Nebius AI

Incident Response Lead

Amsterdam, Netherlands
IAM SIEM
Description

Incident Response Lead

Location: Amsterdam, Netherlands

Department: Corporate and Cyber Security

About Nebius:

Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure.

Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI.

Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.

 
Role Overview
 
Nebius is seeking an Incident Response Lead to own and mature the company’s global cyber incident response capability. This role sits within the CISO Office and is accountable for response execution, post-incident learning, and executive-level coordination across Nebius’ cloud, infrastructure, and platform environments.
 
The Incident Response Lead will act as the single accountable owner for high-severity security incidents, ensuring rapid containment, accurate impact assessment, regulatory-compliant communications, and continuous improvement of detection and response capabilities.
This role requires deep technical expertise, strong crisis leadership, and the ability to operate under pressure in highly regulated, high-availability environments.

Key Responsibilities

Incident Response Leadership
  • Lead and coordinate of security incidents across Nebius’ cloud, infrastructure, and corporate environments.
  • Act as Incident Commander during major incidents, driving containment, eradication, and recovery efforts.
  • Support and maintain clear incident classification, escalation, and decision-making frameworks.
  • Ensure 24/7 readiness through on-call structures, runbooks, and playbooks.
Detection, Triage, and Investigation
  • Oversee advanced incident triage and forensic investigations across:
    • Cloud platforms
    • Network and perimeter security
    • Identity and access systems
    • Supply chain and third-party risks
  • Partner with SOC, Threat Intelligence, and Threat Hunting teams to improve detection fidelity and reduce MTTR.
  • Ensure evidence handling meets legal, regulatory, and forensic standards.
  • Lead regulatory-ready incident documentation, timelines, and root cause analysis (RCA).
  • Support audits, regulatory inquiries, and executive reporting related to security incidents.
Executive & Cross-Functional Coordination
  • Serve as the primary incident response interface to:
    • CISO and executive leadership
    • Legal, Privacy, Compliance, and Communications teams
    • Infrastructure, Network, IT, Platform, and Engineering leadership
  • Deliver clear, factual, and risk-based incident briefings to senior leadership.
  • Support customer and partner communications when security incidents impact trust or service availability.
Program Development & Continuous Improvement
  • Support Nebius’ incident response program, including:
    • Playbooks and runbooks
    • Tabletop exercises and simulations
    • Red/blue/purple team coordination
  • Drive lessons-learned processes and ensure findings result in measurable control improvements.
  • Define and track incident response KPIs (MTTD, MTTR, containment effectiveness).
Required Qualifications:
 
Experience
  • 8+ years in cybersecurity, with significant hands-on incident response leadership experience.
  • Proven experience leading large-scale, high-impact security incidents in cloud or infrastructure-heavy environments.
  • Experience operating in regulated or compliance-driven environments (SOC, ISO, financial services, cloud providers, etc.).
Technical Expertise
  • Strong understanding of:
    • Cloud security architectures
    • Network security, IAM, endpoint security, and logging pipelines
    • Threat actor tactics, techniques, and procedures (MITRE ATT&CK)
  • Practical experience with SIEM, SOAR, EDR, NDR, and forensic tooling.
  • Ability to validate technical findings independently and challenge assumptions.
Leadership & Communication
  • Demonstrated ability to lead under pressure and make high-quality decisions with incomplete data.
  • Clear, concise communicator capable of briefing executives and non-technical stakeholders.
  • Strong cross-functional leadership skills without relying on direct authority.

 

 

Benefits & Perks:

  • Competitive compensation
  • Career growth and learning opportunities
  • Flexibility and work-life balance
  • Collaborative and innovative culture
  • Opportunity to work on impactful AI projects
  • International environment and talented teams

What's it like to work at Nebius:

Fast moving - Bold thinking - Constant growth - Meaningful impact - Trust and real ownership - Opportunity to shape the future of AI 

Equal Opportunity Statement:

Nebius is an equal opportunity employer. We are committed to fostering an inclusive and diverse workplace and to providing equal employment opportunities in all aspects of employment. We do not discriminate on the basis of race, color, religion, sex (including pregnancy), national origin, ancestry, age, disability, genetic information, marital status, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by applicable law.

Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire. 

If you need accommodations during the application process, please let us know.

Nebius AI
Nebius AI

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say