.
Senior Engineer, Incident Response
  • Kraków
Senior Engineer, Incident Response
Kraków, Kraków, Lesser Poland Voivodeship, Polska
Danaher Corporation
19. 9. 2025
Informacje o stanowisku

technologies-expected :


  • TCP/IP
  • DHCP
  • DNS

about-project :


  • The Senior Engineer, Incident Response is responsible for helping protect Danaher’s assets and data through cybersecurity event investigation and response. This role is part of a high performing team delivering essential cybersecurity services to our operating companies.
  • This position is part of the Danaher Corporate Information Security team, reporting to the Senior Manager, Security Operations. This is a Danaher Corporate role, hosted by our Cytiva operating company in Krakow.

responsibilities :


  • Leads cybersecurity incident response and investigations for moderate to high complexity events.
  • Analyze large and complex technical data sets to identify abnormal user, network, and system activity warranting further investigation using SIEM, EDR, and SOAR tools.
  • Proactively identify security and process gaps and work with colleagues to increasingly gain visibility and implement remediations.
  • Correlate disparate data sources to provide a holistic picture of our threat detection capability, and lead continuous improvement initiatives related to MITRE ATT&CK coverage.
  • Serve as a leader and provides guidance in assisting IT and security personnel in the collection and review of artifacts pertaining to the investigation, including briefing key leaders on technical findings and business impact.
  • Identify Use Cases for implementation in EDR/SIEM to improve detection coverage.

requirements-expected :


  • A minimum of 7 years of experience in information technology, with a significant portion devoted to security operations, security engineering, or incident response.
  • Strong understanding of technology concepts such as TCP/IP, DHCP, DNS, authentication, authorization, Microsoft Active Directory and Windows OS architecture, and network traffic control.
  • Maintain strong information security knowledge of threat actor tactics, techniques, and procedures to identify potential risks and develop achievable and effective mitigation strategies.
  • Ability to review and determine the functionality of advanced malicious scripts written in python or other common scripting language.
  • Track record for working as an individual contributor and as a member of a matrixed team, with the ability to coach, review, or delegate work to lower-level professionals and lead through influence.

benefits :


  • sharing the costs of sports activities
  • private medical care
  • sharing the costs of professional training & courses
  • life insurance
  • integration events
  • parking space for employees
  • extra social benefits
  • employee referral program

  • Praca Kraków
  • Kraków - Oferty pracy w okolicznych lokalizacjach


    115 810
    19 068