Cyber Security Incident Responder

Kuka AG

$90K — $110K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or related field, or equivalent practical experience
  • Knowledge of Windows OS and general IT troubleshooting
  • Familiarity with phishing, malware, and ransomware investigations is advantageous
  • Basic understanding of SOAR technology is beneficial
  • Experience in a 24x7 SOC environment preferred
  • Understanding of common network services like web, mail, and DNS is a plus
  • Hands-on experience in IT security practices like Threat prevention and SIEM is an advantage
  • Scripting or automation skills using languages like PowerShell or Python are beneficial.

Responsibilities

  • Monitor and triage security incidents following SOC procedures and SLAs
  • Analyze and respond to security alerts utilizing Microsoft Sentinel and Defender XDR
  • Investigate issues and identify compromised systems through log analysis
  • Document investigations and remediation actions in case management systems
  • Contribute to the optimization of security use cases and detection capabilities
  • Support automation efforts with SOAR playbooks and improved workflows
  • Perform event analysis and appropriate tool usage for incident response.

Benefits

  • Opportunities for job-related growth and continued education
  • Access to training and certification programs
  • Collaboration with global IT and security teams
  • Exposure to advanced security technologies
  • Work within a culture of continuous improvement and innovation.
Full Job Description
Make an impact

The Cyber Security Incident Responder is responsible for monitoring, investigating, triaging, and responding to cybersecurity incidents across the enterprise within established operating procedures. The role supports the Security Operations Center (SOC) by analyzing security alerts, conducting investigations, coordinating containment and remediation activities, and continuously improving detection capabilities. The successful candidate will work closely with global IT and security teams to reduce cyber risk and strengthen the organization's security posture.

  • Perform daily security monitoring, incident triage, investigation, containment, and response activities in accordance with established SOC procedures and service level agreements (SLAs).
  • Monitor, investigate, and respond to security alerts using Microsoft Sentinel, Microsoft Defender XDR, and other security technologies.
  • Ability to identify issues, compromised computers using logs, and related computer-centric evidence sources
  • Document investigations, findings, and remediation actions accurately within case management systems.
  • Contribute to security use-case tuning and continuous detection improvement. Support automation initiatives through SOAR playbooks and workflow optimization.
  • Demonstrate ability to perform event analysis and tools utilization (identification, response, escalation)
  • Exercise attention to detail and due care in regards to work-related communication and documentation.
  • Exhibit willingness to learn, a desire to collaborate with others, and the drive to take on additional responsibilities when called upon.
  • Pursue job-related growth and knowledge via higher education, certification, and training.
  • Maintain awareness of changing processes, procedures, and standards critical to job performance.


What you need to succeed

  • IT Experience Or Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field, or equivalent practical experience.
  • Knowledge of windows OS / General IT (Debugging and IT Problem solving)
  • Knowledge of phishing, malware, ransomware, account compromise, and insider-threat investigations is a plus
  • Basic understanding of SOAR technology is a plus
  • Experience working in a 24x7 SOC or shift-based operational environment is an advantage.
  • Understanding of common network services (Web, mail, DNS, authentication) is a plus
  • Previous hands-on experience in the field of IT security (Threat prevention, SIEM, Endpoint protection) is a plus
  • Experience with scripting or automation using PowerShell, Python, or similar technologies is an advantage.

Similar Jobs

More Jobs at Kuka AG

More Information Technology Jobs

Find similar Cyber Security Incident Responder jobs: