Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailSecurity Incidents have a high potential to cause a severe business impact on the organization. They often involve ambiguity complexity and the need for offplaybook approaches and solutions to manage unprecedented problems. Flexibility fast movement and the ability to reduce complex situations to individual components to allow actiontaking are key during such situations.
The Senior CSIRT Engineer coordinates task forces to respond to major Information Security Incidents. They act as a primary point of contact for all parties involved and contain eradicate and recover Information Security Incidents.
Most of their time they will work during core business hours but also regularly oncall outside of business hours and on weekends.
At Zalando our vision is to be inclusive by design. And this vision starts with our hiring we do not discriminate on the basis of gender identity sexual orientation personal expression ethnicity religious belief or disability status. You are welcome to leave out your picture age or marital status from your application. We only assess candidates on their qualifications and merit.
We want to provide you with a great candidate experience. Feel free to inform us of any accommodations you may need so we can best support you throughout the hiring process.
our diversity & inclusion strategy: employee resource groups: WED LOVE YOU TO DO (AND LOVE DOING) Drive 3rd level incident response activities supported by a task force which you lead through the entire Security Incident Lifecycle; Coordinate the investigation activities of involved Cybersecurity Engineers from all levels; Partner with engineering teams and other oncall staff to drive the investigation and response and facilitate swift decisionmaking; Interact with platform partners on 3rd party Incidents to evaluate the potential impact on Zalando; Steer stakeholder communication on the highest level keeping stakeholders in a close loop and serving as the primary point of contact throughout the entire Incident Response Lifecycle; You interact directly with senior executives equipping them with critical information required for swift decisionmaking; You will also own the quality of our forensic incident investigation reports; When not managing Incidents you continuously improve our monitoring coverage and design and execute tabletop exercises to ensure all CSIRT members and Stakeholders understand their roles and can execute their responsibilities during an incident. You have over 5 years of experience as a CSIRT Engineer within a Cyber Defense Team CSIRT or SOC 3rd level) and are adept at handling oncall responsibilities outside of business hours; You possess excellent verbal and written communication skills with a proven track record in writing forensic incident investigation reports and effectively engaging with stakeholders; You are skilled at quickly assessing situations evaluating the effectiveness of various tactics and making rapid decisions on appropriate courses of action during incidents; You have extensive experience in security monitoring detection and analysis methodologies and technologies including networkbased intrusion detection systems extended detection and response solutions (XDR) web application and network firewalls and SIEM solutions; You bring demonstrable expertise in safeguarding assets on AWS and managing Kubernetes deployments within the AWS environment and have handson experience with AWS native security tools. Additionally your background includes monitoring Google Workspace or similar environments; You have a thorough understanding of the MITRE ATT&CK Framework the Cyber Chain and NIST and possess experience with programming/scripting languages such as Python Go PowerShell and Bash to streamline security operations. If you think you have what it takes we encourage you to apply even if you dont meet every single requirement. You may just be the right candidate for this or other roles! Zalando provides a range of benefits heres an overview of what you can expect. Ask your Talent Acquisition Partner to learn more about what we offer. Employee shares program 40 off fashion and beauty products sold and shipped by Zalando 30 off Lounge by Zalando discounts from external partners 2 paid volunteering days a year Hybrid working model with up to 60 remote per week actual practice is up to each team to best support their collaboration Work from abroad for up to 30 working days a year 27 days of vacation a year to start for fulltime employees Relocation assistance available (subject to prior agreement) Family services including counseling and support Health and wellbeing options (including Wellhub) Mental health support and coaching available Drive your development through our training platform and biannual peertopeer reviewWED LOVE TO MEET YOU IF
OUR OFFER
Required Experience:
Senior IC
Full Time