Senior Security Ops Lead - Incident Response & Cloud

Jobtailor

Wrocław

On-site

PLN 180,000 - 240,000

Full time

46 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a senior Security Operations lead in Wroclaw to own and mature the detection strategy, drive incident response from triage to remediation, and report clearly to technical and non-technical stakeholders.

You will work with DevOps and Engineering to embed security controls in CI/CD, mentor analysts, and develop automation across SIEM, EDR, and SOAR in a cloud-first environment.

Qualifications

  • 6+ years of security operations experience with progression from triage to detection engineering
  • Proven experience leading or mentoring a team, formally or informally
  • Deep expertise with SIEM, EDR, and SOAR platforms, including hands-on rule-writing, tuning, and automation
  • Strong incident response leadership experience managing complex or high-severity incidents end-to-end
  • Solid understanding of cloud security architecture in AWS, Azure, or GCP environments
  • Experience embedding security into CI/CD pipelines and infrastructure with DevOps/Engineering
  • Scripting or automation proficiency in Python or PowerShell
  • Familiarity with MITRE ATT&CK techniques and attacker TTPs
  • Excellent communication skills for briefing executives and technical teams
  • Up to 10–20% travel
  • Nice-to-have: cloud-native detection, container security, threat intel platforms, threat hunting, purple team, certs, network security, vulnerability management, DLP/insider threat detection

Responsibilities

  • Own and mature the security operations detection strategy
  • Lead major incident response from triage through remediation and post-incident review
  • Conduct host, network, and memory forensics
  • Produce clear reporting for technical and non-technical stakeholders
  • Collaborate with DevOps/Engineering to embed security controls in CI/CD pipelines and system design
  • Mentor analysts and engineers to deepen their technical depth
  • Translate technical findings into actionable insights for executives and customers
  • Assess, select, and integrate SIEM, EDR, SOAR, and cloud-native tools
  • Work cross-functionally in a cloud-first environment with DevOps, Engineering, and IT

Skills

Security operations leadership
Incident response management
SIEM, EDR, SOAR expertise
Cloud security architecture
Python/PowerShell scripting

Tools

SIEM
EDR
SOAR
Cloud-Native Security Tools
CI/CD tooling

Job description

Jobtailor is seeking a senior Security Operations lead in Wroclaw to own and mature the detection strategy, drive incident response from triage to remediation, and report clearly to technical and non-technical stakeholders.

You will work with DevOps and Engineering to embed security controls in CI/CD, mentor analysts, and develop automation across SIEM, EDR, and SOAR in a cloud-first environment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Security & Incident Response Lead
Senior Cloud Security & Incident Response Lead

Svitla Systems, Inc. • Poland

Hybrid
PLN 240,000 - 360,000
Remote or office flexibility
Bonuses for articles and talks
Generous time off
+1
Remote Cloud Security Operations Engineer – Incident Response
Remote Cloud Security Operations Engineer – Incident Response

UNIT4 NV • Wrocław

Remote
PLN 70,000 - 90,000
Senior Incident Response Lead – AI & Cloud Security
Senior Incident Response Lead – AI & Cloud Security

F5 • Warszawa

On-site
PLN 240,000 - 300,000
Security Operations & Compliance Lead
Security Operations & Compliance Lead

Callstack.io • Wrocław

On-site
PLN 223,000 - 335,000
Fully covered life insurance
Private healthcare for you and family
Mental health platform access
+7
Senior Incident Response Lead — AI & Cloud Security
Senior Incident Response Lead — AI & Cloud Security

F5 Networks, Inc.  • Warszawa

Hybrid
PLN 260,000 - 450,000
Senior Security Operations Engineer - Remote-First & Impact
Senior Security Operations Engineer - Remote-First & Impact

Jobgether • Poland

On-site
PLN 260,000 - 420,000
Remote-first
Learning & development USD 2000/year
Annual reviews
+2
Senior Detection & Response Engineer — Automation & SIEM
Senior Detection & Response Engineer — Automation & SIEM

Aristocrat • Kraków

Hybrid
PLN 180,000 - 260,000
Robust benefits package
Global career opportunities
Data Security Lead | Incident Response & Crisis Management
Data Security Lead | Incident Response & Crisis Management

Investigo • Warszawa

Hybrid
PLN 209,000 - 282,000
Threat Response Manager: Incident Leadership & Hybrid SOC
Threat Response Manager: Incident Leadership & Hybrid SOC

Polluxa, Inc. • Warszawa

Hybrid
PLN 180,000 - 260,000
Onsite SOC Lead – 24/7 Security Operations (Kraków)
Onsite SOC Lead – 24/7 Security Operations (Kraków)

GlobalLogic • Kraków

On-site
PLN 253,000 - 339,000
Culture of caring
Continuous learning and development
Balance and flexibility