Cyber Defence and Incident Response Engineer

Delivery Hero — Germany · Posted ~3 hours ago

Mid Full-time Visa History ✓

Skills

cybersecurity incident response digital forensics threat hunting detection engineering security automation security investigations SIEM DFIR tools

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A Cyber Defence and Incident Response Engineer will help protect a complex digital ecosystem by investigating security incidents, conducting digital forensics, hunting threats, and developing sophisticated automated detection capabilities. The role is designed for an engineer who wants to build proactive and highly automated security operations.

Highlights

Hands-on cybersecurity role focused on proactive threat hunting, digital forensics, incident response, sophisticated detection engineering, and automation within a high-impact security team.

Description

Job DescriptionJob Ref ID: JR0074961 If you’re here, it’s because you’re looking for an exciting ride. A ride that will fuel up your ambitions to take on a new challenge and stretch yourself beyond your comfort zone. We’ll deliver a non-vanilla culture built on talent, where we work to amplify the impact on millions of people, paving the way forward together. YOUR MISSION Glovo’s success and constant growth introduce complex challenges in defending our ecosystem. We are looking for a CSIRT Engineer to join our Cyber Defense team. Your mission is to be the shield of Glovo, ensuring we are not just ready to respond to threats, but proactive enough to hunt them down before they arrive. You will be a key player in building a "SOCless" future through high-level automation and sophisticated detection engineering. THE JOURNEY Be the First Responder: Support Digital Forensics and Incident Response (DFIR) efforts, conducting deep-dive investigations into security breaches and anomalies following the Cyber Incident Response Cycle. Architect Readiness: Design and maintain the playbooks and investigation methodologies that ensure Glovo is prepared for any security incident. Precision Monitoring: Create, validate, and fine-tune alerts to ensure high fidelity and low noise, turning raw logs into actionable intelligence. Automate & Orchestrate: Contribute our "SOCless" ambition by building tooling and automation for incident response, reducing manual toil through smart orchestration. Hunt the Threat: Proactively "play the bad guy" by researching emerging threats and conducting threat-hunting exercises across our infrastructure. Manage the Pipeline: Cooperate with the management of our security log ingestion tools and SIEM to ensure full visibility across Glovo.