Cybersecurity Incident Response & Digital Forensics Manager
Indexed description
Cybersecurity Incident Response & Digital Forensics Manager | Hamburg
Join a global incident response team as the European anchor, within a mature, well-resourced security function. The team is in a genuine build phase, with multiple positions open globally - real scope to help shape how it grows. L1 and L2 triage sits with an external MSP, so this role starts where that work ends: leading full investigations through to root cause and closure.
The role:
→ Lead full investigations from initial triage handoff through to root cause and closure.
→ Build timelines, connect indicators, and drive analysis beyond what the tooling surfaces.
→ Cover global incidents independently when regional colleagues are offline.
→ Provide technical direction to the external MSP during live incidents.
→ Write incident reports that land equally well with engineers and senior stakeholders.
→ Help shape IR playbooks, process, and detection capability as the team grows.
What you'll need:
→ A genuine IR or DFIR background, not a SOC analyst profile.
→ Hands-on experience investigating BEC, network intrusion, and ransomware incidents.
→ Proficiency with Microsoft Defender EDR.
→ Confidence working independently and making sound calls under pressure.
→ Strong communication skills, able to brief both engineers and senior stakeholders.
How to apply:
Interested? Get in touch with the MAM Gruppe team for a confidential conversation about this role.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search