> Markdown version of [/jobs/ext/2664958-cyber-incident-response-analyst](https://www.wearedevelopers.com/jobs/ext/2664958-cyber-incident-response-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Incident Response Analyst - **Company:** Integrity360 - **Location:** Madrid, Spain - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Unix, Data Architecture, Digital Forensics, Microsoft Security Essentials, Network Intrusion Detection Systems, PCI Data Security Standards, Reverse Engineering, Malware, Cyber Threat Analysis - **Published:** September 1, 2026 - **Apply:** https://www.jobleads.com/es/job/e9e1dedc40d16d3c3dedb945bbff4811f ## About the Role * Customer focus - have the ability to work directly with customers and demonstrate services delivered to customers in a face to face setting when required. * You will have the capacity to multitask on several technical and operational issues simultaneously. Have a very good understanding of customer issues and you are able to empathize with customers as to their current situation. * Ability to think through difficult issues and provide advice or when necessary * A clear understanding of the ITIL processes * Ability to work on assignments requiring sound judgement in resolving issues or in making recommendations; * Initiative to drive all incidents to resolution, ensuring timely participation by all stakeholders; * Without hesitation when required, escalates issues to upper management, to include C-Level managers, in accordance with prescribed procedures. * Incident Management and Incident communication experience * Experienced in meeting deadlines while following processes and procedures * Capable of working with other teams that challenge your processes and procedures * Understanding of ITIL, SANS, PCI DSS, ISO 27001 and ISO20000 * Logical thought mindset and experience developing reusable processes / data architectures. * Professional/native Spanish and professional English Technical Knowledge Requirements * Host Intrusion Analysis + Windows (Endpoint and Server) + Unix * Network Intrusion Analysis * Familiarity with categories of Malware and Malware Reverse Engineering techniques * Experience working with security tools for the purposes of detection, diagnosis, containment and remediation * Extensive knowledge of Windows server systems. * Experienced in creating and maintaining a security incident response plan (IRP)., * SANS: Qualifications in Security Essentials (GSEC), Hacker Techniques & Incident Handling (GCIH), Host (GCFE/GCFA) & Network (GNFA) Forensics, Malware Analysis (GREM) and any Digital Forensics specializations. * CREST certifications: Certified Incident Manager, Certified Host Intrusion Analyst, Certified Network Intrusion Analyst, Certified Malware Reverse Engineer, Practitioner Intrusion Analyst, Registered Intrusion Analyst * Certified Ethical Hacker * A strong team player with a flexible approach * Can demonstrate consistency in work attitude ## Description The Senior Cyber Incident Response Analyst will work within established methodologies to perform a variety of Incident Response related activities for new and existing customers, to include responding to cyber incidents, proactively hunting for adversaries in customer networks, conducting detailed Intrusion analysis - host and network, malware reverse engineering, Digital forensics and Cyber Threat Intelligence services. Proactive client services, such as compromise assessments and evaluating and recommending tools and technology for incident response are also in scope. Demonstration of a strong comprehension of malware, emerging threats and adversary TTPs will be critical to success. ## Related Videos - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Fake or News: Translating Dog Barks, Notepad Gets an Upgrade and Michelin-Star Robots - Paul Tregoing](https://www.wearedevelopers.com/videos/1802-fake-or-news-translating-dog-barks-notepad-gets-an-upgrade-and-michelin-star-robots-paul-tregoing) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [WeAreDevelopers LIVE - Smoover - Who's Best at DevRel?](https://www.wearedevelopers.com/videos/1901-wearedevelopers-live-smoover-who-s-best-at-devrel) - [The Time Paradox: Building Timezone-Safe Python/Django Applications](https://www.wearedevelopers.com/videos/1915-the-time-paradox-building-timezone-safe-python-django-applications) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [The Geometry of Incidents: Connecting User Impact to Architecture](https://www.wearedevelopers.com/magazine/764-the-geometry-of-incidents-connecting-user-impact-to-architecture) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)