Tietoevry

SOC Incident Responder - Tietoevry Tech Services (m/f/d)

Join Tietoevry as a SOC Incident Responder in Ostrava. Leverage ServiceNow skills to analyze and mitigate cybersecurity incidents. Benefits include remote work and extra holidays.

Department - JobBoardly X Webflow Template
Consulting
Job Level - JobBoardly X Webflow Template
Entry Level
ServiceNow Role Type:
ServiceNow Modules:
Department - JobBoardly X Webflow Template
IT Service Management
Department - JobBoardly X Webflow Template
Incident Management
Department - JobBoardly X Webflow Template
Security Operations
ServiceNow Certifications (nice to have):

Job description

Date - JobBoardly X Webflow Template
Posted on:
 
July 21, 2025

Join Tietoevry Tech Services Cyber Defence and Operations CZ and grow your career with security talents. As a SOC Incident Responder, you'll be responsible for identifying, analyzing, and mitigating cybersecurity incidents.

Requirements

  • 2–5 years of hands-on experience in cybersecurity, particularly in SOC, CSIRT, or CERT environments, with a strong focus on incident response and threat handling.
  • Proven ability to analyze and correlate diverse telemetry sources (e.g., SIEM, EDR, NDR, logs) to identify and understand complex attack patterns.
  • Deep understanding of the threat landscape, security kill chain, and attacker techniques, tactics, and procedures (TTPs), ideally aligned with MITRE ATT&CK.
  • Strong knowledge of operating systems (Windows, Linux/*NIX), networking concepts (TCP/IP, DNS, HTTP/S, etc.), and enterprise IT environments.
  • Demonstrated experience in threat detection across endpoints, networks, and/or cloud platforms, including investigation and containment actions.
  • Familiarity with malware analysis (static or dynamic), file system analysis, and forensic investigation tools/processes is a strong plus.
  • Experience with scripting (e.g., Python, PowerShell, Bash) for automation, enrichment, or tooling is considered an advantage.
  • Comfortable working with structured incident response procedures, playbooks, and continuous process improvement initiatives.
  • Ability to document and explain technical incidents clearly to both technical and non-technical stakeholders.
  • Holding or working towards relevant certifications such as OSCP, GCED, GCIA, GCIH, CySA+, eCDFP, BTL1/2 is highly valued.
  • Familiarity with the Atlassian suite (Jira, Confluence), ServiceNow, or equivalent ticketing/documentation systems.
  • Fluency in English (spoken and written) is required; additional Nordic or Central European language skills are a plus.
  • Self-driven, detail-oriented, and comfortable in both operational and developmental aspects of SOC Incident Response.

Benefits

  • Contract is for an indefinite period of time
  • work partially or completely remote
  • extra holidays
  • we contribute from 10 400 CZK per year
  • educate yourself
  • 107 CZK meal allowance on top of your salary
  • reward for a new colleague
  • we'll support you when you're sick
  • extra work is appreciated
  • stay fit and fresh

Requirements Summary

2-5 years of cybersecurity experience, strong analytical skills, and knowledge of operating systems, networking concepts, and threat detection