Team Lead - Security Incident Response (all genders)

ABOUT YOU SE & Co. KG

Apply to this job
Hamburg, HH, de on site Until 10/6/2026 3+ years exp First posted August 7, 2026 Last posted August 7, 2026
Job description

We are looking for a Team Lead (all genders) to join the Security Incident Response circle of our IT-Security unit, dedicated to ensure that the customers of our online shop have a safe shopping experience and their personal data is secure with us. In addition, the team works to protect our corporate data and the hardware of our employees.

  • Set up and maintain DFIR tools and infrastructure

  • Provide first response during security incidents, including digital forensics and post incident risk mitigation

  • Maintain and improve the SIEM tool

  • Improve our monitoring and scanning tools to detect security issues and automate routine tasks Python programming experience required

  • Integrate AI into security operations

  • Investigate and respond to security alerts in our systems

  • Create and maintain incident response playbooks

  • Keep an eye on current threats and zero-day vulnerabilities in the cyber security space and implement preventative measures within the organization

  • You have a background in Cyber Security

  • You are experienced in incident response, blue teaming or digital forensics. Specifically in cloud-native environments

  • You are proficient with SIEM tools

  • You have leadership experience, formal or informal

  • You are able to write scripts and programs to automate tasks in Python or another programming language

  • You leverage agentic AI (beyond using it as a Q/A chat)

  • You are proficient with Linux

  • You have experience working with web application firewalls, Cloudflare preferred

  • You have good communication and presentation skills, you can explain technical terms in non-technical language

  • Fluent English skills (spoken & written)

Nice to have

  • Certificates:

    • Trainings from SANS / GIAC

    • OffSec OSIR

    • HackTheBox / TryHackMe incident response challenges

  • Knowledge of Laravel / PHP

  • Experience with AWS / GCP

  • Experience with Gitlab CI/CD Pipelines

  • Experience with Terraform / Terragrunt

  • Experience with digital forensics

Your perks at a glance: Visit our benefits page.

Simply apply online via our career page - we will get back to you as soon as possible!

A Place Where You Can Be You
We take it as our responsibility to create an environment where everyone feels welcome, exactly as they are.
Different backgrounds and perspectives make us stronger and shape our culture in ways that matter.
What we stand for internally, we stand for as a brand: acceptance, inclusion, and a fairer approach to fashion.

About this role

Summary

Lead security incident response team, manage tools, investigate threats, automate tasks, and lead security improvements.

Job title

Team Lead - Security Incident Response

Experience level

mid to senior level

Minimum experience

3+ years exp

Industry

software

Location requirements

Hamburg, Germany; remote work not specified

Salary

Not specified

Management role

Yes

Skills & keywords

Required skills

pythoncyber securityincident responseSIEMLinuxcloud-native

Preferred skills

SANS GIACOffSec OSIRdigital forensicsAWSGCPGitlab CI/CDTerraform

Specializations

incident responsedigital forensicscloud securitySIEMAI integration
Locations

Structured locations inferred from the posting.

Hamburg, Germany

On-site City