CSIRT / DFIR Lead (m/w/d) DACH
Vienna, Austria
Full Time Senior-level / Expert EUR 84K - 104K
NVISO
Meet Your Trusted Team Of Cyber Security Experts | Protecting Society from Cyber Attacks | Security Design, Monitoring, Incident Response | Ethical Hacking & Cloud SecurityIt all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.
All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS!
Tasks
As a CSIRT / DFIR Lead (m/w/d) DACH located in Austria you will support evolving the NVISO CSIRT team. In addition to Incident Response and forensic engagements, you will be working closely with the team on further set up and implement a sustainable strategy . Furthermore, you will work closely with the Threat Intelligence team to support in their service offering and build automations where possible.
- Perform host forensics, network forensics and log analysis in support of incident response investigations;
- Analyze and correlate log data, malicious software behavior, system state changes, and other information across multiple systems to forensically reconstruct malicious activity and impacts;
- Support improvement projects related to automation in the field of digital forensics as well as the definition and further build the CSIRT service offering and go-to-market strategy for the DACH region;
- Perform threat hunting engagements within customer environments including the technical planning of the hunt, defining the requirements, execution and reporting;
- Support in the various threat intelligence services provided to our customers;
- Assist in other engagements such as tabletop exercises, incident and forensic readiness assessments, threat intelligence related projects, etc.
- Create Statements of Work, project plans, requirements definitions,… for projects running in your team;
- Support the evaluation cycle of your team members;
- Engage with customers and assure a fruitful partnership at all times;
- Coach the CSIRT team members in their daily activities;
- Perform technical account management duties for specific top-tier, strategic clients;
- Support in Business Development tasks.
Requirements
- You are eligible for NATO Clearance;
- A minimum of 6 years of experience within DFIR and at least 3 years of experience in People Management;
- Strong knowledge of Intrusion Analysis, Incident Response and Forensics;
- You are up to date on the latest cyber security threats and the Tactics, Techniques and Procedures (TTPs) attackers are currently using;
- Excellent analytical and problem-solving skills, with an eye for detail;
- Effective communication and interpersonal skills to work collaboratively with clients and cross-functional teams.
Benefits
At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non-financial components:
- A training budget of 10,000 EUR plus 10 days paid time off rolling over two years;
- Working with and learning from the best people in the European cyber security "scene". We have several SANS Instructors working for us and we are also represented at popular hacking conferences (BlackHat, BruCON, OWASP, etc.). In addition, our employees can take advantage of prestigious continuing education opportunities (GSE, GXPN, CISSP, OSCP, etc.);
- A forward-thinking and agile company that supports you in the creation and implementation of new initiatives ;
- Unique team events (most recently e.g. Lisbon, Dubai, Malta);
- A sophisticated coaching concept starting on day 1;
- 30 days of vacation;
- Flexible working hours and home office options (Working Abroad Option);
- Cost absorption for the Klimaticket;
- Company bike leasing.
- The base salary range for this position is above the minimum salaries of the Kollektivvertrag: 84.000 EUR - 104.000 EUR p.a.
IF YOU’RE INTERESTED, PLEASE SEND US YOUR APPLICATION!
WE’RE LOOKING FORWARD TO MEETING YOU!
Tags: Agile Automation CISSP Clearance CSIRT DFIR Forensics GXPN Incident response Log analysis NATO OSCP OWASP SANS Strategy Threat intelligence TTPs
Perks/benefits: Career development Competitive pay Conferences Flex hours Flex vacation Home office stipend Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.