Senior Manager Incident Response & Threat Hunting
wygasa za 29 dni
(do )
-
Gdańsk, pomorskie
Umowa o pracę
MichalePage feed import
Zakres obowiązków
What You'll Be Doing:Incident Response Leadership
Team Leadership
Threat Hunting
Detection & Security Engineering Support
-
Act as Incident Commander for cyber security incidents, coordinating technical response efforts from identification through recovery.
-
Lead incident bridges and drive collaboration across security, IT, legal, privacy, HR, and executive stakeholders.
-
Make critical containment and remediation decisions during active security events.
-
Deliver clear executive-level communications and situation reports.
-
Conduct post-incident reviews and drive continuous improvement initiatives.
-
Perform and oversee forensic investigations across endpoints, cloud platforms, and email systems.
Team Leadership
-
Lead, mentor, and support a small team of Incident Response and Threat Hunting professionals.
-
Provide technical guidance, coaching, and career development support.
-
Foster a collaborative, high-performance culture focused on operational excellence and continuous improvement.
-
Help prioritize workloads, coordinate response activities, and ensure team readiness for emerging threats.
Threat Hunting
-
Lead proactive, hypothesis-driven threat hunting activities across enterprise environments.
-
Develop hunting methodologies based on threat intelligence and adversary tradecraft.
-
Analyze telemetry from endpoint, identity, cloud, and SIEM platforms.
-
Identify detection gaps and improve visibility across the environment.
-
Convert hunt findings into scalable detection rules and operational procedures.
-
Map hunting coverage against MITRE ATT&CK and emerging threat trends.
Detection & Security Engineering Support
-
Partner with security engineering and platform teams to enhance detection capabilities.
-
Contribute to tuning and optimization of security controls and monitoring solutions.
-
Help strengthen incident response readiness through playbooks, tabletop exercises, and process improvements.
-
Support regulatory and compliance requirements related to incident response and evidence preservation.
Wymagania
What We're Looking ForRequired Experience
Technical Expertise
Leadership & Communication
Preferred Certifications
-
10+ years of experience in cybersecurity or information security.
-
4+ years leading cyber incident response activities.
-
2+ years of hands-on threat hunting experience.
-
Proven experience acting as Incident Commander during high-severity cyber incidents.
-
Previous experience leading, mentoring, or managing security professionals.
-
Strong background in digital forensics, incident response, and threat detection.
Technical Expertise
-
Microsoft Defender XDR ecosystem.
-
Microsoft Defender for Endpoint.
-
Microsoft Entra ID.
-
Cloud security across Azure, AWS, and/or GCP.
-
SIEM platforms such as Google SecOps (Chronicle), Microsoft Sentinel, Splunk, or equivalent.
-
Endpoint security technologies including SentinelOne or similar solutions.
-
Email security platforms and investigation techniques.
-
Advanced KQL skills.
-
Experience with Sigma, YARA, SPL, or equivalent detection languages.
-
Scripting proficiency in PowerShell and Python.
-
Strong Windows, Linux, and cloud investigation capabilities.
Leadership & Communication
-
Exceptional decision-making under pressure.
-
Ability to communicate effectively with both technical teams and executive stakeholders.
-
Strong facilitation and stakeholder management skills.
-
Experience leading small technical teams while remaining deeply hands-on in day-to-day security operations.
Preferred Certifications
-
GCIH
-
GCFA
-
GCFR
-
GCTI
-
GCTD
-
GNFA
-
Microsoft SC-200
-
CISM
Oferujemy
-
Competitive salary ranging from 38 000 to 43 000 PLN gross monthly,
-
15% annual bonus,
-
Comprehensive Luxmed medical care for you and your family,
-
Life insurance,
-
Access to a benefits platform offering a variety of perks and discounts.
Podobne oferty pracy
-
Spawacz / spawaczka MAG/TIG - Opole, Tychy, Mikołów, Kępno, Turek
SCB Sp zo.o.- praca regionalna
- umowa zlecenie
- praca od zaraz
- запрошуємо працівників з України
Aplikuj bez CVPolecana
-
Administratorem danych osobowych jest Michael Page Finance & Human Resources 40-007 Katowice Uniwersytecka 13, NIP: 5252345586. Moje dane osobowe przetwarzane są w celu rekrutacji przez Administratora. Wiem, że przysługują mi następujące prawa: prawo żądania dostępu do swoich danych, prawo do ich sprostowania, prawo do usunięcia danych, prawo do ograniczenia przetwarzania, prawo do wniesienia sprzeciwu oraz prawo do przenoszenia danych. Więcej informacji na temat przetwarzania danych osobowych, znajduje się w Polityce Prywatności Administratora.
-
Wyrażam zgodę na przetwarzanie moich danych osobowych przez Michael Page Finance & Human Resources 40-007 Katowice Uniwersytecka 13, NIP: 5252345586 zawartych w załączonych dokumentach aplikacyjnych (w tym wizerunku), na potrzeby bieżącej rekrutacji. Zgoda jest dobrowolna i może być w każdym czasie wycofana. Dodatkowo wyrażam zgodę na przetwarzanie moich danych osobowych zawartych w załączonych dokumentach aplikacyjnych (w tym wizerunku), na potrzeby przyszłych rekrutacji przez okres 12 miesięcy. Zgoda jest dobrowolna i może być w każdym czasie wycofana.
Dodana
Wygasa
(za 29 dni)
Praca alert - powiadomienia
Manager, Gdańsk
Chcesz dowiedzieć się więcej o firmie?
Zobacz profil pracodawcyPolecani pracodawcy
Praca w sąsiednich miejscowościach
- Praca Przejazdowo
- Praca Borkowo
- Praca Kowale
- Praca Bystra
- Praca Bogatka
- Praca Jankowo Gdańskie
- Praca Rokitnica
- Praca Rotmanka
- Praca Straszyn
- Praca Wiślinka
- Praca Pruszcz Gdański
- Praca Roszkowo
- Praca Juszkowo
- Praca Wiślinka
- Praca Koszwały
- Praca Sopot
- Praca Sulmin
- Praca Będzieszyn
- Praca Cieplewo
- Praca Rusocin