Senior Cyber Security Incident Response Lead

Coforge
Sarria, Spain
11 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English, Spanish

Tech stack

Kubernetes Security Application Testing Business Process Modeling Cloud Computing Cyber Security Computer Forensics Desktop Computing Digital Forensics Forensics Tools (Digital Forensics Software) Identity and Access Management Intrusion Detection and Prevention PCI Data Security Standards
+4 more
Reverse Engineering Security Information and Event Management Software Security Malware

Job description

Role : Senior Cyber Security Incident Response LeadDesplácese hacia abajo para obtener una visión general completa de lo que requerirá este trabajo. ¿Es usted el candidato adecuado para esta oportunidad?Skills : Incident Response Lead (Insider Threat) (Computer Emergency Response)Location : Madrid Spain (Remote)Type : PermanentLanguage Requirement : Spanish C1/C2 and English C1/C2)Salary : as per marketWe are at Coforge hiring for Senior Cyber Security Incident Response Lead with Incident Response Lead (Insider Threat) (Computer Emergency Response)Job ResponsibilitiesMonitors the performance and efficiency of computer forensics practices.Operates intrusion detection and prevention technologies, systems and tools to monitor, analyse and respond to networks and systems.Monitors forensics procedures and adjusts digital forensics tools accordingly.Ensures optimisation to increase the response speed and outcome reliability.Assists in developing internal control reports provided to external auditors.Application of information security laws in computer crime investigation.Analyses unexpected network or system events, assessing their impact, and devising and implementing actions to stop them.Manages the sharing of important information quickly and accurately.Supports the monitoring/review of policies, processes/procedures and prioritise operations.Leads and manages incident response activities.Communicates to senior leads awareness of significant incidents.Support the development of enhance strategies and incident response playbooks.Manage stakeholder relationships and streamline processes.Shape and implement products and processes to protect the bank from Insider threat.Develops appropriate metrics to display the effectiveness of Insider threat.Monitor/review processes/systems and product performance to ensure continuous improvements are made to prevent and eliminate insider threats.Mandatory SkillsExperience with incident management in cloud-based environmentsKnowledge of the tools and processes for maintaining application security.Skills/knowledge of designing and implementing security programsExperience of application testing to detect bugs, flaws, and insecure configurations.Experience of responding to application threats following established security policy.Knowledge of concepts, tools, and practices of dealing with computer crime.Experience of detecting and preventing crimes that involve computers/networks as instruments.Sound knowledge of information securityKnowledge of techniques, approaches, and processes of digital threats.Experience of detecting, monitoring, analysing, and preventing digital threats.Knowledge of concept, issues, and techniques of endpoint security.Experience of ensuring security compliance of endpoint devices in various circumstancesDemonstrable experience in fields such as information security, incident response, or related domains.Demonstrate experience in incident response, security monitoring, digital forensics, and advanced malware analysis. xbhjioeExperience of identifying, managing, and producing incident updates, reports, and recommendations to SLT to facilitate decision-making and risk management.Knowledge of identity and access management (IAM) security principles and insider threat detection toolingFamiliarity with container and Kubernetes security monitoringExperience with reverse engineering or sandbox analysis of malware samplesUnderstanding of regulatory and compliance frameworks relevant to financial services (e.G., PCI-DSS, GDPR, DORA, NIST CSF)Experience with SIEM platforms

Requirements

Experience with incident management in cloud-based environments Knowledge of the tools and processes for maintaining application security. Skills/knowledge of designing and implementing security programs Experience of application testing to detect bugs, flaws, and insecure configurations. Experience of responding to application threats following established security policy. Knowledge of concepts, tools, and practices of dealing with computer crime. Experience of detecting and preventing crimes that involve computers/networks as instruments. Sound knowledge of information security Knowledge of techniques, approaches, and processes of digital threats. Experience of detecting, monitoring, analysing, and preventing digital threats. Knowledge of concept, issues, and techniques of endpoint security. Experience of ensuring security compliance of endpoint devices in various circumstances Demonstrable experience in fields such as information security, incident response, or related domains. Demonstrate experience in incident response, security monitoring, digital forensics, and advanced malware analysis. xbhjioe Experience of identifying, managing, and producing incident updates, reports, and recommendations to SLT to facilitate decision-making and risk management. Knowledge of identity and access management (IAM) security principles and insider threat detection tooling Familiarity with container and Kubernetes security monitoring Experience with reverse engineering or sandbox analysis of malware samples Understanding of regulatory and compliance frameworks relevant to financial services (e.G., PCI-DSS, GDPR, DORA, NIST CSF) Experience with SIEM platforms

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · WWC 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all