Senior Cybersecurity Expert (Threat Intelligence) m/f
⚲ Warszawa
Do uzgodnienia
Wymagania
- Git
- Docker
- API
- Cybersecurity
- Python
- technical cybersecurity
Opis stanowiska
Company Description
At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!
Job Description
• Identify, analyze, and track threat actor TTPs and IOCs using threat prioritization frameworks and threat landscape monitoring.
• Investigate complex threat data to provide situational awareness, quantify trends, support ongoing investigations, and strengthen detection and response capabilities.
• Conduct in-depth technical analysis (searching, pivoting, enrichment) to support Threat Hunting and identify potential intrusions in Bosch networks and systems.
• Collaborate closely with cross-functional teams including Incident Response and Detection Engineering to integrate intelligence into detection and response workflows.
• Produce and deliver high-quality intelligence reports, briefings, and presentations tailored to technical, business, and executive audiences.
• Respond to Requests for Information (RFIs) and brief stakeholders on emerging campaigns and significant incidents.
• Develop and improve internal tools for threat analysis and monitoring (using Python, REST APIs, Git, Docker).
Qualifications
• Bachelor's degree in Computer Science, Cybersecurity, or a related field.
• Several years of experience in a technical cybersecurity role (e.g., CTI, SOC, Threat Hunting, Incident Response, DFIR).
• Proven expertise in tracking and analyzing adversarial behavior, with strong knowledge of the cyber kill chain and MITRE ATT&CK framework.
• Ability to work methodically and independently while being an effective and reliable team player in a distributed team.
• Excellent communication skills with the ability to translate complex technical findings for diverse stakeholders.
• Strong scripting and tool development experience (Python, APIs, Git, Docker).
• Fluent in English; German is a plus.
Additional Information
Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.
Work LikeABosch:
• Employment Contract
• Competitive salary + annual bonus
• Hybrid work with flexible working hours
• Referral Bonus Program
• Copyright costs for IT employees
Grow LikeABosch:
• Complex environment of working, professional support and possibility to share knowledge and best practices
• Ongoing development opportunities in a multinational environment
• Broad access to professional trainings (incl. language courses), conferences and webinars
Live LikeABosch:
• Private medical care and life insurance
• Cafeteria System with multiple benefits (incl. MultiSport, shopping vouchers, cinema tickets, etc.)
• Prepaid Lunch Card
• Number of benefits for families (for instance summer camps for kids)
• Non-working day on the 31st of December
At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!
Job Description
• Identify, analyze, and track threat actor TTPs and IOCs using threat prioritization frameworks and threat landscape monitoring.
• Investigate complex threat data to provide situational awareness, quantify trends, support ongoing investigations, and strengthen detection and response capabilities.
• Conduct in-depth technical analysis (searching, pivoting, enrichment) to support Threat Hunting and identify potential intrusions in Bosch networks and systems.
• Collaborate closely with cross-functional teams including Incident Response and Detection Engineering to integrate intelligence into detection and response workflows.
• Produce and deliver high-quality intelligence reports, briefings, and presentations tailored to technical, business, and executive audiences.
• Respond to Requests for Information (RFIs) and brief stakeholders on emerging campaigns and significant incidents.
• Develop and improve internal tools for threat analysis and monitoring (using Python, REST APIs, Git, Docker).
Qualifications
• Bachelor's degree in Computer Science, Cybersecurity, or a related field.
• Several years of experience in a technical cybersecurity role (e.g., CTI, SOC, Threat Hunting, Incident Response, DFIR).
• Proven expertise in tracking and analyzing adversarial behavior, with strong knowledge of the cyber kill chain and MITRE ATT&CK framework.
• Ability to work methodically and independently while being an effective and reliable team player in a distributed team.
• Excellent communication skills with the ability to translate complex technical findings for diverse stakeholders.
• Strong scripting and tool development experience (Python, APIs, Git, Docker).
• Fluent in English; German is a plus.
Additional Information
Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.
Work LikeABosch:
• Employment Contract
• Competitive salary + annual bonus
• Hybrid work with flexible working hours
• Referral Bonus Program
• Copyright costs for IT employees
Grow LikeABosch:
• Complex environment of working, professional support and possibility to share knowledge and best practices
• Ongoing development opportunities in a multinational environment
• Broad access to professional trainings (incl. language courses), conferences and webinars
Live LikeABosch:
• Private medical care and life insurance
• Cafeteria System with multiple benefits (incl. MultiSport, shopping vouchers, cinema tickets, etc.)
• Prepaid Lunch Card
• Number of benefits for families (for instance summer camps for kids)
• Non-working day on the 31st of December
🔍 Dekoder Ogłoszenia
🟡
we provide equal growth opportunities for all team members
Chociaż obiecuje równe szanse rozwoju, rzeczywiste możliwości mogą zależeć od istniejących struktur i dostępnych projektów.
🟡
all roles are represented in all countries
Może sugerować globalną obecność i różnorodność, ale także potencjalne wyzwania związane z komunikacją i koordynacją między różnymi strefami czasowymi i kulturami.
🔴
Develop and improve internal tools for threat analysis and monitoring (using Python, REST APIs, Git, Docker)
Oznacza, że oprócz analizy zagrożeń, będziesz musiał poświęcić znaczną część czasu na tworzenie i utrzymywanie narzędzi, co może być bardziej pracą deweloperską niż czystą analizą.
🔴
Several years of experience
Jest to bardzo ogólne określenie, które może oznaczać od 3 do nawet 10+ lat doświadczenia, co wymaga doprecyzowania.