Jobs and Careers
EU
Lead Incident Responder / Security Analyst
EurofinsPolandfull_timeVerifiedPosted 21 Jun 2023
About the role
<h3>Company Description</h3><p>Eurofins Scientific is an international life sciences company, providing a unique range of analytical testing services to clients across multiple industries, to make life and our environment safer, healthier and more sustainable. From the food you eat, to the water you drink, to the medicines you rely on, Eurofins laboratories work with the biggest companies in the world to ensure the products they supply are safe, their ingredients are authentic, and labelling is accurate.</p><p>Eurofins is dedicated to delivering testing services that contribute to the health and safety of society and the planet, and to its corporate responsibility to protect the environment and ensure diversity, equity, and inclusion across the entire network of Eurofins companies.</p><h3>Job Description</h3><p>Eurofins continues to mature its Security Operations Centre and is seeking a highly skilled and experienced Lead Incident Responder / Security Analyst to join our dynamic team. As the Lead Incident Responder / Security Analyst, you will be working on security incidents and support with Digital Forensics (DFIR) and be responsible for managing and coordinating all aspects of incident response activities within our organization. You will play a pivotal role in protecting our systems, networks, and sensitive data from security breaches and ensuring a swift and effective response in the event of any security incidents. This is a leadership role that requires excellent technical expertise, strong leadership qualities, and the ability to work collaboratively with cross-functional teams. You will supervise the complete Incident Response team with our Senior Incident Responders led directly by you and acting as an escalation point for L1 and L2 SOC for complex and critical incidents and work towards remediation. You will have the opportunity to lead incidents through the complete IR life cycle.</p><p>You will continuously work on enhancing the security incident process and drive the resolution of identified issues, bringing the necessary experience and expertise to elevate the current SOC Incident Response Crews.</p><p>Critical incidents can be escalated to you and other Senior Incident Responders for immediate handling, meaning this role requires overtime and adjusting to reasonable demands from senior management in such cases.</p><p><strong>Specific Assignments:</strong></p><p>As a Lead Incident Responder / Security Analyst, you will recognise potential, successful, and/or unsuccessful intrusion attempts/compromises, conduct thorough reviews and analyses of relevant data, and summarise information. You will investigate and lead security incidents (IR lifecycle) reported by SOC L1/L2, Incident Response staff, or other relevant sources to determine increased risk to the business.</p><p>You will be required to efficiently identify True Positives; develop and execute SOC procedures; and ensure confidentiality and the protection of sensitive data. Triage and deep investigation of cyber security events using SIEM, IDS, EDR, antivirus software, Internet Footprint tools, and proxy solutions will play a significant role. Create detailed incident response reports, including analysis, findings, and recommendations for remediation to prevent future incidents.</p><p>You will be also dealing with host-based forensics (knowledge of data acquisition and analysis using forensic tools), network-based forensics (ability to read and understand PCAP files) and remediation (IT Infra & Ops) teams on events and incident mitigation.</p><p>You will conduct thorough investigations to determine the root cause and scope of security incidents, employing advanced techniques and tools to gather evidence and analyse compromised systems. Throughout the process you will identify areas for improvement in incident response processes, tools, and methodologies, and drive initiatives to enhance the organization's incident response capabilities.</p><p>You will supervise and mentor a team of incident responders, providing guidance, training, and support to ensure their professional growth and optimal performance. You will conduct periodic incident response exercises and tabletop simulations to assess the effectiveness of response plans and improve readiness across the organization.</p><h3>Qualifications</h3><p><strong>Work experience:</strong></p><p><u>If you have a minimum of 5 years</u> of professional experience as an SOC Analyst (L2 or L3), threat researcher, hunter or a similar comparable role dealing with incident handling, alert tracking, cybersecurity case management, this role could be a good fit for you. Relevant certifications such as GIAC Certified Incident Handler (GCIH) or Certified Incident Response Handler (CIRH) are highly desirable.</p><p>Demonstrated ability to lead, mentor, and inspire a team of incident responders, fostering a collaborative and high-performing work environment. Proven ability to collaborate with cross-funct
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s