9 часов назад
Incident Response Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Incident Response Analyst (Cybersecurity): Detecting, investigating, and responding to security incidents while improving SOC processes and automation with an accent on threat mitigation and response efficiency. Focus on conducting in-depth investigations, implementing remediation measures, and optimizing SOC workflows.
Location: Worldwide (Remote)
Company
is a leading provider of software solutions and infrastructure for the iGaming industry.
What you will do
- Detect, investigate, and respond to cybersecurity incidents.
- Upgrade SOC processes and enhance response automation to ensure fast threat mitigation.
- Implement remedial measures to address breaches and prevent future security threats.
- Analyze internal systems and processes to achieve an optimal balance between security and performance.
- Operate on a 2-on-2-off shift pattern, including 12-hour day and night shifts.
Requirements
- More than one year of experience as an information security engineer or analyst.
- Practical experience with SIEM, EDR, IDS/IPS, and IRP/SOAR events analysis.
- Familiarity with SecOps processes, including monitoring, triaging, and threat intelligence.
- Strong investigative and analytical problem-solving skills.
- English: Intermediate level or higher required.
Nice to have
- Experience with Clickhouse, Splunk, Kafka, ELK, or Graylog.
- Strong Linux system administration experience.
- Expertise in network, host, and cloud-based analysis (AWS, Azure, GCP, k8s, Docker).
- Strong understanding of attack pipelines, including MITRE ATT&CK and Cyber Kill-Chain.
- Proficiency in automation using Python, Bash, or PowerShell.
- Knowledge of open-source security solutions like Audit.d, sysmon, apparmor, or selinux.
Culture & Benefits
- Private health insurance (depending on contract type).
- Paid gym membership and a comprehensive Mental Health Program.
- Free online English lessons and local language courses.
- Professional growth through upskilling, internal workshops, and participation in conferences.
- Additional day off per calendar year and referral program rewards.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →