Job
- Level
- Lead
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Ludwigsburg
- Working Model
- Onsite
Job Summary
In this role, you coordinate a near- and offshore SOC team, lead the incident response process for cybersecurity incidents, and optimize processes and playbooks for threat analysis and vulnerability assessment.
Job Technologies
Your role in the team
- Technical coordination of the Nearshore and Offshore SOC teams regarding security monitoring, triage, and escalation of security-relevant events.
- Independent management and leadership of the incident response process in cybersecurity incidents.
- Development, maintenance, and optimization of incident response processes, playbooks, and communication plans.
- Analysis of Indicators of Compromise (IOCs/IOAs), support in Threat Hunting, and vulnerability assessment.
- Conducting root cause analyses and lessons learned sessions for continuous improvement.
- Coordination with internal departments (e.g., IT Operations, Data Protection, and Information Security) as well as external partners during and after incidents.
- Participation in cross-team initiatives in areas such as Cloud Security, DevSecOps, Artificial Intelligence, and Operational Technology (OT) Security.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in Computer Science, Information Security, or a comparable qualification.
Qualifications
- Solid knowledge of network security, log and traffic analysis, and endpoint security.
- Good understanding of current attack methods, threat scenarios, and cybercrime tactics.
- Very good spoken and written German and English skills.
- A high degree of personal responsibility, structured working methods, and strong communication skills.
- Strong analytical and conceptual skills as well as process orientation.
- Independent and structured approach.
Experience
- Several years of professional experience in the field of cybersecurity, specifically in incident response, digital forensics, or within the SOC environment.
- Experience in collaborating with Nearshore and Offshore teams or internationally distributed cybersecurity structures is an advantage.
- Experience with SIEM solutions (Microsoft Sentinel).
This text has been machine translated. Show original
What we offer
- The classification should be in pay group EG15 (Baden-Württemberg) 04.02.01.20 Software Developer/-in 2 for a weekly working time of 35 hours, provided all tasks and requirements are met.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
- 🚌Excellent Traffic Connections
- 🏝Extra Holidays
- 🏠Home Office
- 🍼Day Care for Kids
- 🅿️Employee Parking Space
- ⏰Flexible Working Hours
Health, Fitness & Fun
More net
Food & Drink
Topics that you deal with on the job
Job Locations
This is your employer
Mann+Hummel GmbH
MANN+HUMMEL is a world leader in the field of filtration. Our secret to success: We unite our employees' expertise and experience with dependable technology – satisfying customers for many years now with superior goods and services.
Description
- Founding year
- 1941
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Industry, Production, Trade