Cyber Defence & Incident Response Engineer

Delivery Hero — Germany · Posted ~1 hour ago

Senior Visa History ✓

Skills

Incident response Digital forensics Threat hunting Detection engineering Cybersecurity Security automation Security investigations

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

Join a cyber defence team responsible for protecting a large-scale digital ecosystem. You will investigate security incidents, support digital forensics and incident response, proactively hunt threats, and build sophisticated detection and automation capabilities. The role offers the opportunity to shape a modern, highly automated security operation.

Highlights

Work at the forefront of cyber defence, combining incident response, digital forensics, proactive threat hunting, detection engineering, and advanced security automation.

Description

Job DescriptionJob Ref ID: JR0074961 If you’re here, it’s because you’re looking for an exciting ride. A ride that will fuel up your ambitions to take on a new challenge and stretch yourself beyond your comfort zone. We’ll deliver a non-vanilla culture built on talent, where we work to amplify the impact on millions of people, paving the way forward together. YOUR MISSION Glovo’s success and constant growth introduce complex challenges in defending our ecosystem. We are looking for a CSIRT Engineer to join our Cyber Defense team. Your mission is to be the shield of Glovo, ensuring we are not just ready to respond to threats, but proactive enough to hunt them down before they arrive. You will be a key player in building a "SOCless" future through high-level automation and sophisticated detection engineering. THE JOURNEY Be the First Responder: Support Digital Forensics and Incident Response (DFIR) efforts, conducting deep-dive investigations into security breaches and anomalies following the Cyber Incident Response Cycle. Architect Readiness: Design and maintain the playbooks and investigation methodologies that ensure Glovo is prepared for any security incident. Precision Monitoring: Create, validate, and fine-tune alerts to ensure high fidelity and low noise, turning raw logs into actionable intelligence. Automate & Orchestrate: Contribute our "SOCless" ambition by building tooling and automation for incident response, reducing manual toil through smart orchestration. Hunt the Threat: Proactively "play the bad guy" by researching emerging threats and conducting threat-hunting exercises across our infrastructure. Manage the Pipeline: Cooperate with the management of our security log ingestion tools and SIEM to ensure full visibility across Glovo.