Talentgrator logo

Incident Response Analyst

Talentgrator
Remote
Prague, CZSerbiaGeorgiaArmeniaKazakhstanPolandRemote· 2 months ago

Straight from Talentgrator’s careers page. Apply on the company site — no recruiter, no middleman.

Incident Response Analyst

Location: Prague, Prague, Czechia, Serbia, Georgia, Armenia, Kazakhstan, Poland

Department: Saas Platform| iGaming

Workplace: remote

Employment Type: full

Description

Talentgrator is a recruitment and talent partner focused on the IT entertainment and iGaming sectors, connecting businesses with specialized professionals. We work with teams that need strong technical expertise and dependable execution in fast-moving environments where security, resilience, and operational discipline matter every day.

We are looking for an Incident Response Analyst to join our Security team and operate on the front line of protecting the company’s infrastructure and services. In this role, you will analyze security events, investigate suspicious activity, and work with infrastructure and security data to identify and respond to potential threats.

Purpose of the role

You will be responsible for analyzing security events and raw logs, investigating suspicious activity, and supporting incident response processes.

Were looking for someone who has a good understanding of how infrastructure works and can read and interpret raw technical data, connect events from different sources, identify anomalies, and determine what may have happened during a security incident.

Responsibilities

  • Work with WAF to analyze anomalous traffic, respond to web attacks, and fine-tune rules.
  • Work with DLP and MDM to investigate data leaks, analyze policy violations, and collaborate with teams on findings.
  • Monitor and triage alerts in SIEM, analyzing events, classifying incidents, and prioritizing response.
  • Integrate raw log sources into SIEM, including normalization, parsing, and enrichment.
  • Develop and improve detection rules, correlation rules, and dashboards.
  • Reduce MTTR by identifying bottlenecks in response processes and implementing automation and runbooks.
  • Participate in incident post-mortems and provide actionable recommendations.
  • Conduct security incident investigations by collecting artifacts, reconstructing timelines, and performing root cause analysis.

Requirements

What We Expect

  • 3+ years of experience in Security Operations, SOC, Incident Response, Infrastructure Security, or a similar technical role.
  • Ability to read and interpret raw logs and understand what different system and application events represent.
  • Good understanding of Linux and Windows operating systems.
  • Good understanding of networking fundamentals and common network protocols.
  • Hands-on experience with SIEM platforms, preferably Splunk or similar technologies.
  • Ability to investigate security events by correlating information from different log sources.
  • Understanding of common cybersecurity threats, attacker techniques, and IOC/TTP concepts.
  • Familiarity with Active Directory and enterprise infrastructure.
  • Understanding of Kubernetes and Docker environments.
  • Basic scripting experience with Python, PowerShell, or Bash.
  • Understanding of Terraform and Ansible and how they are used for infrastructure automation and configuration management.
  • Strong analytical and troubleshooting skills.

Nice to Have

  • Experience with WAF, DLP, MDM, EDR/XDR, or similar security technologies.
  • Experience with Threat Hunting or Network Traffic Analysis.
  • Experience writing or tuning SIEM detection rules.
  • Experience with SOAR or security automation.
  • Experience with cloud infrastructure and cloud logs.
  • Experience with APIs and automation.
  • Participation in Red Team, Blue Team, Purple Team exercises, CTFs, or penetration testing.

Benefits

  • 25 vacation days and 5 family days yearly
  • Flexible start to the workday
  • Support from a professional corporate coach and psychologist
  • Regular internal and external activities, workshops, trips, and corporate events
  • Access to our internal knowledge base, meetups, and team-building activities
  • Ongoing training in new technologies and continuous professional development support

Similar remote jobs

More like this →
Turing Video logo

Turing Video

Investigations Analyst

Remote
$75k–$75k
✓ From careers page· about 2 hours ago
Turing Video logo

Turing Video

Investigations Analyst

Remote
$75k–$75k
✓ From careers page· about 2 hours ago
KeyBank logo

KeyBank

API Security Engineer

Remote
Brooklyn, OH$116k–$216k
✓ From careers page· about 2 hours ago
KeyBank logo

KeyBank

Data Security Administrator

Remote
Brooklyn, OH$80k–$150k
✓ From careers page· about 2 hours ago

Discover More than 100,000 Hidden Remote Jobs Before Everyone Else

Unlock All Remote Jobs Today

Simple pricing. Big savings on Quarterly and Yearly.

Monthly Access

$19/month
  • Instant access to fresh remote jobs from 500+ companies
  • New opportunities added hourly, often 3-7 days before anywhere else
  • Advanced filtering by role type, stack, pay, and location
  • Priority customer support
Start 7-day trial — $2.95
Most Popular

Yearly Access

$59/year
  • Everything in Monthly
  • Save $169 (~74%) vs paying monthly
  • Average job search takes ~6 months - get covered for the whole journey
  • Less than the cost of one lunch per month for competitive advantage
  • Equivalent to just ~$4.92/month
Start 7-day trial — $2.95