Cyber Defence & Incident Response Engineer (They/She/He)
Core
CSIRT Engineer building a 'SOCless' future through high-level automation and sophisticated detection engineering to proactively hunt threats and respond to security breaches.
Role type
Senior IC Cyber Defense & Incident Response Engineer
Builds
Automated incident response tooling, detection rules, and playbooks for the Glovo ecosystem
Domain
Cybersecurity, Cloud Security, Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident Response, Digital Forensics, Cloud Security (AWS), Python or Golang, Detection Engineering, Threat Hunting, SIEM management
Preferred skills
SOAR platforms, Data privacy regulations, MITRE ATT&CK framework
Responsibilities
Conduct deep-dive investigations into security breaches, design and maintain incident response playbooks, create and fine-tune security alerts, build automation for incident response, conduct proactive threat-hunting exercises, manage security log ingestion pipelines
Seniority
Senior, hands-on IC
