Эта вакансия в архиве
Посмотреть похожие вакансии ↓1 час назад
Incident Response Analyst (iGaming)
Описание вакансии
Текст:
TL;DR
Incident Response Analyst (Cybersecurity): Operating on the front line of protecting infrastructure and services by investigating incidents and building detection logic with an accent on SIEM and log analysis. Focus on reducing MTTR, leading root cause analysis, and automating response workflows using Python and LLM tools.
Location: Remote (Must be based in Czechia)
Company
is a company operating in the SaaS and iGaming sectors.
What you will do
- Monitor and triage alerts in SIEM, analyzing events and prioritizing responses.
- Investigate data leaks and policy violations using WAF, DLP, and MDM tools.
- Integrate new log sources into SIEM, including normalization, parsing, and enrichment.
- Develop and improve detection rules, correlation rules, and monitoring dashboards.
- Conduct root cause analysis (RCA) and participate in incident post-mortems.
- Reduce MTTR by identifying process bottlenecks and implementing automation and runbooks.
Requirements
- 3+ years of experience in Incident Response or Security Operations.
- Hands-on experience with SIEM platforms such as Splunk, ELK/OpenSearch, or Graylog.
- Ability to interpret logs from various OS (Linux/Windows/macOS), networks, and cloud environments.
- Strong understanding of network protocols, traffic analysis, and MITRE ATT&CK.
- Scripting skills for automation using Python or Bash.
- Russian: Native level proficiency is required for team communication.
Nice to have
- Experience with SOAR platforms and building playbooks.
- Experience with EDR/XDR solutions like CrowdStrike or SentinelOne.
- Participation in CTFs, red/blue team exercises, or pentesting.
- Experience with cloud logs (AWS CloudTrail, GCP Audit Logs).
- Experience integrating security tools via APIs and automating response using LLM.
Culture & Benefits
- 25 vacation days and 5 family days per year.
- Flexible start to the workday.
- Support from a professional corporate coach and psychologist.
- Ongoing training in new technologies and professional development support.
- Regular internal and external activities, workshops, and corporate trips.
Похожие вакансии
4 дня назад
Cybersecurity Manager (Incident Response & Security Operations)
6 дней назад
Security Incident Response Lead (AI)
2 дня назад
Cybersecurity Incident Response Specialist
3 дня назад
Manager, Security Operations (Cybersecurity)
193 800 - 216 600$
6 дней назад
L3 SOC Analyst / Incident Responder (Cybersecurity)
3 дня назад
Threat Analyst 2 (Cybersecurity)
66 000 - 110 000CAD