  • Coordinate response activities with affected client organizations, IT teams, and management.
  • Develop and maintain incident-response playbooks and runbooks, and conduct tabletop exercises.
  • Write incident reports and root-cause analyses, recommend remediation, and participate in an on-call rotation.

Requirements

  • 5+ years of cybersecurity experience, including 3+ years of hands-on incident response.
  • Proven end-to-end experience handling incidents such as ransomware, business email compromise, account compromise, and data exfiltration.
  • Hands-on experience with EDR/XDR tools such as Microsoft Defender for Endpoint, CrowdStrike, or SentinelOne.
  • Experience with memory and disk analysis, Windows and Linux artifacts, and forensic tools such as Volatility, KAPE, Velociraptor, FTK, or EnCase.
  • Experience investigating Microsoft 365, Entra ID, and Azure environments, with strong knowledge of NIST SP 800-61 or SANS incident-handling frameworks.
  • Readiness for on-call rotation, with response within 15 minutes and system access within 1 hour; clean record and readiness for background verification. English at Upper-Intermediate level or above.

Nice to have

  • GCIH, GCFA, GCFE, GNFA, or ECIH certification.
  • Cloud forensics experience in AWS or GCP.
  • Malware triage and basic reverse-engineering skills.
  • Scripting experience with Python or PowerShell.
  • Experience in an MSSP or multi-tenant environment.

Culture & Benefits

  • Work with international clients and leaders in FinTech, healthcare, retail, telecom, and other industries.
  • Opportunities to change projects and develop expertise in different business domains.
  • Mentoring, onboarding, professional development, and career growth programs.
  • Corporate training portal and certification compensation.
  • Private health insurance and sports compensation, depending on the type of employment.
  • Additional earnings of up to EUR 1,000 per month may be available through company activities and included in the annual bonus.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →