сегодня

cybersecurity incident responder

ориентир по рынку
вакансия зп не указана
в среднем 346 799 ₽
Загрузи резюме, чтобы видеть мэтчи с вакансией

подготовься к отклику

ai-инструменты

Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузи резюме

Рекламный баннер: ОБЩЕСТВО С ОГРАНИЧЕННОЙ ОТВЕТСТВЕННОСТЬЮ "ЦЕНТР НАЦИОНАЛЬНЫХ ИНТЕЛЛЕКТУАЛЬНЫХ СИСТЕМ"
О рекламодателе
ОБЩЕСТВО С ОГРАНИЧЕННОЙ ОТВЕТСТВЕННОСТЬЮ "ЦЕНТР НАЦИОНАЛЬНЫХ ИНТЕЛЛЕКТУАЛЬНЫХ СИСТЕМ"
ИНН: 9704271170

описание

The project provides cybersecurity and digital services for international organizations in a complex multi-tenant environment. It includes cyber defense operations, security incident management, and continuous protection of critical systems and services to ensure secure and reliable operations worldwide.

задачи

  • Execute the full incident lifecycle, including triage, containment, eradication, recovery, and lessons learned
  • Perform digital forensics on endpoints, servers, and cloud workloads, including disk, memory, and log analysis
  • Investigate escalated SOC alerts and determine the scope and impact of incidents
  • Coordinate response activities with affected client organizations, IT teams, and management
  • Develop and maintain IR playbooks and runbooks, and conduct tabletop exercises
  • Write incident reports and root cause analyses, and recommend remediation
  • Participate in an on-call rotation, responding within 15 minutes and accessing systems within 1 hour

требования

  • 5+ Years of cybersecurity experience, including 3+ years of hands-on incident response
  • Proven end-to-end handling of real incidents, such as ransomware, BEC, account compromise, and data exfiltration
  • Hands-on EDR/XDR experience, such as Microsoft Defender for Endpoint, CrowdStrike, or SentinelOne
  • Experience with forensic tools and techniques, including memory and disk analysis, Volatility, KAPE, Velociraptor, FTK/EnCase, and Windows and Linux artifacts
  • Investigation experience in Microsoft 365, Entra ID, and Azure environments
  • Strong knowledge of NIST SP 800-61 or SANS incident handling frameworks
  • Readiness to participate in an on-call rotation
  • Clean record and readiness for background verification
  • English at Upper-Intermediate level or above
  • Будет плюсом: GCIH, GCFA, GCFE, GNFA, or ECIH certifications, cloud forensics in AWS or GCP, malware triage and basic reverse engineering, Python or PowerShell scripting, MSSP or multi-tenant environment experience

условия

  • The opportunity to earn up to an additional 1,000 EUR per month, depending on expertise, included in the annual bonus
  • Opportunity to change projects and develop expertise in an interesting business domain
  • Professional, financial, and career growth; mentoring and onboarding systems for each new employee
  • Access to the corporate training portal and its regularly updated knowledge base
  • Corporate events and amenities, including parties, pizza days, PlayStation, fruit, coffee, snacks, and movies
  • Certification compensation, including AWS and PMP
  • Referral program
  • Private health insurance and sports compensation, depending on the type of employment
  • Locations: Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Hungary, Italy, Latvia, Lithuania, Luxembourg, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, and The Netherlands

Международная компания по разработке ПО и цифровой трансформации с услугами заказной разработки и staff augmentation.

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайся: это мошенничество.

Про зарплаты

Анонимные данные по зарплатам и грейдам.
Можно сверить вилку с рынком.

Посмотреть зарплаты

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайся: это мошенничество.