SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Scalable Capital, a leading European fintech platform with over €50 billion in assets under management and 700+ employees, is expanding its Security Operations Center (SOC) team. This Senior Security Incident Response Analyst role is designed for a technical expert who thrives on complex incident response, threat intelligence, and proactive threat hunting.
You will drive the end-to-end lifecycle of security incidents from initial detection through advanced containment and recovery. Key responsibilities include leading incident response investigations, analyzing emerging threat trends and integrating external threat intelligence feeds into detection logic, performing deep-dive host and network forensics to identify root causes and persistence mechanisms, and designing and refining automated SOAR playbooks to increase response speed and consistency.
You will execute hypothesis-driven threat hunts across the environment, act as an escalation point for complex alerts, and mentor junior analysts on advanced investigative techniques. You will also generate detailed incident reports and present findings to both technical teams and executive stakeholders, ensuring clarity on impact and resolution.
The company offers a collaborative, international environment with the latest hardware and tools, flexible work arrangements with opportunity to work from abroad, in-house knowledge sharing and career development sessions with an individual education budget, free German language classes, and international relocation support if required. Additional benefits include an attractive compensation package, company pension scheme, 50% monthly contribution toward Deutschland Jobticket, complimentary Scalable Capital PRIME+ Broker subscription, and discounted sports activities through Urban Sports Club.
Requirements:
- Extensive hands-on SOC or incident response experience, including Tier 2/Tier 3 responsibilities
- Proficiency with SIEM/SOAR platforms, EDR tools, and forensic toolsets
- Hands-on experience with AWS security controls and container security
- Strong understanding of network protocols, endpoint security, and common attack vectors
- Ability to use Python or similar scripting languages for security automation and data analysis
- Relevant certifications such as GCIH, GCFA, CISSP, or equivalent (preferred)
- Excellent analytical mindset, attention to detail, and ability to thrive under pressure
- Strong communication skills capable of translating technical findings to non-technical audiences