Security Incident Response Manager (f/m/x)
Core
Lead the coordination and resolution of security incidents, drive containment and mitigation activities, and protect the bank from cyber threats.
Role type
Senior Information Security professional (Incident Response)
Builds
Threat Detection & Response function
Domain
Financial Services / Cyber Security
Deliverable
client delivery
Required skills
Security incident assessment, incident investigation and coordination, impact evaluation (financial/operational/reputational/regulatory), containment and mitigation, stakeholder communication, SIEM systems (Splunk, Google SecOps, Sentinel), log analysis (system, network, payload, event, application, firewall, Active Directory), enterprise security technologies, MITRE ATT&CK framework knowledge
Preferred skills
System Administration or Security Operations experience, Google Cloud and/or Azure environments, network security tools, CISSP/CISM/GCIH certifications, German language skills
Technologies
Splunk Enterprise Security, Google SecOps, Sentinel, Active Directory, Google Cloud, Azure
Responsibilities
Assess security alerts to determine incident status; Lead investigation, coordination, and resolution of security incidents; Evaluate impacts to determine severity and response priorities; Coordinate containment, mitigation, and recovery activities; Communicate incident status to stakeholders and maintain documentation
Seniority
Senior, hands-on IC