Skip to sign up

Job matched to your search

Senior Incident Responder

SoTalent · Amsterdam

Amsterdam · HybridFull-TimePosted Aug 25, 2026

Free · Join 5,000+ job seekers using Qarera

How well do you match this role?

Tap the skills you already have — then see your real match score, what’s missing, and your resume fixed for this job.

↑ tap the skills you have
Loading sign-in…
Free · no credit card · 30 seconds

Job description

Senior Incident Responder

📍 Location: Amsterdam, Netherlands

🏢 Industry: Banking

💼 Work Setting: Hybrid

Are you passionate about defending organizations against cyber threats, leading critical incident response efforts, and strengthening security resilience in complex enterprise environments?

We are seeking an experienced Senior Incident Responder to lead the investigation, containment, and remediation of significant cybersecurity incidents while helping shape and enhance enterprise incident response capabilities. This role is responsible for coordinating cross-functional stakeholders, driving incident response excellence, mentoring security professionals, and continuously improving security operations to protect critical business services and assets.

The ideal candidate combines deep technical expertise in incident response, security operations, threat detection, digital forensics, and cyber defense with strong leadership, communication, and stakeholder management skills.

Key Responsibilities

  • Lead the response to major and high-severity cybersecurity incidents, ensuring timely containment, mitigation, recovery, and communication.
  • Serve as a senior escalation point for complex security events and provide risk-based recommendations during incident investigations.
  • Coordinate and oversee day-to-day incident response activities, ensuring efficient handling of security threats and operational priorities.
  • Develop, review, and continuously improve incident response plans, playbooks, procedures, and capabilities.
  • Conduct technical and tabletop exercises to validate response readiness and improve organizational resilience.
  • Investigate security incidents across endpoints, networks, cloud environments, and enterprise applications.
  • Utilize advanced security tools and technologies to support threat detection, investigation, and response activities.
  • Leverage automation, orchestration, and modern AI-assisted security capabilities to enhance response effectiveness and operational efficiency.
  • Define and gather functional and technical requirements to improve incident response services and tooling.
  • Mentor and support junior and mid-level incident responders through coaching, knowledge sharing, and technical guidance.
  • Contribute to the strategic vision and roadmap for security operations, threat detection, and incident response programs.
  • Collaborate with internal security teams, business stakeholders, industry peers, and trusted cybersecurity communities to strengthen threat awareness and response capabilities.
  • Maintain strong partnerships across technology, infrastructure, cloud, compliance, and risk management teams.
  • Prepare executive-level reporting, incident summaries, metrics, and operational updates for leadership.
  • Support audit, compliance, and governance activities related to cybersecurity operations and incident management.

Required Qualifications

Education

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Security, or a related field.
  • Equivalent combination of education, certifications, and professional experience may be considered.

Experience

  • 8 to 10 years of experience in Incident Response, Security Operations, Cyber Defense, Threat Detection, or related cybersecurity functions.
  • Proven experience leading complex cybersecurity investigations and significant incident response engagements.
  • Experience working within large, complex, enterprise, or highly regulated environments.
  • Demonstrated expertise in security operations processes, crisis management, and cyber incident lifecycle management.

Technical Skills

  • Subject matter expertise in incident response methodologies, frameworks, and best practices.
  • Strong knowledge of endpoint, network, cloud, and application security technologies.
  • Experience with:
  • Endpoint Detection and Response (EDR) platforms
  • Security Orchestration, Automation, and Response (SOAR) solutions
  • SIEM platforms and log analytics tools
  • Threat intelligence and threat-hunting methodologies
  • Strong understanding of networking concepts, protocols, and enterprise architectures.
  • Experience investigating security events across Windows, Linux, macOS, cloud, and hybrid environments.
  • Knowledge of digital forensics, malware analysis concepts, and evidence preservation practices.
  • Familiarity with AI-assisted security operations, automation technologies, and advanced investigation techniques.
  • Strong understanding of cloud security and cloud-based incident response capabilities.

Leadership & Professional Skills

  • Excellent leadership and decision-making abilities during high-pressure situations.
  • Strong stakeholder management and cross-functional collaboration skills.
  • Ability to communicate complex technical findings to both technical and non-technical audiences.
  • Proven mentoring, coaching, and team development experience.
  • Strong analytical, investigative, and problem-solving skills.
  • Ability to simplify complex security challenges and drive operational improvements.
  • Excellent written, verbal, and presentation skills.

Preferred Qualifications

  • Experience working within financial services, banking, or other highly regulated industries.
  • Relevant cybersecurity certifications such as:
  • GCFA (GIAC Certified Forensic Analyst)
  • GCIH (GIAC Certified Incident Handler)
  • CISSP (Certified Information Systems Security Professional)
  • GCFE, GNFA, or equivalent incident response certifications
  • Experience collaborating with external security organizations, industry groups, government agencies, or threat-sharing communities.
  • Advanced experience with cloud-native security monitoring and incident response platforms.

Don’t just read the job — see if you’ll get it.

Get your match score, a resume tailored to this exact role, and jobs like it — free.

Check my fit for this job
Loading sign-in…
Apply →

Hiring for a role like this? Join the employer waitlist.