Incident Response Analyst
Warszawa, Poland
SOFTSWISS
SOFTSWISS is a gambling software development company with one-stop-shop iGaming software solutions and services for online casino and sportsbook.Overview
SOFTSWISS continues to expand the team and is looking for an Incident Response Analyst. We need a true, experienced, and accomplished professional who shares our culture and values.
Purpose of the Role
You’ll help protect our iGaming services, working closely with IT and product teams to ensure security and stability across our ecosystem.
Key Responsibilities
- Upgrade SOC processes & response automation.
- Respond to cybersecurity incidents.
- Immerse yourself in the specifics of systems and processes to achieve a balance of security and performance.
- Investigate security incidents and instigate remedial measures to address breaches.
- This position follows a 2-on-2-off rotating schedule:
-
12-hour day shift.
-
Followed by a 12-hour night shift the next day.
- Then 2 days off.
-
12-hour day shift.
Our stack
- Splunk, Clickhouse, Gitlab, Python, ELK, Wazuh
Required Experience
- 1+ year of experience as an information security engineer or analyst.
- Experience with SIEM, EDR, IDS/IPS, IRP/SOAR events analysis.
-
Familiarity with SecOps processes (monitoring, triaging, investigating, threat intelligence).
- Strong investigative and analytical problem-solving skills.
- Intermediate or higher English level.
Nice to Have
- Expertise in network, host, and cloud-based analysis and investigation.
- Experience with AWS, Azure, GCP, Kubernetes, Docker infrastructure and related attack vectors.
- Strong understanding of attack pipelines (MITRE ATT&CK Framework, Cyber Kill-Chain).
- Experience with Clickhouse, Splunk, Kafka, ELK, Graylog, etc.
- Strong Linux system administration experience.
- Familiarity with CI/CD, software development lifecycle, Infrastructure-as-Code (Terraform/Ansible/etc).
- Proficiency in automation (Bash/PowerShell, Python).
- Experience with log collection, delivery, and normalisation.
- Strong knowledge in open-source endpoint & infrastructure security tools (Audit.d, Sysmon, AppArmor, SELinux, etc.).
- Basic static and dynamic malware analysis.
- Offensive experience (penetration testing, red teaming)
About us:
SOFTSWISS is an international company, an iGaming software expert. We don't only follow iGaming market trends, we create them! SOFTSWISS is a recognised industry leader in iGaming software solutions development, covering almost all aspects of the iGaming industry. The company has an international team and an official presence in several countries. Projects powered by SOFTSWISS receive numerous awards and accolades from industry media.
Our Mission:
Changing the iGaming industry through technological innovation.
Our Values:
We care
Mindful actions for big-picture goals: we value strategic vision, alignment, and personal responsibility.
We see people
People are the heart of our success: we prioritise the well-being and growth of our employees through a culture of warmth.
We embrace changes
Driving change through courageous spirit: we set ambitious goals, welcome initiative, and strive for entrepreneurial attitude and constant improvement.
We push for customer success
Perceiving customer success as our own: we provide high-quality services, build trust, and strive for win-win solutions.
We excel
Quality for industry leadership: our success is built on technological excellence, continuous improvement, and top industry talent.
Our Benefits:
- Full-time remote work opportunities and flexible working hours
- Private insurance
- Additional 1 Day Off per calendar year
- Sports program compensation
- Comprehensive Mental Health Programme
- Free online English lessons with a native speaker
- Generous referral program
- Training, internal workshops, and participation in international professional conferences and corporate events.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible Automation AWS Azure Bash CI/CD Cloud Docker EDR ELK GCP GitLab IDS Incident response IPS Kafka Kubernetes Linux Malware MITRE ATT&CK Monitoring Pentesting PowerShell Python Red team SDLC SecOps SIEM SOAR SOC Splunk Terraform Threat intelligence
Perks/benefits: Career development Conferences Flex hours Flex vacation Health care Startup environment Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.