Назад
Company hidden
2 месяца назад

Incident Response Lead (Cybersecurity)

Формат работы
remote (только Germany)
Тип работы
fulltime
Грейд
lead
Английский
c1
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Incident Response Lead (Cybersecurity): Establishing and expanding the incident response presence in the German market by guiding customers through forensic investigations and security containment with an accent on multi-OS analysis and remediation. Focus on identifying indicators of compromise, evaluating security programs, and ensuring compliance with EU regulatory expectations.

Location: Remote from Germany; support is required across Central European business hours when urgent incident response needs arise.

Company

hirify.global combines cyber insurance coverage with cybersecurity tools to help businesses prevent, manage, and mitigate digital risk.

What you will do

  • Lead customer incident response engagements, forensic investigations, containment activities, and long-term remediation recommendations.
  • Coordinate incident response support from internal analysts and external vendors.
  • Investigate breaches and malicious activity across Windows, Linux, and macOS systems using forensic tools, endpoint data, logs, and network traffic.
  • Prepare technical case reports for threat researchers, internal stakeholders, and business customers.
  • Assess customer security programs, technologies, controls, and business environments, then recommend improvements.
  • Help establish hirify.global’s incident response presence in Germany and build relationships with local customers and partners.

Requirements

  • German and English fluency at C1 level or higher.
  • Bachelor’s degree in computer science, information security, engineering, or a related field.
  • 5+ years of incident response or digital forensics experience.
  • Knowledge of network threats, attack vectors, intrusion-set tactics, TCP/IP, network assessment, and security applications.
  • Experience with forensic, log analysis, network assessment, EDR, and cloud platforms, including tools such as Velociraptor, FTK, Volatility, ELK, Wireshark, and CrowdStrike Falcon.
  • Familiarity with NIST, HIPAA, PCI, GDPR, and German and EU security and privacy requirements.

Nice to have

  • GCIH, GCIA, GCFA, GCFE, ACE, EnCE, CFCE, CISSP, or similar certification.
  • Security governance, privacy, regulatory, or BSI-aligned experience.
  • Experience with Azure, AWS security, system hardening, offensive security tools, scripting, or SCADA/control systems.
  • Experience guiding analyst teams and contributing to DFIR industry thought leadership.

Culture & Benefits

  • Remote-first and inclusive working environment with shared ownership and cross-functional collaboration.
  • 100% public healthcare coverage and statutory pension.
  • 30+ paid holidays and an annual home office stipend.
  • Mental and physical health wellness programs.
  • Competitive compensation and opportunities for advancement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →