Senior Incident Response Analyst
Help organisations investigate, contain and understand cyber incidents.
Cyber incidents rarely happen at a convenient time. That's why we're looking for an experienced Incident Response Analyst with a consulting mindset who can stay calm under pressure, investigate complex threats, and help customers understand what happened.
At itm8, you'll join a highly skilled Digital Forensics & Incident Response team where collaboration, knowledge sharing, and technical curiosity are core parts of the team's everyday life. We're looking for someone who thrives on complex investigations, enjoys sharing knowledge with others, and wants to help shape the future of our Incident Response capabilities. You'll work alongside experienced analysts and consultants in a team that values technical excellence, teamwork, and continuous development.
Your role
As a Senior Incident Response Analyst, you'll help customers respond to cybersecurity incidents. You'll combine technical investigation, customer interaction, and structured reporting to provide clarity in high-pressure situations.
You will:
Lead and contribute to incident response engagements and digital investigations.
Analyse compromised environments to identify attack vectors, root causes and attacker activity.
Investigate logs, endpoint telemetry, system artefacts and other digital evidence.
Communicate findings and recommendations clearly to customers and internal stakeholders.
Contribute to the ongoing development of methodologies, playbooks and best practices within the team.
Take part in the 24/7 on-call rotation within the team.
We're looking for a teamm8 who
Has hands-on experience from an Incident Response, Threat Hunting, Security Operations Centre (SOC), or a similar cybersecurity function.
Brings at least 3 years of relevant experience. We're primarily looking for a senior profile, but we're also open to technically strong junior candidates who have the mindset, ambition and potential to grow quickly into a senior role.
Has strong technical knowledge of Windows and/or Linux environments and a genuine passion for cybersecurity, both professionally and personally.
Has experience working with Microsoft security technologies and modern security tools.
Is a strong analytical thinker who can quickly understand complex situations and identify what matters most, and communicate clearly with a broad range of stakeholders.
Thrives in dynamic environments and can maintain focus and structure during periods of high pressure, including incidents that require sustained effort over days or weeks.
Communicates clearly in written and spoken English and can translate technical findings into actionable insights in report, and meeting form addressing different customer profiles.
Interest in Cloud environments, like Azure, AWS, or Google Cloud Platform is an advantage. Development or scripting skills are a plus.
It's a plus if you've worked as a consultant before or hold relevant certifications from SANS, OffSec, Hack The Box, TryHackMe, 13Cubed, CyberDefenders, Blue Team Labs, or similar communities and training providers.
What you get
The opportunity to work on complex cybersecurity incidents across a broad range of customers and industries.
A highly skilled team where collaboration, learning and technical sparring are part of everyday life.
Access to professional development, certifications and continuous learning opportunities.
Flexibility in how you structure your work with Nordhavn as your primary workplace.
A chance to influence and help shape the future development of our Incident Response practice.
Ready to join the team?
We look forward to receiving your CV.
If you have questions about the position, you're always welcome to contact Christoffer Bech on phone (+45 3131 3711) or email (chbec@itm8.com) – we're here to help.
We conduct interviews on an ongoing basis and will close the recruitment process as soon as we've found the right match. Please note that a criminal record check will be obtained prior to employment.
About itm8
We are itm8 – our customers’ IT-mate.
1,600+ teammates across Denmark, Sweden, the Philippines, and the Czech Republic. With specialists in everything from IT security and ERP to AI and software development.
But what brings us together isn’t just technology. It’s PURPLE POWER – our way of working. Here, we help each other first, celebrate what works, and cut through the bullshit. We believe in ambition over the status quo. And that our differences make us stronger.
With us, it’s not about being perfect. It’s about taking responsibility, creating value, and growing – every day.
Sound like you? Then apply – and become our next team’m8’.
- Afdeling
- Cyber Security
- Rolle
- Cyber Defence Center
- Lokationer
- København
- Jobtype
- Fuldtid