18 часов назад
Cybersecurity Incident Responder
3 500 - 6 500€
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cybersecurity Incident Responder (Incident Response/Digital Forensics): Managing the full lifecycle of cybersecurity incidents and investigating endpoints, servers, and cloud workloads with an accent on containment, eradication, recovery, and forensic analysis. Focus on handling ransomware and data-exfiltration cases, coordinating multi-tenant response activities, and maintaining rapid on-call readiness.
Location: Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Hungary, Italy, Latvia, Lithuania, Luxembourg, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, or The Netherlands
Salary: EUR 3,500–6,500 per month gross
Company
provides cybersecurity and digital services for international organizations operating secure IT infrastructure, data management, and digital services.
What you will do
- Execute the full incident lifecycle, including triage, containment, eradication, recovery, and lessons learned.
- Perform digital forensics across endpoints, servers, and cloud workloads using disk, memory, and log analysis.
- Investigate escalated SOC alerts and determine the scope and impact of security incidents.
- Coordinate response activities with affected client organizations, IT teams, and management.
- Develop and maintain incident-response playbooks and runbooks, and conduct tabletop exercises.
- Write incident reports and root-cause analyses, recommend remediation, and participate in an on-call rotation.
Requirements
- 5+ years of cybersecurity experience, including 3+ years of hands-on incident response.
- Proven end-to-end experience handling incidents such as ransomware, business email compromise, account compromise, and data exfiltration.
- Hands-on experience with EDR/XDR tools such as Microsoft Defender for Endpoint, CrowdStrike, or SentinelOne.
- Experience with memory and disk analysis, Windows and Linux artifacts, and forensic tools such as Volatility, KAPE, Velociraptor, FTK, or EnCase.
- Experience investigating Microsoft 365, Entra ID, and Azure environments, with strong knowledge of NIST SP 800-61 or SANS incident-handling frameworks.
- Readiness for on-call rotation, with response within 15 minutes and system access within 1 hour; clean record and readiness for background verification. English at Upper-Intermediate level or above.
Nice to have
- GCIH, GCFA, GCFE, GNFA, or ECIH certification.
- Cloud forensics experience in AWS or GCP.
- Malware triage and basic reverse-engineering skills.
- Scripting experience with Python or PowerShell.
- Experience in an MSSP or multi-tenant environment.
Culture & Benefits
- Work with international clients and leaders in FinTech, healthcare, retail, telecom, and other industries.
- Opportunities to change projects and develop expertise in different business domains.
- Mentoring, onboarding, professional development, and career growth programs.
- Corporate training portal and certification compensation.
- Private health insurance and sports compensation, depending on the type of employment.
- Additional earnings of up to EUR 1,000 per month may be available through company activities and included in the annual bonus.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
8 дней назад
Senior Cybersecurity Analyst (Cyber Defense Operations)
6 дней назад
Team Lead Incident Response (Cybersecurity)
6 дней назад
Staff Cyber Security Specialist
6 дней назад
Staff Cyber Security Specialist
4 дня назад
Senior SOC Analyst (Cloud Security)
Cision
5 дней назад