Incident Response expert managing IT security incidents across teams in a global retail company. Focusing on advanced incident response and continual improvement in a dynamic work environment.
Responsibilities
Coordinate and communicate IT security incidents across teams and countries, managing the incident response process.
Detect and analyze potential security incidents, ensuring effective containment.
Reconstruct cyber-attacks and malware, analyze sensitive data, and derive remediation actions.
Develop mechanisms to detect anomalies and attacks, initiating preventive measures to alert in time.
Monitor the general threat landscape on the Internet and provide actionable recommendations.
Advise internal projects on security-related issues.
Conduct IT forensic investigations.
Create meaningful reports on IT security incidents.
Requirements
5+ years of professional experience in Incident Response.
Hands-on experience in incident response, including triage, containment, remediation, and end-to-end security investigations.
Experience partnering with Escalation Management, Product Development/Engineering, IT, Legal, Cloud Ops, and wider cybersecurity teams.
University degree in Information Technology or comparable education.
Strong English skills, fluent business English (speaking and writing) at advanced level (B2+).
Further education in IT forensics and security incident management.
Expert knowledge in SIEM systems (preferably Splunk), SOAR tools, and EDR solutions.
Strong technical expertise in deployed technologies and cyber attack techniques.
Knowledge of national and international IT standards and frameworks (ISO 27001, NIST Cyber Security Framework, BSI Grundschutz, ITIL, OWASP, MITRE ATT&CK).
High communicative and analytical skills, ability to work independently, and strong team spirit.
Confidence and persuasiveness, with communication skills in both German and English.
Commitment to continuous education and professional development.
Benefits
Continuous learning support with education and training options.
Opportunities for growth, development, and promotion based on performance.
Engineer II in Cyber Incident Response responsible for detecting and responding to cybersecurity incidents. Collaborating with global teams to minimize business impact and strengthen detection capabilities.
Senior Cyber Incident Response Analyst managing cybersecurity incidents for clients. Focused on proactive threat hunting, incident response, and digital forensics in a hybrid environment.
Digital Forensics & Incident Response Analyst providing real - time threat analysis and mitigation at Cayuse. Engaging in cybersecurity initiatives while leveraging extensive forensics experience.
Incident Response Analyst managing complex security incidents and leading response teams at Vanguard. Develop and implement incident action plans for security breaches and vulnerabilities.
Cyber Incident Response Analyst supporting 24/7 cybersecurity incident management and response operations for client. Engaging in case management, triage, and operational coordination activities.
Senior Manager for the Security Operations Center at Cencora, leading incident response operations and team management in Texas. Collaborating with global teams for security incident remediation.
Incident Manager coordinating incident resolution and change management processes at SONDA. Responsible for major incident management and supporting effective change processes.
Cyber Incident Response Director at PwC resolving complex cyber security incidents and improving strategies. Leading Crisis Management engagements and collaborating with national cybersecurity bodies.
Sr Sourcing Air Analyst at Despegar leading the expansion of airline partnerships in Mexico City. Collaborating on growth strategies and negotiating marketing agreements with airlines.
Incident Manager receiving and registering incidents through various channels at SONDA. Collaborating with resolver groups to ensure timely solutions in Bogotá.