Arbeitguru
VERIFIED ENGLISH WORKPLACE

Cyber Security Specialist

Haystack • North Rhine-Westphalia, Germany
100% English First Est. €72,000 - €95,000 / year
Apply Directly to Employer → Calculate Net Pay After Tax

Job Specifications & Overview

  • Employer: Haystack
  • Location: North Rhine-Westphalia, Germany
  • Employment: Fulltime
  • Work Model: Remote / Hybrid Option Available

We're hiring on behalf of a Haystack partner!

The Role

  • Support national and international clients in professionally managing IT security and compliance incidents, ensuring independence, structure, and effectiveness.
  • Lead the handling of security incidents (DFIR\-Cases) in critical situations, from independent analysis and reconstruction of complex attacks along the kill chain to deriving robust containment and hardening measures.
  • Develop and evaluate detection and response concepts (SIEM, EDR/XDR, SOAR), conduct security, compromise, and incident readiness assessments, and systematically close security gaps in processes and technologies.
  • Perform penetration tests and adversary operations (Red/Purple Teaming, Threat Emulation according to MITRE ATT\&CK) to simulate real attacker tactics and measurably improve detection and response capabilities.
  • Act as a technical consultant and project lead, collaborating closely with client SOC, IT, and management teams, contributing expertise to the further development of services, concepts, and legally admissible expert reports, and presenting results appropriately for the audience, from technical deep dives to executive summaries.
  • What You'll Need

  • Completed university degree in a STEM field with a focus on IT security/digital forensics or a comparable discipline with several years of relevant practical experience.
  • Profound knowledge of network technologies and operating systems, along with several years of practical experience in Digital Forensics \& Incident Response (DFIR) and adjacent security disciplines (e.g., Threat Hunting, SIEM, SOC/CSIRT, EDR/XDR, Red/Purple Teaming), and a good understanding of attack and defense models like MITRE ATT\&CK or Kill Chain.
  • Demonstrable technical qualification in the DFIR field, e.g., as a certified incident expert, supplemented by recognized certifications such as GCFE, GNFA, GCIH, or comparable qualifications.
  • Independent, structured, and responsible working style with a high degree of team and customer orientation, enjoyment of collaboration and knowledge transfer, and a confident demeanor, even in time\-critical operational situations.
  • Strong analytical thinking skills and the ability to process complex technical issues and communicate them appropriately across different hierarchical levels.
  • Very good English language skills, both written and spoken, and willingness to undertake national and international business travel for client projects and DFIR deployments.
  • What's On Offer

  • Competitive salary
  • Flexible working hours and the possibility of remote work.
  • Attractive and high\-quality work equipment.
  • Opportunities for professional development through individual and specialized training, and access to virtual learning platforms.
  • Apply via Haystack today!