Senior Cybersecurity Incident Responder

Siemens AG
Erlangen, Germany
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Languages
English, German
Job source

Tech stack

Microsoft Windows Network Analysis Cyber Security Linux Software Vulnerability Management Cloud Platform System Information Technology Cybercrime Web Technologies

Job description

  • Investigate and follow through on IT security incidents in a geographically distributed environment, considering all relevant technical and non-technical stakeholders during all phases of the incident.
  • Analyze reports about potential / suspected incidents, collect and analyze technical incident information and log data, generate reports, and ensure progress on incident tickets.
  • Act as a central point of contact for incident-related communication in Germany, including coordination with internal stakeholders as well as external parties such as regulators, authorities, and law enforcement.
  • Coordinate incident response activities with local business units, ensuring alignment with global CERT processes.
  • Actively shape and continuously enhance CERT’s internal toolset by contributing innovative ideas for new functionalities and features.
  • Report to and advise management and other stakeholders to improve and drive Siemens’ Cybersecurity posture. Doing so, you will balance level of detail and strategic insight presented on a case-by-case basis

Requirements

Do you have experience in Windows?, + University degree (MA) in Information technology, Engineering or a related field

  • Clean track record and willingness to comply if a security clearance becomes necessary (especially Ü2).
  • Experience & Skills *

  • Significant work experience (>7 years) in Incident Response, including handling complex incidents in enterprise and cloud environments; experience in IT Forensics or Vulnerability Management is a plus
  • Strong technical expertise in IT security across several of the following areas: Linux and Windows operating systems, web technologies (e.g. encryption, HTTP, REST), networking, and cloud environments
  • Solid understanding of both technical and organizational aspects of information security, e.g. through prior defensive or offensive security experience
  • Experience with fundamental attack techniques, tools, and methodologies, as well as a strong understanding of attacker behavior
  • Excellent understanding of current cyber threats and vulnerabilities, including the ability to identify, triage, and support remediation of security incidents based on threat intelligence, log data, and network analysis
  • Experience in incident documentation and reporting, ideally in environments with regulatory or compliance-related requirements
  • Strong analytical skills with the ability to collect, structure, and interpret large amounts of information with high attention to detail and accuracy
  • Strong interpersonal and communication skills, with the ability to interact effectively with technical and non-technical stakeholders, including senior management and external parties
  • Ability to operate in complex stakeholder environments and act as a reliable interface in high-pressure situations
  • Ways of working: analytical, problem-solving attitude with strong decision-making abilities and a growth mindset
  • Languages: business proficiency in German and English, including security-related terminology

Benefits & conditions

4.04.0 out of 5 stars Erlangen Hybrid work Permanent, Full-time

About the company

If you really want to make a difference - make it with us Siemens CERT is a global team of dedicated security engineers with the mission to protect Siemens’ infrastructure and services worldwide. We coordinate the response to cybersecurity incidents across a complex, globally distributed environment, and lead in-depth technical and organizational investigations. Building on more than two decades of experience in industrial and enterprise environments, we also contribute to strategic cybersecurity initiatives. Our insights from real-world incident handling directly influence how cybersecurity is strengthened across Siemens. Working closely with IT functions and business units, we drive continuous improvement of the company’s cyber resilience - combining operational expertise with modern technologies and evolving threat intelligence What we offer you

  • An environment where everyone can bring their whole self to work and feel a sense of belonging.
  • A workplace that values curiosity and guarantees continuous learning, with development opportunities for both personal and professional growth.
  • Share matching programs to become a shareholder of Siemens AG.
  • A wide range of flexible benefits for you and your family to enjoy!

Since each of over 300,000 team members feels that other benefits are particularly important, and we cannot list our entire benefit portfolio here, you can find more information here.

The individual benefits are subject to regulatory, contractual, or corporate conditions.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all