Înapoi la Joburi
Publicat 1 săptămână în urmă
Endava

Security Incident Response Analyst

Nespecificat
Estimare 950 - 2,950 EUR Brut / lună · Pe baza a 13 anunțuri similare
Timișoara, TM, Romania
La birou
Full-time

Tehnologii

Descriere job

Acest post este localizat în Timișoara, TM, Romania, Romania.

Căutăm un Security Incident Response Analyst.

Oferim un post full-time.

Informații suplimentare

Job Description The Incident Response Analyst is part of the front line of our Cyber Threat Intelligence and Incident Response team, responsible for providing Endava with high fidelity, actionable cyber threat intelligence and specialist incident response capabilities. Strong knowledge of the latest security threats, industry standard incident response methodologies, and investigation techniques is expected. Candidates should also demonstrate adaptability, knowledge of both incident response and cyber threat intelligence, and an eagerness to learn emerging threat actor tactics, tools and techniques. Responsibilities: - Act as a key responder during security incidents, supporting containment, eradication and recovery activities. - Perform detailed investigation and analysis of security alerts, intrusions and malware using EDR, SIEM and forensic tooling. - Support post-incident reviews, identifying root cause, control gaps and lessons learned. - Coordinate with SOC, CTI, IT, legal and third-party providers during incidents to ensure timely and effective response - Support evidence collection and documentation to meet legal, regulatory and internal reporting requirements. In periods without active incident response activity, the analyst will actively support Cyber Threat Intelligence operations and initiatives Qualifications - Degree in Cyber Security, Computer Science, Information Technology or a related discipline, or equivalent practical experience. - Relevant incident response, blue team or security operations certification (for example GCIH, GCED, or equivalent). - Demonstrated experience responding to security incidents, labs or realistic tabletop exercises. Experience: - 3+ years in cybersecurity, with at least 2 years in SOC/CTI/Incident Response. - Hands-on experience in malware analysis, memory forensics, and log analysis. - Strong understanding of network protocols, secure configurations, and common attack techniques (MITRE ATT&CK). - Experience supporting or participating in security incident response activities, including investigation and containment. - Familiarity with SOC tooling such as SIEM, EDR, Threat Intelligence Platforms and alerting platforms. - Experience analysing security alerts, logs and endpoint telemetry to identify malicious activity. - Experience documenting incidents, investigations and lessons learned in a clear and structured manner. Technical Skills: - Hands-on experience with SIEM and EDR tools for alert investigation and incident analysis. - Ability to analyse endpoint, network and log data to identify malicious activity. - Familiarity with incident response processes, including triage, containment and recovery. - Basic malware analysis and investigation skills, such as analysing file hashes, URLs and suspicious processes. - Understanding of common attack vectors, vulnerabilities and exploitation techniques. Additional Skills: - Strong problem-solving and analytical skills. - Ability to remain calm and decisive during high-pressure incidents. - Excellent communication skills, both technical and non-technical. - Continuous learning mindset and willingness to explore new tools and methods. Additional Information Discover some of the global benefits that empower our people to become the best version of themselves: - Finance: Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus; - Career Development: Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership; - Learning Opportunities: Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences; - Work-Life Balance: Hybrid work and flexible working hours, employee assistance programme; - Health: Global internal wellbeing programme, access to wellbeing apps; - Community: Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations. At Endava, we’re committed to creating an open, inclusive, and respectful environment where everyone feels safe, valued, and empowered to be their best. We welcome applications from people of all backgrounds, experiences, and perspectives—because we know that inclusive teams help us deliver smarter, more innovative solutions for our customers. Hiring decisions are based on merit, skills, qualifications, and potential. If you need adjustments or support during the recruitment process, please let us know. Company Description Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change. By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses. From prototype to real-world impact - be part of a global shift by doing work that matters.

Despre Companie Endava

Endava is a leading provider of next-generation technology services, dedicated to enabling its customers to accelerate growth, tackle complex challenges and thrive in evolving markets.
Moduri de lucru
La birou
Birouri în: Iași, IS, Romania, Cluj-Napoca, CJ, Romania, Brașov, BV, Romania, Timișoara, TM, Romania

Compensație

Nespecificat
Estimare 950 - 2,950 EUR Brut / lună
Pe baza a 13 anunțuri similare

Detalii contract

Tip angajare Full time
Tip contract Angajat full-time

Checklist înainte de aplicare

Verifică rapid dacă anunțul are informațiile esențiale, ca să compari corect ofertele.

  • Salariul este brut sau net și pentru ce perioadă?
  • Este CIM (angajat) sau B2B (PFA/SRL)?
  • Ce înseamnă „remote/hibrid” concret (zile la birou, overlap)?
  • Este clar scope-ul și nivelul de senioritate?

Semnalează dacă lipsesc date sau există erori în anunț.

Cum evaluezi acest job (dincolo de titlu)

O aplicație bună nu înseamnă doar “știu stack-ul”. Înseamnă dovada că poți livra rezultate în contextul specific: setup-ul echipei, constrângeri, așteptări de senioritate și cum se măsoară succesul. Folosește checklist-ul ca să decizi dacă aplici și ce să evidențiezi.

Clarifică scope-ul și așteptările

Multe anunțuri sunt intenționat generale. Rolul tău este să identifici responsabilitățile de bază și dacă se potrivesc cu punctele tale forte acum.

  • Caută semnale de ownership: “design”, “arhitectură”, “lead”, “on-call”, “mentoring”.
  • Verifică dacă rolul este feature delivery vs platform/infra vs mentenanță.
  • Dacă descrierea e scurtă, folosește mărimea companiei + industrie + stack ca să deduci ziua de lucru tipică.

Validează tipul de lucru și colaborarea

Etichetele remote/hibrid/la birou nu sunt suficiente. Constrângerile reale sunt orele de overlap, zilele la birou și stilul de comunicare.

  • Confirmă dacă “remote” e global/UE/doar România și dacă sunt ore obligatorii de overlap.
  • Pentru hibrid, întreabă câte zile pe săptămână și dacă sunt fixe sau flexibile.
  • Verifică cerințele de limbă și dependențele cross-team (product, design, stakeholders).

Compară compensația realist

Ca să compari două oferte, normalizează totul pe același baseline și tip de contract. Dacă salariul nu e afișat, construiește un interval orientativ și validează devreme.

  • Normalizează brut vs net și lună vs an înainte să compari.
  • Pentru B2B, ia în calcul taxele, contabilitatea, zilele libere neplătite și riscul.
  • Folosește datele de piață ca “sanity check”, apoi negociază cu dovezi (impact, scope, senioritate).

Link-uri utile pentru decizie

Paginile de mai jos te ajută să verifici intervalele salariale și alegerile de contract (mai ales când treci între CIM și B2B).