Incident Response Analyst

2 weeks ago


Bucharest, Bucureşti, Romania CrowdStrike Full time €80,000 - €120,000 per year

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn't changed — we're here to stop breaches, and we've redefined modern security with the world's most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We're also a mission-driven company. We cultivate a culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We're always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

About The Role
The Incident Response Defensive Operations (IRDO) team is seeking a detail-oriented, proactive Analyst to help drive strategic improvements to our Cybersecurity Incident Response program. This role is designed for someone who thrives at the intersection of operations, project management, and technical problem-solving.

You'll work alongside Incident Response analysts and engineers to identify pain points in existing workflows, close capability gaps, and manage high-impact projects that enhance the efficiency, effectiveness, and overall analyst experience of the Cybersecurity IR team. You'll also serve as a key liaison with our Threat Detection and Engineering (TIDE) team, ensuring smooth collaboration on detection engineering, automation, and improvements to our IR tooling.

As part of this role, you'll also contribute to the CSIRT Attack Surface Management program - an initiative focused on evaluating and improving the organisation's ability to detect and respond to threats across critical domains including email, applications, networks, and endpoints.

What You'll Do

  • Analyse incident response workflows to identify inefficiencies and friction points; propose and implement improvements.
  • Investigate operational and technical capability gaps - such as containment or access limitations and coordinate efforts to close them.
  • Lead and support cross-functional projects aimed at improving IR tooling, processes, and analyst experience.
  • Build or coordinate the development of workflow automations that reduce manual overhead and streamline response processes.
  • Contribute to the CSIRT Attack Surface Management program by assessing detection coverage, visibility, and response readiness across key attack surfaces.
  • Serve as the intermediary between the IR team and TIDE, translating analyst needs into actionable engineering requirements and helping prioritize improvements.
  • Maintain visibility on evolving IR needs and ensure proactive delivery of scalable, reliable operational enhancements.

What You'll Need
Education & Experience:

  • Bachelor's Degree (or equivalent experience) in a computer-related field
  • 3-5 years of experience in cybersecurity operations, incident response, or a similar domain (or equivalent combination of education and experience).
  • Hands-on experience with workflow automation - such as building automation playbooks, creating scripts, or leveraging tools like TINES, AWS Lambda, or SOAR platforms.

Technical Expertise

  • Hands-on experience with workflow automation—such as building automation playbooks, creating scripts, or leveraging tools like TINES, AWS Lambda, or SOAR platforms.
  • Build or coordinate the development of workflow automations that reduce manual overhead and streamline response processes
  • Experience with ServiceNow, Jira, or similar workflow/ticketing tools
  • Strong IT background (networking fundamentals, systems) and expertise with OSX
  • Strong analytical and problem-solving skills with a passion for operational efficiency.
  • Experience with project management or process improvement in a technical environment.
  • Excellent communication and interpersonal skills; ability to interface with both technical and non-technical stakeholders.
  • Familiarity with cybersecurity technologies and concepts, particularly incident response, containment, and automation.

Analytical & Communication Skills

  • Effective communication skills in English (verbal and written)
  • Ability to maintain strict confidentiality and operate independently in high-pressure situations

Preferred Skills & Attributes

  • Scripting knowledge (e.g., Python, Perl, Bash, PowerShell)
  • Familiarity with Splunk or other advanced SIEM platforms
  • Experience with host and network forensics
  • Familiarity with agile project management and compliance frameworks
  • Technical security certifications or advanced academic credentials

Benefits Of Working At CrowdStrike

  • Remote-friendly and flexible work culture
  • Market leader in compensation and equity awards
  • Comprehensive physical and mental wellness programs
  • Competitive vacation and holidays for recharge
  • Paid parental and adoption leaves
  • Professional development opportunities for all employees regardless of level or role
  • Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections
  • Vibrant office culture with world class amenities
  • Great Place to Work Certified across the globe

CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program.

CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements.

If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at for further assistance.



  • Bucharest, Bucureşti, Romania Orange Full time €104,000 - €130,878 per year

    Locul de muncă: BucharestHow would you like to work in IT & Communication, toying with cutting edge technologies and enjoying your life? Come closer to #LifeAtOrange.What we're looking forWe are looking for a Security Incident Operations Analyst to join our Information Security department. The right candidate is analytical, responsive, and committed to...

  • GCC incident manager

    2 weeks ago


    Bucharest, Bucureşti, Romania ENGIE Full time €40,000 - €80,000 per year

    GLOBAL COORDINATION CENTER INCIDENT MANAGERBUCHARESTENGIE GBS ROMANIAOne of the world's leading energy companies, ENGIE is present across the entire energy chain, in electricity and natural gas, from upstream to downstream. By placing responsible growth at the heart of its businesses (energy, energy services and the environment), its mission is to meet major...

  • GCC incident manager

    2 weeks ago


    Bucharest, Bucureşti, Romania Engie Full time €40,000 - €80,000 per year

    GLOBAL COORDINATION CENTER INCIDENT MANAGERBUCHARESTENGIE GBS ROMANIAOne of the world's leading energy companies, ENGIE is present across the entire energy chain, in electricity and natural gas, from upstream to downstream. By placing responsible growth at the heart of its businesses (energy, energy services and the environment), its mission is to meet major...

  • SOC Analyst

    2 days ago


    Bucharest, Bucureşti, Romania SCOR Full time 20,000 - 40,000 per year

    At our brand-new Shared Business Platform (SBP) in Bucharest, we offer a dynamic environment where career growth is actively supported through internal mobility, globally recognized certifications, and continuous professional development. We value work–life balance, offering flexible work arrangements, and wellbeing initiatives that help you thrive both...


  • Bucharest, Bucureşti, Romania LSEG Full time €60,000 - €80,000 per year

    About Us:LSEG (London Stock Exchange Group) is more than a diversified global financial markets infrastructure and data business. We are dedicated, open-access partners with a dedication to excellence in delivering the services our customers expect from us. With extensive experience, deep knowledge and worldwide presence across financial markets, we enable...

  • Help Desk Analyst

    2 weeks ago


    Bucharest, Bucureşti, Romania Infotree Global Solutions Full time 83,600 - 88,400 per year

    Job Title:Premier Helpdesk Analyst – GermanLocation:Bucharest, RomaniaBase Salary:83,000 RON + 5% bonusPosition SummaryWe are seeking a Premier Helpdesk Analyst with German language proficiency. The successful candidate will provide guidance and technical support to frontline customer service teams across a wide range of travel technology solutions.Key...


  • Bucharest, Bucureşti, Romania TransPerfect Full time 30,000 - 40,000 per year

    We are seeking a detail-oriented and experienced Service Desk Escalation Manager to join our team. In this role, you will be responsible for managing service desk escalations, working with solutions engineers across multiple regions, and providing updates to operations managers. You will be responsible for ensuring that all service desk escalations are...


  • Bucharest, Bucureşti, Romania NTT DATA, Inc. Full time €104,000 - €130,878 per year

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive.Additional Career Level...

  • SOC Analyst- L2

    2 weeks ago


    Bucharest, Bucureşti, Romania UtilitiesOne Full time 30,000 - 40,000 per year

    Company Overview:Utilities One was founded with great aspirations to reshape the industry as we know it. Our mission as a company is to make a real impact for the greater good of the communities.Today, Utilities One delivers a full range of infrastructure solutions for Telecommunications providers, Electric, Water & Gas Utilities, Wireless Carriers, and the...

  • E-Fraud Analyst

    2 weeks ago


    Bucharest, Bucureşti, Romania ADP Full time €60,000 - €80,000 per year

    The GSO Critical Incident Response Center (CIRC) CIRC/SOC Analyst within ADP's Global Security Organization (GSO) is responsible for monitoring multiple sources of analytical computer information related to cyber and e-Fraud alerts. The CIRC's main focus is to take this disparate information and turn it into strategic and tactical intelligence that is...