Cyber Defence & Incident Response Engineer (They/She/He)

Delivery Hero
Barcelona
Workplace: OnsiteFull timeFunction: CybersecuritySkills: ["Communication","Proactivity","Curiosity","Documentation","Collaboration"]

Build Glovo’s CSIRT capabilities by responding to incidents and performing digital forensics investigations across the cyber incident response cycle. Design and maintain investigation playbooks, create high-fidelity detections, and fine-tune alerts to reduce noise. Automate and orchestrate incident response to move toward a “SOCless” future, while proactively hunting threats using frameworks like MITRE ATT&CK and maintaining visibility via security log ingestion and SIEM.

This position is no longer accepting applications.

  • See live roles at Delivery Hero
  • Search all live jobs
  • Browse companies, collections, and locations hiring now
Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa

This position is no longer accepting applications.

See live roles at Delivery HeroSearch all live jobsBrowse companies, collections, and locations hiring now

Delivery Hero
Delivery Hero
2 days ago

Cyber Defence & Incident Response Engineer (They/She/He)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 19 hours agoStatus: Closed

Job Summary

Build Glovo’s CSIRT capabilities by responding to incidents and performing digital forensics investigations across the cyber incident response cycle. Design and maintain investigation playbooks, create high-fidelity detections, and fine-tune alerts to reduce noise. Automate and orchestrate incident response to move toward a “SOCless” future, while proactively hunting threats using frameworks like MITRE ATT&CK and maintaining visibility via security log ingestion and SIEM.
Location: Barcelona
Workplace: Onsite
Employment Type: Full time · Permanent
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Support digital forensics and incident response, conducting deep-dive investigations into breaches and anomalies.
  • •Design and maintain playbooks and investigation methodologies for security incidents.
  • •Create, validate, and fine-tune alerts to ensure high-fidelity, low-noise detection.
  • •Build tooling and automation for incident response to reduce manual effort (“SOCless”).
  • •Research emerging threats and conduct threat-hunting exercises; maintain visibility via security log ingestion and SIEM.

Pay and Benefits

Perks:Health InsuranceGym MembershipRemote WorkMeal AllowanceTravel AllowanceParental LeaveChildcare

Key Requirements

  • •Experience in incident response and digital forensics.
  • •Operational proficiency with AWS and understanding of cloud-native security logs.
  • •Coding experience with Python (or Golang) to automate responses and build security tooling.
  • •Ability to monitor threats and fine-tune detections/alerts for high signal-to-noise.
  • •Curiosity for threat hunting and familiarity with the MITRE ATT&CK framework.
Skills:CommunicationProactivityCuriosityDocumentationCollaboration
Certifications:GCIHGCFAGNFAAWS Certified Security - Specialty
Languages:English
Tech Stack:AWSPythonGolangMITRE ATT&CKSOARSIEMDigital forensicsDigital forensics (DFIR)

Company Brief

Delivery Hero
Global online food-ordering and local delivery platform operating multiple regional brands (e.g., Foodpanda, Glovo, Talabat) across 50–70+ countries, supplying food and quick-commerce deliveries via marketplace and logistics services.
Industry: Online Marketplaces
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Berlin, Germany
Founded: 2011
Glassdoor
Glassdoor: 3.4
WebsiteLinkedInGlassdoor