.
CSIRT Security Engineer (m/k/n)
  • Warsaw
CSIRT Security Engineer (m/k/n)
Warszawa, Warsaw, Masovian Voivodeship, Polska
UPVANTA SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ
27. 3. 2026
Informacje o stanowisku

technologies-expected :


  • ServiceNow
  • Tanium
  • Trellix
  • Elastic Search
  • Netcraft
  • Virustotal
  • Symantec DLP
  • Ghidra

about-project :


  • 1100 - 1380 PLN netto/MD
  • 1/2 days a week in office: Warsaw
  • Engagement & Methodology
  • Engagement type: Time & Material (T&M).
  • Delivery methodology: Agile with bi-weekly sprints.
  • Governance: Quarterly planning, daily meetings, sprint planning, demos, and retrospectives.

responsibilities :


  • Incident Handling & Response: Manage and respond to cybersecurity incidents.
  • Investigations & Forensics: Conduct investigations, including digital forensics.
  • Data Leak Protection: Implement and monitor data leak protection measures.
  • Phishing Identification: Detect and respond to phishing attempts.
  • Threat Hunting: Conduct threat hunting campaigns to proactively identify risks.
  • Cyber Threat Intelligence: Produce and analyse cyber threat intelligence.
  • Vulnerability Management: Identify, assess, and manage vulnerabilities.

requirements-expected :


  • Core Competencies & Education
  • Preferably MSc in Information Security.
  • Fluent in English (written & verbal); French is a plus.
  • Autonomy and ability to deliver within set timeframes.
  • Strong organisational and analytical skills.
  • Good interpersonal and communication skills; effective team player.
  • Ability to function effectively in a matrix structure.
  • Certifications such as GREM, Blue Team Level 1 (BTL1), Blue Team Level 2 (BTL2), Certified Red Team Expert (CRTE), or Certified Red Team Professional (CRTP) are a plus.
  • Experience & Technical Skills
  • Proven record as an incident handler or cyber threat intelligence (CTI) analyst.
  • Proven experience in digital forensics.
  • Experience using ServiceNow.
  • Experience with EDR (e.g., Tanium), Antivirus (e.g., Trellix), SIEM (e.g., Elastic Search), and security tools (Netcraft, Virustotal, Symantec DLP, Ghidra).
  • Detailed technical knowledge of attacker tactics, techniques, and procedures.
  • Interest in all aspects of security research and development.

  • Praca Warszawa
  • Chief security officer Warszawa
  • Warszawa - Oferty pracy w okolicznych lokalizacjach


    113 343
    16 992