Team Lead - Security Incident Response (all genders)
Core
Lead the Security Incident Response team to ensure customer data protection in online shopping environments and safeguard corporate data and hardware.
Role type
Senior IC Security Incident Response Team Lead
Builds
DFIR tools, SIEM infrastructure, monitoring/scanning tools, and automated security operations
Domain
Cybersecurity, Cloud-Native environments
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Incident Response, Blue Teaming, Digital Forensics, SIEM management, Python scripting, Linux administration, Web Application Firewall management, AI agent integration, Threat intelligence, Playbook creation
Preferred skills
SANS/GIAC certifications, OffSec OSIR, HackTheBox/TryHackMe experience, Laravel/PHP, AWS/GCP, GitLab CI/CD, Terraform/Terragrunt
Technologies
Python, Linux, SIEM, Cloudflare, AWS, GCP, GitLab CI/CD, Terraform, Terragrunt
Responsibilities
Establish and maintain DFIR tools and infrastructure; Lead first response to security incidents including digital forensics and risk minimization; Maintain and improve SIEM tools; Enhance monitoring and scanning tools for threat detection and automation; Integrate AI into security operations; Investigate and respond to security alerts; Create and maintain incident response playbooks; Monitor emerging threats and zero-day vulnerabilities to implement preventive measures
Seniority
Senior, hands-on IC with leadership responsibilities
