Назад
Company hidden
обновлено 3 дня назад

Incident Response Lead (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Incident Response Lead (Cybersecurity): Leading the response to cybersecurity incidents affecting cloud communications services from validation through containment, eradication, recovery, and corrective actions with an accent on crisis coordination, executive communication, and evidence-based decision-making. Focus on coordinating multidisciplinary teams during major incidents, investigating root causes, assessing customer-data impact, and improving incident response through playbooks, severity models, and tabletop exercises.

Location: On-site presence at the office is required 4 days per week.

Company

Cloud communications services provider delivering cloud PBX, call center, video, events, messaging, analytics, and flexible billing solutions.

What you will do

  • Lead cybersecurity incidents from initial validation and declaration through containment, eradication, recovery, and closure.
  • Coordinate multidisciplinary technical and business teams during major incidents and escalation events.
  • Assess incident impact, including incidents involving customer or personal data.
  • Communicate incident status, decisions, and recommendations to senior leadership and governance teams.
  • Lead root cause analyses and track corrective actions through completion.
  • Continuously improve incident response capabilities, including playbooks, severity models, reporting standards, and tabletop exercises.

Requirements

  • Significant professional experience in cybersecurity, incident response, security operations, digital forensics, threat detection, or a related discipline.
  • Experience leading complex cybersecurity incidents and coordinating containment, eradication, recovery, and impact assessment.
  • Experience working with cloud platforms, containers, enterprise identity systems, networks, or customer-facing applications.
  • Experience with cloud-native and Kubernetes-based environments.
  • Availability to participate in an on-call or major-incident escalation arrangement.
  • Strong written and spoken English; on-site office presence 4 days per week required.

Nice to have

  • Familiarity with NIST incident response guidance, ISO/IEC 27035, SANS incident handling practices, or MITRE ATT&CK.
  • Certifications such as GCIH, GCFA, GCFE, CISSP, or CISM.

Culture & Benefits

  • Well-coordinated professional team.
  • Cutting-edge technologies and challenging projects.
  • Opportunities for professional and career growth.
  • Additional health and life insurance package.
  • Employee Assistance Program.
  • 25 vacation days.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →