Senior Incident Response Specialist at Help AG
Dubai, Dubai, United Arab Emirates -
Full Time


Start Date

Immediate

Expiry Date

26 Nov, 26

Salary

0.0

Posted On

28 Aug, 26

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

Yes

Skills

Industry

Information Technology & Services

Description

About the job

Job Description


Help AG is looking for a talented and experienced Senior Incident Response Specialist who will be responsible for identifying, analyzing, containing, investigating, and responding to cybersecurity incidents across the enterprise. The role involves coordinating incident response activities, conducting forensic investigations, analyzing security events, and working closely with internal stakeholders to minimize business impact while enhancing the organization's cyber resilience.


Responsibilities


  • Monitor and investigate security alerts generated by SIEM, EDR, IDS/IPS, firewalls, and other security tools.
  • Perform cyber incident triage by determining severity, scope, urgency, and business impact.
  • Lead technical investigations and coordinate incident response activities across multiple teams.
  • Execute containment, eradication, and recovery activities during cyber incidents.
  • Perform real-time incident handling, forensic evidence collection, malware analysis, and threat correlation.
  • Collect and preserve digital evidence following forensic best practices.
  • Analyze host, network, firewall, IDS/IPS, and application logs to identify attack patterns.
  • Perform malware analysis and identify Indicators of Compromise (IOCs).
  • Investigate compromised systems and recommend remediation measures.
  • Maintain complete incident records from detection through closure.
  • Prepare incident reports, executive summaries, and post-incident ("After Action") reports.
  • Develop technical guidance, incident response playbooks, and standard operating procedures.
  • Coordinate with Threat Intelligence teams to validate threats and enrich investigations.
  • Monitor external threat intelligence feeds and emerging cyber threats.
  • Recommend proactive improvements to security controls based on investigation findings.
  • Collaborate with infrastructure, application, SOC, legal, and business teams during incidents.
  • Support vendor evaluations and provide technical input into cybersecurity solutions.
  • Participate in developing technical specifications, RFPs, and SLAs.

Responsibilities
Loading...