Cybersecurity Incident Responder

4 days ago


Stockholm, Sweden SANDVIK AB Full time

Sandvik’s Cybersecurity Incident Response Team (SAND-CSIRT) is looking for an Incident Responder to join our team of defenders – helping us develop and handle complex cybersecurity incidents globally across our company. And when we say globally, we mean every corner of the world

Shortly about us

The CSIRT team is part of our Cybersecurity Global Security Operations, along with our Sandvik SOC team and a Cybersecurity Attack Surface Reduction team. These teams collaborate to prevent and handle cybersecurity incidents, from detection to recovery, and work proactively in securing Sandvik through the service and product development cycle. You help identify the entry point of an attack, assess exposure and data extraction, and constantly evaluate our attack-surface and how to protect Sandvik in the best possible way.

About your job

In this position, you ensure an active safeguarding of our IT environment – effectively managing incidents to eliminate or minimize potential damage. In collaboration with the CSIRT manager and SOC, you enhance current processes and lead the technical work within complex and long running incidents to ensure the CSIRT function’s effectiveness.

Furthermore, your detailed responsibilities include:

- Conduct rapid analysis and evidence collection during incidents.
- Stay updated on IT security trends through regular training, active participation in forums and networking with other incident handlers.
- Assist in the development of new tools as well as adapt current; helping us perform our detection and respond quicker and better.
- Collaborate with incident management, stakeholders and coordinate with other security personnel, including physical security staff, in security matters.

The location for this position is Stockholm.

Your profile

We’re looking for someone with practical experience in a similar cybersecurity role, including experience of working with incident handling. You’re proficient in SIEM tools and other security tools such as firewalls, antivirus, IDS and EDR. You have a few years' experience in digital forensics and a strong background in forensic computer science and penetration testing. Since we act on a global scale, you’re efficient in both Swedish and English, verbally and in writing.

Following competences is beneficial:

- Experience with CERT/CSIRT or SOC, and CISSP or equivalent certification.
- SANS Incident Handling Training or equivalent.
- Relevant academic education.
- Experience with Read Team/Blue Team exercises.

As a person, you’re analytical and strategic with an interest in new technology, and you drive initiatives and activities toward efficient solutions. You’re also socially secure, sharing knowledge with your colleagues and communicating effectively with various parts of our organization.

Our culture

Our role is clear – through every action, every day, we make the shift and advance the world through engineering. We believe in an inclusive, equal and open-minded culture, and we nurture our diversities to form a solid foundation for achieving great results. Add fair and rewarding benefits, as well as many different career options. Are you intrigued? Visit our website, LinkedIn or Facebook page to get to know us further.

Contact information

For further information about this position, please contact Daniel Bergstrand, recruiting manager, daniel.bergstrand@sandvik.com

We’ve already decided on which advertising channels and marketing campaigns we wish to use, and respectfully decline any additional contacts in that matter.

Union contacts – Sweden

- Malena Rackner, Unionen, +46 (0)70 242 33 90
- Göran Norell, Akademikerföreningen, +46 (0)70 616 43 78
- Peter Olsson-Andrée, Ledarna, +46 (0)70 222 48 55

Recruitment Specialist: Therese Rutqvist

How to apply

Send your application no later than February 24, 2025. Click apply and include your resume and cover letter in English. Please note that we don’t accept applications by e-mail. Job ID: R0074959.

As we aim for a fair recruitment process, we utilize assessment tools to safeguard objectivity. When you apply for this job, you will therefore receive an invitation via email to a personality and logic ability test. Feedback comes immediately after the test has been completed and the selection process begins after the application deadline.

To learn more about our recruitment process, please visit our career site or contact HR Services at hrservices.sweden@sandvik.com.

Sandvik is a global, high-tech engineering group providing solutions that enhance productivity, profitability and sustainability for the manufacturing, mining and infrastructure industries. We are at the forefront of digitalization and focus on optimizing our customers’ processes. Our world-leading offering includes equipment, tools, services and digital solutions for machining, mining, rock excavation and rock processing. In 2023 the Group had approximately 41,000 employees and revenues of about 127 billion SEK in about 150 countries within continuing operations.



  • Stockholm, Stockholm, Sweden Sandvik Group Full time

    At Sandvik Group, we are committed to advancing the world through engineering and technology. We are seeking a highly skilled Incident Responder to join our Cybersecurity Global Security Operations team.As a member of our team, you will have the opportunity to work collaboratively with our SOC team and Cybersecurity Attack Surface Reduction team to prevent...


  • Stockholm, Stockholm, Sweden SANDVIK AB Full time

    Sandvik's Cybersecurity Incident Response Team is looking for a skilled Incident Responder to join our team of defenders, helping us develop and handle complex cybersecurity incidents globally.The CSIRT team is part of our Cybersecurity Global Security Operations, collaborating with our Sandvik SOC team and a Cybersecurity Attack Surface Reduction team to...


  • Stockholm, Stockholm, Sweden Sandvik Group Full time

    Cybersecurity Incident Response Job DescriptionThis position involves working as part of Sandvik's Cybersecurity Incident Response Team (CSIRT) to help manage and respond to complex cybersecurity incidents. Your primary goal will be to identify and assess threats, and then work collaboratively with internal teams to mitigate and contain them.Your Key...


  • Stockholm, Stockholm, Sweden ENGINEERINGUK Full time

    Job Overview:Mars is seeking a highly motivated and experienced Cybersecurity Incident Response Analyst to lead the EU IR team. As a critical component of our organization's cybersecurity framework, this role will be responsible for protecting against cyber threats and ensuring business continuity.The successful candidate will play a pivotal role in...


  • Stockholm, Stockholm, Sweden Sandvik Group Full time

    About Cybersecurity Incident ResponseSandvik's Cybersecurity Incident Response Team (CSIRT) is seeking an expert to join our team of defenders, helping us develop and handle complex cybersecurity incidents globally. This position requires analyzing entry points of attacks, assessing exposure and data extraction, and evaluating our attack surface for optimal...


  • Stockholm, Stockholm, Sweden TN Sweden Full time

    TN Sweden is a leading software provider for the global logistics industry. We strive to deliver innovative solutions that support our customers' operations.As a CSIRT Analyst, you will play a critical role in our organization's security efforts. You will be responsible for responding to and resolving cybersecurity incidents within the European region.The...


  • Stockholm, Stockholm, Sweden Redigo Cybersecurity Full time

    At Redigo Cybersecurity, we're seeking a seasoned Cybersecurity Risk Consultant to join our team. As an Information Security Expert Advisor, you'll play a key role in helping us develop and implement robust cybersecurity strategies that protect our clients' sensitive information.Your primary responsibility will be to identify and mitigate potential security...


  • Stockholm, Stockholm, Sweden Redigo Cybersecurity Full time

    We're seeking a seasoned Cybersecurity professional to join our team as a Cybersecurity Risk Consultant. As an expert in cybersecurity risk management, you'll play a key role in helping us identify and mitigate potential security threats, ensuring the confidentiality, integrity, and availability of our clients' data.Your primary responsibility will be to...


  • Stockholm, Stockholm, Sweden TN Sweden Full time

    About Us:TN Sweden is an Engineer-led company with a focus on building secure, scalable products.We're passionate about protecting the data of the world's largest freight forwarders, which is critical to the function of the international supply chain.The Role:You will be part of our Cyber Security department inside our Information Security area of the...


  • Stockholm, Stockholm, Sweden Integrity360 Full time

    ResponsibilitiesAs a Level 1 SOC Analyst, your primary duties and responsibilities will include:Monitoring security events and triaging alerts in a timely mannerAnalyzing and escalating security alerts based on established proceduresCollaborating with cross-functional teams to resolve security incidentsDocumenting all activities, findings, and actions taken...


  • Stockholm, Stockholm, Sweden Mars (New) Full time

    Cybersecurity Incidents: Prevention and ResponseAs a seasoned cybersecurity professional, you will be responsible for leading the EU-based Incident Response team at Mars. Your primary objective will be to protect the organization's assets from cyber threats while maintaining business continuity.Main ResponsibilitiesTriage, investigate, contain, eradicate,...


  • Stockholm, Stockholm, Sweden TN Sweden Full time

    Cybersecurity SpecialistWe are seeking an experienced Cybersecurity Specialist to join our team at Epidemic Sound. This key role will be based in our Stockholm office, working closely with a small team and collaborating across other central teams.The successful candidate will have extensive experience with vendor security assessments, social engineering...


  • Stockholm, Stockholm, Sweden Sandvik Group Full time

    Job Title: Cybersecurity Incident ResponderJob Summary:We are seeking a skilled cybersecurity incident responder to join our team at Sandvik Group. As a member of our Cybersecurity Incident Response Team (CSIRT), you will play a critical role in identifying and mitigating cybersecurity threats across our organization.About the RoleIn this position, you will...


  • Stockholm, Stockholm, Sweden ENGINEERINGUK Full time

    About EngineeringUK:We're a forward-thinking organization, committed to driving innovation and excellence. Our team is passionate about delivering high-quality results and making a positive impact.Job Summary:Mars seeks an experienced Cybersecurity Incident Response Analyst to lead our EU-based Incident Response (IR) team. As the EU Lead, you'll be...


  • Stockholm, Stockholm, Sweden Mars (New) Full time

    Mars is seeking an experienced cybersecurity expert to lead its Incident Response team in the European region. As a key member of the organization's cybersecurity team, you will play a vital role in protecting our business from cyber threats and ensuring continuity.Key ResponsibilitiesLead and execute incident response activities within the EU region,...


  • Stockholm, Stockholm, Sweden Integrity360 Full time

    About UsWe are a reputable cybersecurity specialist based in Stockholm, Sweden, offering a wide range of professional, support, and managed cyber security services. Our comprehensive services include Managed Security, Cyber Security Testing, Incident Response, Security Integration, PCI Compliance, and Cyber Risk & Assurance.We strive to deliver exceptional...


  • Stockholm, Stockholm, Sweden ENGINEERINGUK Full time

    Mars is seeking a highly skilled Cybersecurity Incident Response Analyst to join its team as the EU Lead for Incident Response.This critical role involves protecting the organization from cyber threats and ensuring business continuity. The successful candidate will lead and execute incident response activities within the European region, collaborate with...


  • Stockholm, Stockholm, Sweden Sandvik Group Full time

    Our Cybersecurity Incident Response Team is looking for a skilled Cybersecurity Expert to join our team of defenders, helping us develop and handle complex cybersecurity incidents globally.We believe in an inclusive and open-minded culture that fosters collaboration and innovation. As a member of our team, you will be part of a dynamic group of professionals...


  • Stockholm, Stockholm, Sweden Mars (New) Full time

    Mars is seeking an accomplished cybersecurity specialist to spearhead its EU-based Incident Response team. As part of our global cybersecurity team, you will play a critical role in safeguarding our business from cyber threats and ensuring seamless operations.Your Key ResponsibilitiesOversee the execution of incident response activities within the EU region,...


  • Stockholm, Stockholm, Sweden TN Sweden Full time

    TN Sweden is committed to delivering exceptional products and services to our customers. As a Cyber Security Analyst, you will play a vital role in ensuring the security and integrity of our systems and data.You will work closely with our Incident Response team to identify and respond to security incidents. Your primary responsibilities will include...