Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Incident Response Lead (Cybersecurity): Building and leading the global incident response capability for a full-stack AI cloud platform with an accent on hands-on technical investigations and team orchestration. Focus on driving high-severity incidents end-to-end, establishing forensic standards, and mentoring a follow-the-sun team across multiple regions.
Location: Must be based in or able to work from our office in Tel Aviv, Israel
Company
Nebius is a leading cloud infrastructure provider for the global AI economy, building a full-stack platform for developers and enterprises.
What you will do
- Build and mature the global IR capability, including tooling, playbooks, and a follow-the-sun operating model.
- Lead technical response to major incidents from escalation through recovery as the final technical authority.
- Conduct end-to-end forensic investigations across cloud, platform, and endpoint environments.
- Define and enforce investigation standards, evidence handling, and escalation criteria.
- Partner with SOC, Threat Intelligence, and Platform Security teams to improve detection fidelity and reduce response times.
- Brief executive leadership, Legal, and Privacy teams on risks and root cause analyses.
Requirements
- 8+ years of hands-on incident response and digital forensics experience in high-impact environments.
- Deep knowledge of Windows and Linux internals, disk and memory forensics.
- Strong expertise in cloud-native security, including Kubernetes, CI/CD, and IAM attack paths.
- Fluency in attacker TTPs and hands-on experience with EDR, SIEM, and forensic tools.
- Strong scripting and data-analysis skills (Python, PowerShell, SQL/KQL).
- Must be authorized to work in Israel and provide proof of employment eligibility.
Culture & Benefits
- Competitive compensation package.
- Opportunity to work on impactful, large-scale AI infrastructure projects.
- Collaborative, fast-moving, and innovative international environment.
- Focus on ownership, trust, and constant professional growth.
- Career development and learning opportunities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →