Cyber Security Incident Response Associate Engineer (Remote)

Wroclaw

Relativity

Organizations around the globe use Relativity's secure, end-to-end legal software for their biggest data challenges.

View company page

Are you looking to be in a workplace where colleagues inspire one another? Are you interested in competitive and impactful benefits? Do you prefer flexible work arrangements? 
We are Relativity. A market-leading, global tech company that equips legal and compliance professionals with a powerful platform to organize data, discover the truth, and act on it.  The US Department of Justice, 199 of the Am Law 200, and more than 329,000 enabled users trust Relativity during litigation, internal investigations, and compliance projects.  Our SaaS product, RelativityOne, has become the fastest-growing product in the company's history and we have consistently been named a great workplace. As we grow, we continue to seek individuals that will bring their whole, authentic self to our team.
As an Incident Response Engineer, you will ensure the security of Relativity’s Corporate IT, Cloud environment, and Relativity One Infrastructure. In this role, the main responsibilities will be to investigate and analyze security events (attacks, alerts, event logs, etc.), as well as provide subject matter expertise on emerging threats against our assets, identities, and clients.  You will provide actionable remediation guidance to end users and collaborate with highly skilled cyber experts to anticipate and mitigate evolving threats using world-class toolsets and next generation capabilities. 
This position reports to the Manager, Cyber Security.

Your Role in Action:

  • Review events and alerts to assess their urgency and escalate if necessary
  • Administration and operational support of all security monitoring and management systems
  • Clearly document and communicate investigation findings to both technical and management audiences
  • Provide technical support and troubleshooting for existing or new security tools and solutions
  • Assist in documenting Standard Operating Procedures, SOC playbooks, configuration guides, and secure standards
  • Perform threat hunting utilizing security tools and intelligence information to identify and remediate potential security threats
  • Perform appropriate escalations in accordance with protocols for events, notifications, and non-responsiveness from stakeholders
  • Recommend detection and prevention signatures with response actions as part of a layered defensive strategy leveraging multiple technologies and data types.
  • Support signature tuning requests to improve alert fidelity and reduce false positives
  • Provide support on department initiatives and projects
  • Critical thinking and analytical skills

Your Skills:

  • Excellent analytical and problem-solving skills
  • Willingness to learn new concepts and technologies
  • Proven writing and communication skills 
  • Ability to act independently and execute with limited information
  • Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management.
  • Outstanding work ethic with a proactive mindset and passion for Cyber Security
  • On-Call incident analysis for critical incidents

Preferred Skills:

  • Detail-oriented with the ability to promptly assess logs for accuracy as well as consistency
  • Strong interpersonal skills with the ability to influence others in a positive and effective manner
  • Ability to work in a team environment
  • Excellent communication skills; both oral and written
  • Demonstrated ability to contribute to a continuous learning and process improvement environment
  • Strong scripting abilities (PowerShell, python, etc.)
  • Certifications: One of more of the following certifications are preferred (GCFA, GCIA, GCIA, GCIH, GCFA, GNFA, GREM, OSCP, or CEH)
  • Bachelor’s Degree in Cyber Security or related professional experience




  • #LI-Remote
Relativity is a diverse workplace with different skills and life experiences—and we love and celebrate those differences. We believe that employees are happiest when they're empowered to be their full, authentic selves, regardless how you identify.
Benefit Highlights:Comprehensive health, dental, and vision plansParental leave for primary and secondary caregivers Flexible work arrangementsTwo, week-long company breaks per yearUnlimited time offLong-term incentive programTraining investment program
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

Tags: CEH Cloud Compliance GCFA GCIA GCIH GNFA GREM Incident response Monitoring OSCP PowerShell Python Risk management SaaS Scripting SOC Strategy

Perks/benefits: Career development Health care Team events

Regions: Remote/Anywhere Europe
Country: Poland
Job stats:  21  4  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.