Logo BLG LOGISTICS GROUP AG & Co. KG

Expert Computer Incident Response Team

New

Job

  • Level
    Senior
  • Job Field
    IT, Security
  • Employment Type
    Full Time
  • Contract Type
    Permanent employment
  • Location
    Bremen
  • Working Model
    Hybrid, Onsite
  • Job Summary

    In this role, you will develop incident response frameworks, analyze security incidents, and implement playbooks for effective responses to cyber attacks across the entire IT landscape.

    Job Technologies

    Your role in the team

    • Methodically and operationally, you enable the organization – in coordination with the technical management – to identify, analyze, contain, and manage security incidents across BLG LOGISTICS's entire IT landscape. You empower us to respond to cyberattacks, data breaches, and security-related events in a structured, swift, and effective manner at all times.
    • Competence Development CSIRT: You design security concepts, implement incident response frameworks according to international standards, and define a classification model with severity taxonomy (P1-P4), escalation levels, and notification chains. Thanks to a comprehensive playbook framework, you are prepared for all relevant incident types: ransomware, phishing/BEC, insider threat, DDoS, APT, data breach, supply chain attack.
    • Continuous Development: You continuously refine playbooks and runbooks based on lessons learned, threat vectors, and regulatory requirements. In coordination with the Security Operations Center, you further develop detection rules, correlation logic, and anomaly detection models. You regularly analyze the current state of the CSIRT according to maturity models (SIM3, SOC-CMM), derive improvement measures, and integrate forensic technologies (disk forensics, memory forensics, network forensics, log analysis, and malware analysis/reverse engineering).
    • Operations and Operational Incident Response: You oversee the incident response cycle from identification through containment and eradication to recovery. You produce forensic reports, executive summaries, and court-admissible expert opinions for various target audiences. In our incident database, you maintain knowledge on handled incidents, Indicators of Compromise (IoCs), TTPs, and Lessons Learned.
    • Prevention: You regularly organize exercises to validate defensive capabilities - Red Team/Blue Team and Purple Team. Based on post-incident analyses, you conduct reviews (PIR) with all stakeholders and monitor the implementation of improvement measures.
    • Support in IT security decision-making: You assess and classify incoming security incidents based on severity, business impact, and regulatory relevance. Additionally, you develop containment strategies and action recommendations—balancing between business continuity and security requirements. You provide security-related insights to the EAM Landscape Board and create business cases for investments in incident response capabilities, forensic technologies, and automation.

    This text has been machine translated. Show original

    Our expectations of you

    Education

    • Qualification: You have a completed degree in Computer Science, Business Informatics, IT Security, Cybersecurity, or are equivalently qualified in the IT field. Professional Experience: You possess extensive expertise in Cyber Security / Cybersecurity / Incident Response, particularly in Digital Forensics - Cloud Forensics (AWS, Azure, GCP), Container Forensics, Mobile Forensics, and IoT Forensics.

    Qualifications

    • Know-how: You possess comprehensive knowledge of common IT security standards such as ISO 27001, 27035, NIST SP 800-61, SANS Incident Response, etc.
    • Incident Response Tools: You are experienced in handling security software such as EDR/XDR (CrowdStrike, Microsoft Defender, SentinelOne), SIEM (Splunk, Sentinel, QRadar), and SOAR platforms.
    • Networking: In-house, you work closely with the Head of Information Security and Chief Security Officer as well as all central departments and BLG business units to sustainably implement IT security requirements. You also maintain cooperative exchanges with industry partners and the Cyber Security Agency (BSI) — and thus, in the best case, stay one step ahead of current threat scenarios.

    This text has been machine translated. Show original

    What we offer

    • Experience an exciting and dynamic environment. With your performance, you will secure advantages in all areas:
    • Find short decision paths, a high degree of personal responsibility, and visible impact where it matters with us.
    • Take on responsible tasks with a high degree of creative freedom - in a corporation with flat hierarchies, short decision-making paths, and a broad internal network.
    • Benefit from targeted training courses, coaching, and management training, etc. - we support you individually.
    • Look forward to flexible working hours with the option to work remotely.
    • Get free and confidential coaching on mental health, career, family, caregiving, and much more at any time.

    This text has been machine translated. Show original

    Benefits

    More net

    Work-Life-Integration

    Food & Drink

    Topics that you deal with on the job

    Job Locations

    • Location Bremen

      Bremen

      Germany

    This is your employer

    BLG LOGISTICS GROUP AG & Co. KG

    BLG LOGISTICS GROUP AG & Co. KG

    As a seaport-oriented logistics service provider with an international network, BLG LOGISTICS can look back on more than 140 years of history. Today we are present in all growth markets of the world with more than 100 locations and offices in Europe, America, Africa and Asia. Our customers from industry and trade benefit from our fully integrated logistic system services.

    Description

  • Company Size
    250+ Employees
  • Founding year
    1877
  • Company Type
    Established Company
  • Working Model
    Hybrid, Onsite
  • Industry
    Logistics, Transportation
  • Logo BLG LOGISTICS GROUP AG & Co. KG

    Expert Computer Incident Response Team

    Location
    Bremen
    Working Model
    Hybrid, Onsite
    Diversity
    Open for all genders

    More Jobs