Logo for SOFTSWISS

Incident Response Analyst

Role overview

Qualifications

  • Basic indicator of compromise (IoC) analysis skills using publicly available tools
  • Experience working with Splunk/Clickhouse/SQL at the level of writing simple search queries
  • Strong communication and teamwork skills
  • Analytical and flexible mindset

Responsibilities

  • Participation in security incident response
  • Performing basic primary incident response measures/triage
  • Execution and monitoring of tasks assigned based on planning results
  • Development and updating of playbooks for alert verification

Key facts

Hard skills

Other skills

  • Microsoft Windows
  • Communication
  • Teamwork
  • Analytical Thinking
  • Proactivity

About the company

SOFTSWISS logo

SOFTSWISS

Sports Betting & iGaming

SOFTSWISS is an international company and a widely-acclaimed iGaming expert. We were the very first online gambling software company to start working with cryptocurrencies. SOFTSWISS appeared in July 2009 in Minsk, Belarus. Today SOFTSWISS is a recognised industry leader in iGaming software solutions development. The company has an international team, which counts 1,400+ employees and has an official presence in Poland, Malta, Georgia, and Belarus. To date, the SOFTSWISS client network counts more than 500 iGaming brands. Projects powered by SOFTSWISS receive numerous awards and accolades from industry media. SOFTSWISS steadily enhances the products portfolio with continuous innovations and increases the quality of its services, providing customers with first-class industry solutions. Our values: - High-end solutions based on reliability, security and honesty - Expertise of a professional team with over 10 years of iGaming background - Innovative approach to product development and business processes Our Products: - Sportsbook Platform - Online Casino Platform - Game Aggregator - Jackpot Aggregator - Affilka (Affiliate Platform) - Managed Services Our Services: - First Line Player Support - Player Retention - Player Reactivation - VIP Player Support - Anti-fraud support Our solutions: - Crypto Casino Solution - White Label Casino Solution - Turnkey Casino Solution White Label solutions: - Operating under the SOFTSWISS gambling licences - Ready-to-use payment processing options - SOFTSWISS merchant accounts Why Us? - Over 10 years helping our clients to succeed in the industry - Focus on software security and stability - Top client service based on the client needs - Best industry professionals - Agile methodology at all levels - Cutting-edge innovations - Wide geographical presence Website: www.softswiss.com Email: order@softswiss.com SOFTSWISS. Winning Combination

Company details

Company typeLarge
IndustrySports Betting & iGaming
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Overview:

SOFTSWISS is looking for an Incident Response Analyst to join our on-call incident response team. In this role, you will respond to and investigate security incidents across the company, coordinate incident response with relevant teams, and help ensure timely and effective resolution of incidents.

Key responsibilities:

  • Participation in security incident response

  • Performing basic primary incident response measures/triage

  • Execution (and monitoring of execution) of tasks assigned based on planning results

  • Development and updating of playbooks for alert verification

  • Monitoring alerts in compliance with SLA

  • Submitting proposals for optimizing tools and processes used

  • The position operates on a 2-on-2-off shift pattern, encompassing a 12-hour day shift, a 12-hour night shift the next day, and 2 free days after that

Required Experience:

  • Basic indicator of compromise (IoC) analysis skills using publicly available tools (VirusTotal, AnyRun, etc.)

  • Experience working with Splunk/Clickhouse/SQL at the level of writing simple search queries and interpreting results

  • Experience working with SOAR/IRP

  • General understanding of current cyber threats and main attack methods

  • Basic programming skills in Python, PowerShell, or Bash for automating routine tasks

  • Knowledge of operating systems (Linux/Windows) at a junior system administrator level

  • Understanding of the MITRE ATT&CK framework and Cyber Kill Chain

  • Ability to analyze and process large volumes of data, including logs and triage

  • Strong communication and teamwork skills: able to clearly articulate thoughts, ask relevant questions, and effectively collaborate with colleagues across different teams, especially during incident response

  • Analytical and flexible mindset: able to approach issues from different perspectives, build logical chains, make informed decisions, and independently suggest solutions

  • Proactivity and ownership: takes responsibility for decisions and results, double-checks own work, learns from mistakes and feedback, and actively develops professional skills

Nice to have:

  • Knowledge of information security best practices (NIST, ISO) and ability to cite them when necessary

  • Basic knowledge of Docker and Kubernetes, understanding their monitoring features

  • Experience writing correlation rules in SIEM

  • Experience with NTA (Network Traffic Analysis) tools

  • Experience working with online reputation services (VT, AnyRun, IPAbuseDB, etc.)

  • Experience developing instructions for alert verification and/or writing information security incident response scenarios

  • Experience with Kafka, ELK, Graylog, etc

  • Strong Linux system administration experience

  • Expertise in network, host, and cloud-based analysis and investigation

  • A strong understanding of attack pipelines (MITRE ATT&CK Framework, Cyber Kill-Chain)

  • Familiarity with CI/CD, software development lifecycle, and Infrastructure-as-Code (Terraform/Ansible/etc)

  • Proficiency in automation (Bash/PowerShell, Python)

  • Experience with log collection, delivery, and normalization

  • Strong knowledge of open-source solutions for endpoint & infrastructure security, such as Audit.d, Sysmon, AppArmor, SELinux, etc

  • Fundamental static and dynamic malware analysis skills

  • Offensive experience (penetration testing, red teaming)

Our Benefits:

  • Private health insurance

  • Sports benefits

  • Comprehensive Mental Health Program

  • Free English lessons (online)

  • Local language courses

  • Paid time off

  • Maternity leave support

  • Referral program rewards

  • Upskilling, internal workshops, and participation in professional conferences and corporate events

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Incident Response Analyst Related jobs

Other jobs at SOFTSWISS

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.