Technical Lead, Incident Response (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Technical Lead, Incident Response (Cybersecurity): Leading technical incident response from first contact through to closure, overseeing host- and network-based incident response investigations with an accent on triage, system recovery, technical evidence collection, and forensics. Focus on log, malware and root cause analyses.
Location: Cyber Security Utrecht, must have permission to work in the Netherlands.
Company
is a global intelligence and cyber security consultancy that helps clients solve information security challenges.
What you will do
- Lead technical incident response from first contact through to closure.
- Oversee host- and network-based incident response investigations.
- Develop and share domain expertise within the team.
- Participate in an on-call rotation to provide 24X7X365 client incident coverage.
- Handle a variety of casework for both public and corporate clients.
- Broaden security awareness into testing and advisory projects.
Requirements
- 5+ years’ experience in a technical cyber security role.
- An investigative mindset and comfortable solving problems with limited information.
- Demonstrable knowledge of cyber threat actors, and their tactics, techniques, and procedures.
- Comfortable using scripting to solve cyber security problems.
- Able to communicate technical findings for a non-technical audience in a professional setting.
- Must have permission to work in the Netherlands by the start of employment.
Nice to have
- Relevant industry certifications such as GCFE, GCFA, EnCE, CFSR, CISSP, GREM, CCNA, MCFE, OSCP, Network+ and Security+.
Culture & Benefits
- 25 holiday days per year, increasing with service to a maximum of 30 days + public holidays.
- 7% matching pension contribution.
- Several options around mobility such as an OV-card or a lease car.
- EAP for your mental wellbeing, including counselling sessions available to you and your family.
- Flexible working hours and extensive training available.
Hiring process
- Initial screening of your application by our recruiting team.
- An interview to assess your baseline technical skills.
- An interview to discuss your previous experience and broader competencies.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →