Cyber Incident Responder & Forensics Specialist

baobabinsurancegmbh

Rotterdam

Hybrid

EUR 55,000 - 90,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Flexible work options
28 vacation days
Competitive compensation
Continuous learning
Challenging & supportive culture

Job summary

Baobab Risk Solutions in Rotterdam is seeking a security incident responder to execute containment and forensic investigations of ransomware and other cyber incidents. You will work with client IT teams and MSPs across Windows, AD, M365, virtualization, and backups, documenting progress and escalating risks as needed.

With 2+ years in IT security or incident response, you will leverage SIEM/EDR and forensic tools, and apply AI tools to improve investigations and automation while upholding data

Qualifications

  • 2+ years hands-on experience in IT support, systems administration, recovery or incident response.
  • Proficiency with SIEM/EDR and forensic tools.
  • Practical experience documenting technical work in tickets or recovery notes.
  • Ability to use AI tools for technical tasks such as log analysis or information extraction.
  • Dutch and English for client discussions and coordination with partners.

Responsibilities

  • Execute containment and forensic investigation of ransomware, BEC and other incidents, preserving evidence and developing findings with guidance.
  • Support systems restoration after incidents: assess backups, rebuild servers and endpoints, validate services before go‑live.
  • Collaborate with client IT teams and MSPs across Windows, AD, M365, virtualization and backup environments.
  • Document technical work and communicate progress, risks and blockers to the lead.
  • Apply cutting-edge AI tools in investigations, recovery and automation, test new approaches and share results while protecting incident data.
  • Improve recovery checklists, scripts and playbooks by sharing lessons from casework.

Skills

Incident response
IT security
Security tooling
Documentation
AI in security

Tools

SIEM
EDR
Forensics
Windows Defender
CrowdStrike

Job description

Baobab Risk Solutions in Rotterdam is seeking a security incident responder to execute containment and forensic investigations of ransomware and other cyber incidents. You will work with client IT teams and MSPs across Windows, AD, M365, virtualization, and backups, documenting progress and escalating risks as needed.

With 2+ years in IT security or incident response, you will leverage SIEM/EDR and forensic tools, and apply AI tools to improve investigations and automation while upholding data

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Incident Responder — AI-Driven, Flexible Hybrid
Cyber Incident Responder — AI-Driven, Flexible Hybrid

Baobab Insurance GmbH • Rotterdam

Hybrid
EUR 60,000 - 90,000
Flexible work from home
Office in Rotterdam
Udemy Business access
+2
Incident Responder - Dutch speaking (m/f/d)
Incident Responder - Dutch speaking (m/f/d)

Baobab Insurance GmbH • Rotterdam

Hybrid
EUR 60,000 - 90,000
Flexible work from home
Office in Rotterdam
Udemy Business access
+2
Incident Responder - Dutch speaking (m/f/d)
Incident Responder - Dutch speaking (m/f/d)

baobabinsurancegmbh • Rotterdam

Hybrid
EUR 55,000 - 90,000
Flexible work options
28 vacation days
Competitive compensation
+2
Senior Incident Response & Digital Forensics Lead
Senior Incident Response & Digital Forensics Lead

Forensic Focus • Weert

Hybrid
EUR 66,000 - 84,000
Contract DFIR Incident Responder – Flexible Hours
Contract DFIR Incident Responder – Flexible Hours

Jobgether SRL • Netherlands

On-site
EUR 60,000 - 100,000
Flexible contract engagement
Exposure to complex investigations
Work with an experienced IR/DFIR team
International Contract Bench, Incident Response (DFIR)
International Contract Bench, Incident Response (DFIR)

Jobgether SRL • Netherlands

On-site
EUR 60,000 - 100,000
Flexible contract engagement
Exposure to complex investigations
Work with an experienced IR/DFIR team
International Contract Bench, Incident Response (DFIR)
International Contract Bench, Incident Response (DFIR)

Lever, Inc. • Netherlands

On-site
EUR 83,000 - 124,000
Flexible contract-based engagement
Live investigations exposure
Team of IR/DFIR experts
+1
Cyber Security incident response Manager
Cyber Security incident response Manager

Darwin Recruitment • Amsterdam

Hybrid
EUR 90,000 - 130,000
Hybrid work model
Incident Response Tech Lead - Cyber Security
Incident Response Tech Lead - Cyber Security

S-RM Intelligence and Risk Consulting • Utrecht

Hybrid
EUR 90,000 - 120,000
Maternity leave
Paternity leave
Holiday days
+4
Dutch Digital Forensics and Incident Response (DFIR) Consultant
Dutch Digital Forensics and Incident Response (DFIR) Consultant

Ransomware Recovery • Utrecht

On-site
EUR 60,000 - 85,000
Medical benefits
Bonus opportunities