Cyber Defence & Incident Response Engineer
Core
Conduct digital forensics and incident response investigations, design playbooks, and build automation to reduce manual response work.
Role type
Incident Response Engineer
Builds
Incident response playbooks, detection alerts, and automation/orchestration tooling
Domain
Cybersecurity, Cloud Security (AWS)
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Digital forensics, Incident response, Python, Golang, SIEM management, Threat hunting, MITRE ATT&CK framework, Alert tuning
Preferred skills
SOAR platforms, Data privacy regulations, Cloud-native security logs
Technologies
AWS, SIEM, SOAR, Python, Golang
Responsibilities
Support digital forensics and incident response investigations, Design and maintain incident-response playbooks, Create and fine-tune security alerts, Build automation and orchestration tooling, Research emerging threats and conduct threat-hunting exercises, Support management of security log-ingestion tools and SIEM systems
Seniority
Mid-level, hands-on IC
