Incident Response Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Incident Response Engineer (Cybersecurity): Building and maintaining incident detection, response, and recovery capabilities for a global API and AI platform with an accent on stakeholder management, forensics, and workflow automation. Focus on designing security alerts, conducting threat hunting, and driving innovation through post-mortem analysis to maintain customer trust.
Location: Hybrid (Milan, Italy)
Company
is a leading developer of API and AI connectivity technologies, building the unified platform that secures, manages, and accelerates the flow of intelligence for enterprises and startups.
What you will do
- Execute and document incident handling guides and processes for the organization.
- Prioritize and analyze security events to reduce false positives and detect active threats.
- Design, automate, and maintain a portfolio of security alerts and escalation workflows.
- Perform forensics on IT systems during security incidents.
- Conduct threat hunting activities and anticipate future security threats.
- Partner with stakeholders to improve preparation, identification, and containment feedback loops.
Requirements
- Experience in crisis management and incident response methodologies.
- Expertise in building and operating SIEM systems, centralized logging, and enrichment solutions.
- Practical experience with cloud technologies and infrastructure-as-code tools like Terraform.
- Competency in Linux and Windows operating systems.
- Ability to automate workflows using Python or JavaScript.
- Strong stakeholder management and clean thinking under pressure.
Culture & Benefits
- Collaborative environment focused on security, trust, and engineering excellence.
- Exposure to high-level technical and process operations in a leading API platform company.
- Opportunities to leverage incidents to drive innovation and system hardening.
- Participation in building 24/7 incident response capabilities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →