Senior Incident Responder in the Security Operations Center (SOC) | Systemadministrator (m/w/d)

Deutsche Rentenversicherung Bund (DRV Bund)

Berlin, Berlin, Deutschland
Published Dec 15, 2025
Full-time
No information

Job Summary

This critical role involves acting as a Senior Incident Responder within the Security Operations Center (SOC) for Germany's largest pension insurance provider, contributing to the security of a complex and vital IT infrastructure. The successful candidate will lead, coordinate, and execute end-to-end Incident Response (IR) processes, from initial analysis and containment to remediation of security incidents, collaborating closely with internal and external teams (e.g., CERTs, IT Operations, IT Forensics). Key responsibilities include securing data for forensic handovers, optimizing SIEM and EDR use-cases for enhanced threat detection, and developing standardized Playbooks and IR plans. Candidates must possess a university degree in IT or equivalent qualification, coupled with extensive experience in Incident Response, Digital Forensics, or Threat Hunting, and strong knowledge of network technologies, operating systems (Windows/Linux), and scripting for automation.

Required Skills

Education

Completed university degree (Bachelor, Diplom/FH) in IT or an equivalent qualification (e.g., IT-specific qualification or completed vocational training in IT with relevant professional experience)

Experience

  • Several years of experience in at least one of the following areas: Incident Response, Digital Forensics, Threat Intelligence, or Threat Hunting
  • Professional experience with SIEM, EDR, and forensics tools
  • Experience in Reverse Engineering, Malware Analysis, or Threat Hunting is advantageous
  • Understanding of APT tactics, Red Teaming, or Penetration Testing is desirable

Languages

German (Fluent)English (Basic)

Additional

  • Certifications such as GCFA, GCIH, OSCP, CISSP, or similar are advantageous