12 sep
|
Glovo
|
Barcelona
Experteer Overview In this CSIRT Engineer role, you defend Glovo’s ecosystem by leading incident response and proactive threat hunting. You’ll design readiness playbooks and detection methodologies, turning logs into actionable insights with automation. You will work closely with the Cyber Defense team to reduce dwell time and strengthen security across cloud and on-premise environments. This is a hands-on, impact-driven position that combines DFIR, threat hunting, and automation to keep users and data safe.Compensaciones / Incentivos
- Be the First Responder supporting DFIR investigations following the Cyber Incident Response Cycle
- Architect and maintain incident response playbooks and methodologies
- Create, validate and tune alerts to achieve high fidelity with low noise
- Build tooling and automation to support incident response and reduce manual effort
- Proactively perform threat hunting across our infrastructure and research emerging threats
- Coordinate with security log ingestion tools and SIEM to ensure full visibility across GlovoResponsabilidades
- Experience in Incident Response and Digital Forensics is a plus
- Operational experience with AWS and cloud-native logs
- Programming experience in Python (or Golang) for automating responses
- Strong detection engineering skills for alert tuning and threat monitoring
- Proactive mindset with interest in Threat Hunting and knowledge of MITRE ATTu0026CK framework
- Good written and verbal communication skills to document incidents and post-mortemsRequisitos principales
- Private health insurance
- Monthly Glovo credit
- Discounts on transportation and food
- Extra time off
- Work from home two days a week
- Enhanced parental leave
📌 Cyber Defence & Incident Response Engineer (They/She/He) (Barcelona)
🏢 Glovo
📍 Barcelona