Senior Incident Response Analyst

itm8 Danmark

København

On-site

DKK 750,000 - 950,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Professional development
Continuous learning culture

Job summary

itm8 Danmark is seeking an experienced Senior Incident Response Analyst to join our Digital Forensics & Incident Response team in Copenhagen. You will combine investigation, customer interaction, and structured reporting to deliver clarity under pressure.

You’ll lead engagements, analyze environments for attack vectors, and contribute to playbooks and best practices. The role includes on-call rotation and opportunities for professional development within a collaborative, high-skill environment.

Qualifications

  • Hands-on incident response, threat hunting or SOC experience.
  • 3+ years in cybersecurity roles.
  • Strong Windows/Linux knowledge and security tooling.

Responsibilities

  • Lead IR engagements and digital investigations.
  • Identify attack vectors and root causes.
  • Analyze logs and endpoint telemetry.
  • Communicate findings clearly to customers.
  • Contribute to playbooks and methodologies.
  • Participate in 24/7 on-call rotation.

Skills

Incident Response
Threat Hunting
Windows/Linux
Cloud security
Certifications
English proficiency

Tools

Microsoft security tools

Job description

Cyber incidents rarely happen at a convenient time. That's why we're looking for an experienced Incident Response Analyst with a consulting mindset who can stay calm under pressure, investigate complex threats, and help customers understand what happened.

At itm8, you'll join a highly skilled Digital Forensics & Incident Response team where collaboration, knowledge sharing, and technical curiosity are core parts of the team's everyday life. We're looking for someone who thrives on complex investigations, enjoys sharing knowledge with others, and wants to help shape the future of our Incident Response capabilities. You'll work alongside experienced analysts and consultants in a team that values technical excellence, teamwork, and continuous development.

Your role

As a Senior Incident Response Analyst, you'll help customers respond to cybersecurity incidents. You'll combine technical investigation, customer interaction, and structured reporting to provide clarity in high-pressure situations.

You will:
  • Lead and contribute to incident response engagements and digital investigations.
  • Analyse compromised environments to identify attack vectors, root causes and attacker activity.
  • Investigate logs, endpoint telemetry, system artefacts and other digital evidence.
  • Communicate findings and recommendations clearly to customers and internal stakeholders.
  • Contribute to the ongoing development of methodologies, playbooks and best practices within the team.
  • Take part in the 24/7 on-call rotation within the team.
We're Looking For a Teamm8 Who
  • Has hands-on experience from an Incident Response, Threat Hunting, Security Operations Centre (SOC), or a similar cybersecurity function.
  • Brings at least 3 years of relevant experience. We're primarily looking for a senior profile, but we're also open to technically strong junior candidates who have the mindset, ambition and potential to grow quickly into a senior role.
  • Has strong technical knowledge of Windows and/or Linux environments and a genuine passion for cybersecurity, both professionally and personally.
  • Has experience working with Microsoft security technologies and modern security tools.
  • Is a strong analytical thinker who can quickly understand complex situations and identify what matters most, and communicate clearly with a broad range of stakeholders.
  • Thrives in dynamic environments and can maintain focus and structure during periods of high pressure, including incidents that require sustained effort over days or weeks.
  • Communicates clearly in written and spoken English and can translate technical findings into actionable insights in report, and meeting form addressing different customer profiles.
  • Interest in Cloud environments, like Azure, AWS, or Google Cloud Platform is an advantage. Development or scripting skills are a plus.

It's a plus if you've worked as a consultant before or hold relevant certifications from SANS, OffSec, Hack The Box, TryHackMe, 13Cubed, CyberDefenders, Blue Team Labs, or similar communities and training providers.

What You Get
  • The opportunity to work on complex cybersecurity incidents across a broad range of customers and industries.
  • A highly skilled team where collaboration, learning and technical sparring are part of everyday life.
  • Access to professional development, certifications and continuous learning opportunities.
  • Flexibility in how you structure your work with Nordhavn as your primary workplace.
  • A chance to influence and help shape the future development of our Incident Response practice.

If you have questions about the position, you're always welcome to contact Christoffer Bech on phone (+45 3131 3711) or email (chbec@itm8.com) – we're here to help.

We conduct interviews on an ongoing basis and will close the recruitment process as soon as we've found the right match. Please note that a criminal record check will be obtained prior to employment.

About Itm8

We are itm8 – our customers’ IT-mate.

1,600+ teammates across Denmark, Sweden, the Philippines, and the Czech Republic. With specialists in everything from IT security and ERP to AI and software development.

But what brings us together isn’t just technology. It’s PURPLE POWER – our way of working. Here, we help each other first, celebrate what works, and cut through the bullshit. We believe in ambition over the status quo. And that our differences make us stronger.

With us, it’s not about being perfect. It’s about taking responsibility, creating value, and growing – every day.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Incident Response Analyst
Senior Incident Response Analyst

itm8 • Herning

On-site
DKK 800,000 - 1,100,000
Senior Incident Response Analyst Lead Complex Investigations
Senior Incident Response Analyst Lead Complex Investigations

itm8 • Herning

On-site
DKK 800,000 - 1,100,000
Senior Incident Response Analyst — Lead Investigations
Senior Incident Response Analyst — Lead Investigations

itm8 Danmark • København

On-site
DKK 750,000 - 950,000
Professional development
Continuous learning culture
Cyber Security Specialist
Cyber Security Specialist

itm8 • Herning

On-site
DKK 650,000 - 850,000
Udviklingsplan og kompetenceudvikling
Fleksibel arbejdsdag
Sociale og faglige aktiviteter
Senior Security Specialist
Senior Security Specialist

Systematic • Aarhus

On-site
DKK 900,000 - 1,100,000
Physiotherapist massages
In-house hairdresser
Sports clubs
+4
Solution Architect – Infrastructure & Internal Systems
Solution Architect – Infrastructure & Internal Systems

itm8 Danmark • Denmark

On-site
DKK 900,000 - 1,500,000
Key architectural role
Collaborative environment
Grow with international IT company
+2
Security Analyst in cutting-edge Managed Detection and Response (MDR) Team
Security Analyst in cutting-edge Managed Detection and Response (MDR) Team

CSIS Security Group A/S • København

On-site
DKK 500,000 - 700,000
Competitive salary and personal benefit package
5 weeks' holiday plus 5 floating days
Health and dental insurance
+4
Solution Architect – Infrastructure & Internal Systems
Solution Architect – Infrastructure & Internal Systems

itm8 • Herning

Hybrid
DKK 950,000 - 1,300,000
Hybrid work environment
International IT company
Cyber Security Specialist
Cyber Security Specialist

itm8 PH • Denmark

On-site
DKK 600,000 - 800,000
Fleksible arbejdstider
Stærkt fagligt fællesskab
Kompetenceudvikling
Senior Specialist, Group IT Security
Senior Specialist, Group IT Security

Systematic • Aarhus

On-site
DKK 900,000 - 1,200,000