3 дня назад
CERT Incident Responder (Remote) (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
CERT Incident Responder (Cybersecurity): Leading end-to-end response to ransomware, data breaches, and business email compromise incidents with an accent on forensic investigation, containment, remediation, and client communication. Focus on analyzing logs and networks, producing executive-ready reports, assessing cyber risk for underwriting, and building AI-enabled SOC or CERT tools.
Location: Fully remote; Paris headquarters
Company
provides cyber incident response and technical risk support for policyholders, underwriting, customer success, and sales teams.
What you will do
- Lead end-to-end incident response engagements involving ransomware, data breaches, and business email compromise.
- Conduct forensic investigations using KAPE, Velociraptor, CrowdStrike Falcon, SentinelOne, and other EDR platforms.
- Contain and remediate incidents while providing real-time crisis communication to clients.
- Prepare clear incident reports for technical and executive audiences.
- Support underwriters with technical risk assessments for prospects and renewals.
- Improve internal runbooks, playbooks, tooling, and SOC or CERT tools, including AI-enabled tools.
Requirements
- 3+ years of experience in DFIR or CERT roles.
- Proven experience leading multiple ransomware incident responses from start to finish.
- Hands-on proficiency with Velociraptor, KAPE, CrowdStrike Falcon, and/or SentinelOne.
- Strong log analysis and network forensics skills.
- Ability to communicate technical findings clearly to non-technical stakeholders and make fast decisions during high-stakes incidents.
- Fluent English and a native language requirement; recruiting focuses on native German or Italian speakers, with fluent French or German required for Italian-language candidates.
Culture & Benefits
- Fully remote work within the CERT department.
- High ownership and clear communication during active cyber crises.
- Work across incident response, underwriting, customer success, and sales.
- Opportunity to improve CERT and SOC tooling.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
CrowdStrike
11 часов назад
Incident Response Sr. Consultant (Cybersecurity)
CrowdStrike
1 день назад
Incident Response Senior Consultant (Cybersecurity)
CrowdStrike
17 часов назад
Incident Response Senior Consultant (Cybersecurity)
100 000 - 165 000CAD
4 дня назад
Senior Incident Responder (Cybersecurity)
4 дня назад
Senior Incident Response Consultant, Rapid Response (Cybersecurity)
CrowdStrike
9 часов назад
Endpoint Threat Hunting Consultant (Cybersecurity)
115 000 - 160 000$