368,530open jobs
9,432companies
50,439added this week
Browse all
Salary
$62k – $110k per year (Estimated)
Location
Remote/Hybrid (Warsaw, Poland)
Seniority
Senior · 8+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Arhs Group is a Luxembourg information technology company founded in 2003. It builds custom software, data platforms and digital systems largely for European Union institutions and public administrations. The group employs thousands of specialists and was acquired by Accenture.

Arηs Group, Part of Accenture, specializes in the management of complex public sector IT projects, including systems integration, informatics and analytics, solution implementation and program management. Our team helps lead clients through digital and information systems design, bringing expertise in a variety of areas ranging from software development, data science and security management to machine learning, cloud, and mobile development.

Arηs Group was acquired by Accenture in July 2024.

  • Contribute to the development, maintenance, testing and continuous improvement of the organization’s Incident Response Plan and incident handling capabilities
  • Develop, implement and assess incident response procedures, playbooks, workflows and operational processes
  • Identify, analyze, contain, mitigate and communicate cybersecurity incidents across enterprise environments
  • Lead and support technical cybersecurity incident investigations throughout all phases of the incident response lifecycle
  • Collect, analyze and correlate cyber threat information originating from multiple sources to determine incident impact, scope and root cause
  • Perform incident triage activities and assess reported security alerts to determine appropriate response actions
  • Monitor, investigate and respond to security events identified through Security Operations Centre (SOC) capabilities and cybersecurity monitoring platforms
  • Assess, prioritize and manage technical vulnerabilities and support remediation activities
  • Measure and evaluate incident detection and response effectiveness and recommend process improvements
  • Evaluate the effectiveness and resilience of cybersecurity controls and security measures following security incidents and data breaches
  • Develop and improve incident handling testing methodologies, exercises and validation techniques
  • Establish procedures for incident analysis, lessons learned activities and incident reporting
  • Document incident investigations, findings, response activities, corrective actions and recommendations
  • Manage, review and analyze log files, security events and forensic evidence to support investigations
  • Operate and utilize Incident Response (IR) tools including Extended Detection and Response (XDR), Security Information and Event Management (SIEM) and Network Detection and Response (NDR) platforms
  • Support and collaborate with Security Operations Centres (SOC) and Computer Security Incident Response Teams (CSIRT)
  • Work closely with technical, operational, legal, compliance and business stakeholders during cybersecurity incidents
  • Prepare and deliver incident response reports, executive summaries and post-incident assessments
  • Review existing security controls and provide recommendations to improve detection, response and prevention capabilities
  • Develop and maintain security procedures and policies with emphasis on information protection and data privacy requirements
  • Support security monitoring, threat analysis and incident management activities across operating systems, servers, cloud services and enterprise infrastructure
  • Contribute to regulatory and compliance-driven incident reporting activities in accordance with applicable legal and regulatory frameworks
  • Perform additional tasks as assigned by the supervisor
  • Minimum 8 years of experience in cybersecurity incident response, incident handling, security operations or cyber defence roles
  • At least two of the following incident handling certifications (or an equivalent certification recognized internationally and accepted by the Contracting Authority):
  • GCIH (GIAC Certified Incident Handler)
  • GCIA (GIAC Certified Intrusion Analyst)
  • ECIH (EC-Council Certified Incident Handler)
  • CSIH (SEI Certified Computer Security Incident Handler)
  • SCMO (SABSA Certified Security Operations & Service Management Specialist)
  • or equivalent, internationally recognized certification
  • Additionally, at least one of the following certifications (or an equivalent certification recognized internationally and accepted by the Contracting Authority):
  • GPEN (GIAC Certified Penetration Tester)
  • CCFP (Certified Cyber Forensics Professional)
  • SCMO (SABSA Certified Security Operations & Service Management Specialist)
  • or equivalent, internationally recognized certification
  • Strong knowledge of incident handling standards, methodologies and frameworks
  • Strong understanding of incident response best practices and operational procedures
  • Hands-on experience with incident handling and cybersecurity investigation tools
  • Knowledge of incident management, escalation and communication procedures
  • Strong knowledge of operating system security concepts and security hardening practices
  • Strong understanding of computer and network security principles
  • Good knowledge of cyber threats, threat actors, attack techniques and adversary tactics
  • Knowledge of cybersecurity attack procedures and intrusion methodologies
  • Strong understanding of system vulnerabilities, exploitation techniques and remediation approaches
  • Knowledge of cybersecurity-related laws, regulations and compliance requirements
  • Experience working within Security Operations Centres (SOC) environments
  • Experience collaborating with Computer Security Incident Response Teams (CSIRT)
  • Ability to perform all technical, operational and functional aspects of cybersecurity incident handling and response
  • Experience collecting, correlating and analyzing threat intelligence and security event data from multiple sources
  • Experience working with operating systems, servers, cloud platforms and enterprise infrastructure environments
  • Ability to perform effectively in high-pressure and time-sensitive situations
  • Excellent communication, presentation and reporting skills
  • Strong experience analyzing security logs, audit trails and security events
  • Excellent analytical, investigative and problem-solving skills
  • Strong attention to detail and ability to rapidly assess security situations
  • Security clearance required (EU Restricted) from 1st day of collaboration
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Warsaw
$109k – $118k per year • In office • Contractor • 5+ years exp • Plano
Bash
JavaScript
Node JS
Python
Python
FastAPI
Flask
Gunicorn
Uvicorn
Databases
Meilisearch
pgvector
PostgreSQL
Redis
AI/ML
AI Agents
AWS Bedrock
Claude
LLM
RAG
Model Context Protocol
DevOps
AWS
CI/CD
Docker
Git
Grafana
Incident Management
Jenkins
Kubernetes
Nginx
Prometheus
Rest API
Ubuntu
Amazon CloudWatch
Apply
$224k – $279k per year • In office • Full-Time • 3+ years exp • Bachelor's Degree • San Francisco • New York • Seattle • Austin
Python
JavaScript
Databases
PostgreSQL
Redis
AI/ML
Time Series Forecasting
Frontend
Bootstrap
DevOps
Ansible
CI/CD
Docker
Grafana
Incident Management
OpenTelemetry
Platform Engineering
Prometheus
Terraform
Robotics
Digital Twin
Apply
$145k – $295k per year (Estimated) • Equity • Remote • Internship • 8+ years exp • San Francisco
Go
Databases
Apache Kafka
ClickHouse
Google BigQuery
AI/ML
Flink
Recommender Systems
DevOps
Incident Management
Kubernetes
Apply
$258k – $386k per year • Equity • Remote/Hybrid • Full-Time • 8+ years exp • San Francisco
Go
Java
Python
Rust
Databases
DynamoDB
MySQL
PostgreSQL
Redis
DevOps
AWS
Incident Management
Kubernetes
Apply
$105k – $118k per year • In office • Contractor • 5+ years exp • Plano
Bash
JavaScript
Node JS
Python
Python
FastAPI
Flask
Gunicorn
Uvicorn
Databases
Meilisearch
pgvector
PostgreSQL
Redis
AI/ML
AI Agents
AWS Bedrock
Claude
LLM
RAG
Model Context Protocol
DevOps
AWS
CI/CD
Docker
Git
Grafana
Incident Management
Jenkins
Kubernetes
Nginx
Prometheus
Rest API
Ubuntu
Amazon CloudWatch
Apply
.NET Developer 3 days ago
$85k – $178k per year (Estimated) • Remote • Full-Time • 9+ years exp • The Hague
C#
SQL
C#
.NET
Databases
ActiveMQ
Apache Kafka
ElasticSearch
Neo4j
RabbitMQ
Redis
DevOps
Azure
Azure DevOps
CI/CD
Docker
Docker Swarm
Git
Gitflow
Helm
Kibana
Kubernetes
Rest API
Apply
Solution Architect 7 days ago
$79k – $117k per year (Estimated) • In office • Full-Time • 8+ years exp • Master's Degree • Warsaw
Apply
$52k – $132k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree • The Hague
DevOps
Azure
Azure DevOps
CI/CD
Helm
Kubernetes
Puppet
Rancher
Terraform
Apply
Solutions Architect 10 days ago
$79k – $117k per year (Estimated) • In office • Full-Time • 12+ years exp • Bachelor's Degree • Warsaw
Apply
$64k – $139k per year (Estimated) • Remote • Full-Time • 9+ years exp • Bachelor's Degree • The Hague
C#
Mobile
Dependency Injection
DevOps
Azure
Azure DevOps
gRPC
QA
Playwright
Rest-Assured
Selenium
Apply
$35k – $77k per year (Estimated) • Remote/Hybrid • Full-Time • Warsaw
Apply
DevOps Engineer 2 hours ago
$49k – $88k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Warsaw
Bash
Python
DevOps
AWS
Azure
Azure AKS
CI/CD
Docker
GCP
Git
GitHub
GitHub Actions
GitOps
Grafana
Kubernetes
Loki
Prometheus
Terraform
Thanos
Apply
Senior Data Scientist 6 hours ago
$54k – $88k per year (Estimated) • Equity • Remote/Hybrid • Full-Time • 4+ years exp • Master's Degree • Warsaw
Python
SQL
Databases
Databricks
Google BigQuery
AI/ML
Spark
DevOps
Azure
GCP
GitHub
Kubernetes
Analytics
Power BI
Tableau
Management
Confluence
Jira
Apply
$18k – $41k per year (Estimated) • In office • Full-Time • 1+ year exp • Bachelor's Degree • Warsaw
AI/ML
Aider
Apply
$72k – $114k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Warsaw
Go
Rust
SQL
Rust
Axum
SQLx
Tonic
Databases
PostgreSQL
AI/ML
InfiniBand
NVLink
DevOps
AWS
Cilium
gRPC
Kubernetes
KubeVirt
KVM
OpenTelemetry
Platform Engineering
Rest API
Splunk
Cybersecurity
Calico
Keycloak
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.