Job Description

DB Global Technology is Deutsche Bank’s technology centre in Central and Eastern Europe. Since its set-up in 2013, Bucharest Technology Centre (BEX) has constantly proven its capacity to deliver global technology products and services, playing a dynamic role in the Bank’s technology transformation.

We have a robust, hands-on engineering culture dedicated to continuous learning, knowledge-sharing, technical skill development and networking. We are an essential part of the Bank’s technology platform and develop applications for many important business areas.

Deutsche Bank's Chief Security Office is looking for a Senior Information Security professional to support the Bank's Threat Detection & Response function.

The Security Incident Response Manager leads the coordination and resolution of security incidents, drives containment and mitigation activities, and helps protect the Bank, its clients, and partners from cyber threats and potential loss.

Responsibilities

  • Assess security alerts and determine whether they constitute a security incident.
  • Lead the investigation, coordination, and resolution of security incidents across technology and business teams.
  • Evaluate financial, operational, customer, reputational, and regulatory impacts to determine incident severity and response priorities.
  • Coordinate containment, mitigation, and recovery activities to minimize business and security risks.
  • Communicate incident status to stakeholders and maintain accurate documentation to ensure effective handovers and audit readiness.

Well-being & Benefits

Emotionally and mentally balanced: * Empowering managers who value your ideas and decisions. * A professional, passionate, and fun workplace. * A modern office with fun and relaxing areas to boost creativity. * Continuous learning culture with coaching and support from team experts. * A culture where you can openly speak about mental health.

Physically thriving: * Private healthcare and life insurance with premium benefits for you and discounts for your loved ones, healthier ways of working and check-up's.

Socially connected: * 24 days holiday, loyalty days, and bank holidays. * Hybrid working model with flexible working options. * Enjoy retailer discounts, cultural and CSR activities, workshops, and more.

Financially secure: * Competitive income, performance-based promotions, and a sense of purpose. * Meal vouchers, bonuses for referrals.

Discover more at the Well-being & Benefits hub

Skills

  • Minimum 5 years of experience in Incident Management, Cyber Security, IT Operations, IT Service Management, Security Operations, or a related technology function.
  • Good understanding of enterprise technologies especially focusing on security devices, network engineering, operating systems, databases and security configurations on application level.
  • Familiarity with the MITTRE ATT&CK framework, good knowledge of current threat landscape and attack scenarios/tactics, as well as containment and protection measures.
  • Background on incident management, preferrable in the cyber-security field.
  • Strong understanding on system logs analysis, network traffic logs, payload analysis, event logs, application logs, firewall logs, Active Directory etc.
  • Strong understanding of Security Incident and Event Management (SIEM) systems, such as Splunk Enterprise Security, Google SecOps, or Sentinel.
  • Fluent in English, very good communication skills and confident assuming timely decisions. Independent way of working with strong decision making and problem-solving ability.
  • Appetite for continuous learning.
  • Comfortable/experienced with working in international & multicultural teams.

Always a plus

  • System Administration or Security Operations experience, particularly on Google Cloud and/or Azure environments.
  • Experience of networks, firewalls and related security tools.
  • CISSP, CISM, GCIH or other relevant certifications in the field.
  • German language skills.
Deutsche Bank

Deutsche Bank