
IR and Threat Hunting Lead SCUT entity
2 weeks ago
SCUT is an independent entity, Orange Romania being its main shareholder, as part of its strategy to strengthen digital resilience at a national level. The company provides a unified protection service, which offers a complete and modular vision of customer infrastructures, multiple layers of protection and a coordinated response to incidents.
SCUT is supported by an elite team with over 20 years of experience in the field of cybersecurity, but also by the global expertise of Orange Cyberdefense, SCUT's strategic partner. Thus, the entity benefits from the know-how and resources of a group active in over 160 countries, with 18 Security Operations Centers (SOC) and over 250 researchers and analysts.
What We're Looking For
We are looking for a colleague to lead end-to-end Incident Response engagements for customers and to design and execute Threat Hunting scenarios.
What You'll Be Doing
- Lead end-to-end Incident Response engagements for customers — identification, containment, eradication, recovery, and post-incident reporting.
- Design and execute Threat Hunting scenarios tailored to customer environments, industry-specific threats, and current intelligence.
- Create playbooks, runbooks, and hunting queries to standardize and accelerate detection and response.
- Perform log, network, endpoint, and cloud analysis to uncover malicious activity.
- Collaborate with MDR and SOC teams to tune detection rules and improve alert fidelity.
- Act as the primary technical advisor during active incidents, liaising directly with customer security and executive teams.
- Deliver lessons learned workshops and recommend improvements to customer defences.
- Integrate threat intelligence feeds into hunting and investigation processes.
Support pre-sales activities by defining IR and Threat Hunting service scopes, SLAs, and effort estimates
What You Need To Know/have
- Minimum 5 years of experience in Incident Response, Threat Hunting, or SOC leadership roles
- Strong technical skills in endpoint forensics, log analysis, malware analysis, and network traffic analysis.
- Proficiency in EDR/XDR tools (CrowdStrike, Microsoft Defender, Sentinel One, etc.) and SIEM platforms (Splunk, Microsoft Sentinel, QRadar, etc.).
- Solid understanding of Windows, Linux, and cloud (Azure, AWS) environments.
- Knowledge of scripting/automation (Python, PowerShell, Bash) to speed up investigations and hunting.
- Certifications such as GCFA, GCIH, GNFA, CHFI, or equivalent are a plus.
- Familiarity with threat intelligence platforms and advanced adversary emulation techniques.
- Proven expertise in Incident Response (IR) — from containment to recovery — across on-prem, cloud, and hybrid environments.
- Experience building and executing Threat Hunting programs, using both hypothesis-driven and intelligence-led approaches.
- Strong knowledge of attack tactics, techniques, and procedures (TTPs), mapped to frameworks like MITRE ATT&CK.
- Hands-on familiarity with EDR/XDR, SIEM, SOAR, network forensics, and malware analysis tools.
- Ability to work under pressure and make critical decisions in high-stakes security incidents.
- Experience mentoring and coaching security analysts, raising the maturity of detection and response operations.
- Excellent communication — can present clear findings and recommendations to both technical and executive stakeholders.
- Fluent in English (written and spoken)
We encourage all candidate profiles, regardless of gender, age, race, citizenship, ethnicity, color, language, religion, social origin, genetic traits, sexual orientation, permanent or temporary disability, nationality, political choice, social category or social origins, situation or family responsibility, belonging to a disadvantaged category, membership or trade union activity.
-
Cyber Threat Hunter
2 weeks ago
Bucharest, Bucureşti, Romania Dell Technologies Full time $125,000 - $175,000 per yearCyber Threat Hunter ConsultantThe Dell Security & Resiliency organization manages the security risk across all aspects of Dell's business. You will have an excellent opportunity to influence the security culture at Dell and further develop your career. Join us as a senior Cyber Threat Hunter on our Cyber Threat Intelligence team in Bucharest to do the best...
-
Bucharest, Bucureşti, Romania NTT DATA North America Full time €60,000 - €80,000 per yearNTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now At NTT DATA we know that with the right people on board, anything is possible. The quality, integrity, and commitment of our employees have been key factors in...
-
SOC Lead
1 day ago
Bucharest, Bucureşti, Romania SCOR Full time 40,000 - 80,000 per yearAt our brand-new Shared Business Platform (SBP) in Bucharest, we offer a dynamic environment where career growth is actively supported through internal mobility, globally recognized certifications, and continuous professional development. We value work–life balance, offering flexible work arrangements, and wellbeing initiatives that help you thrive both...
-
SOC Analyst
1 day ago
Bucharest, Bucureşti, Romania SCOR Full time 20,000 - 40,000 per yearAt our brand-new Shared Business Platform (SBP) in Bucharest, we offer a dynamic environment where career growth is actively supported through internal mobility, globally recognized certifications, and continuous professional development. We value work–life balance, offering flexible work arrangements, and wellbeing initiatives that help you thrive both...
-
Incident Response Analyst
2 weeks ago
Bucharest, Bucureşti, Romania CrowdStrike Full time €80,000 - €120,000 per yearAs a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed — we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to...
-
Booking Holdings Romania
2 weeks ago
Bucharest, Bucureşti, Romania Booking Holdings (NASDAQ: BKNG) Full time €104,000 - €130,878 per yearBooking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...
-
Romania - Cybersecurity Analyst I
2 weeks ago
Bucharest, Bucureşti, Romania Booking Holdings Full time €104,000 - €130,878 per yearRole Description:Booking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our...
-
Romania - Cybersecurity Analyst I
1 week ago
Bucharest, Bucureşti, Romania Booking Holdings Full time €104,000 - €130,878 per yearBooking Holdings Romania is a Center of Excellence based in Bucharest, Romania and was created to support the increasing business demands of the Booking Holdings Brands. The Center of Excellence provides access to specialized and highly skilled talent, leading industry best practices, and collaboration opportunities across all of our Brands.As part of our...
-
SOC Analyst- L2
2 weeks ago
Bucharest, Bucureşti, Romania UtilitiesOne Full time 30,000 - 40,000 per yearCompany Overview:Utilities One was founded with great aspirations to reshape the industry as we know it. Our mission as a company is to make a real impact for the greater good of the communities.Today, Utilities One delivers a full range of infrastructure solutions for Telecommunications providers, Electric, Water & Gas Utilities, Wireless Carriers, and the...
-
SOC L1 Analyst
2 weeks ago
Bucharest, Bucureşti, Romania Infosys Full time €40,000 - €80,000 per yearToday, the corporate landscape is dynamic, and the world ahead is full of possibilities None of the amazing things we do at Infosys would be possible without an equally amazing culture, the environment where ideas can flourish and where you are empowered to move forward as far as your ideas will take you.At Infosys, we assure that your career will never...