Security Incident Response Manager (f/m/x)

db· F063 DB Global Technology SRL
Apply Now ↗
📍 Bucharest, 6A Dimitrie Pompeiu BlvdFull time

About this role

Job Description:

DB Global Technology is Deutsche Bank’s technology centre in Central and Eastern Europe. Since its set-up in 2013, Bucharest Technology Centre (BEX) has constantly proven its capacity to deliver global technology products and services, playing a dynamic role in the Bank’s technology transformation.

We have a robust, hands-on engineering culture dedicated to continuous learning, knowledge-sharing, technical skill development and networking. We are an essential part of the Bank’s technology platform and develop applications for many important business areas.

Deutsche Bank's Chief Security Office is looking for a Senior Information Security professional to support the Bank's Threat Detection & Response function.

The Security Incident Response Manager leads the coordination and resolution of security incidents, drives containment and mitigation activities, and helps protect the Bank, its clients, and partners from cyber threats and potential loss.

Responsibilities

  • Assess security alerts and determine whether they constitute a security incident.
  • Lead the investigation, coordination, and resolution of security incidents across technology and business teams.
  • Evaluate financial, operational, customer, reputational, and regulatory impacts to determine incident severity and response priorities.
  • Coordinate containment, mitigation, and recovery activities to minimize business and security risks.
  • Communicate incident status to stakeholders and maintain accurate documentation to ensure effective handovers and audit readiness.

Skills

  • Minimum 5 years of experience in Incident Management, Cyber Security, IT Operations, IT Service Management, Security Operations, or a related technology function.
  • Good understanding of enterprise technologies especially focusing on security devices, network engineering, operating systems, databases and security configurations on application level.
  • Familiarity with the MITTRE ATT&CK framework, good knowledge of current threat landscape and attack scenarios/tactics, as well as containment and protection measures.
  • Background on incident management, preferrable in the cyber-security field.
  • Strong understanding on system logs analysis, network traffic logs, payload analysis, event logs, application logs, firewall logs, Active Directory etc.
  • Strong understanding of Security Incident and Event Management (SIEM) systems, such as Splunk Enterprise Security, Google SecOps, or Sentinel.
  • Fluent in English, very good communication skills and confident assuming timely decisions.  Independent way of working with strong decision making and problem-solving ability.
  • Appetite for continuous learning.
  • Comfortable/experienced with working in international & multicultural teams.

Always a plus

  • System Administration or Security Operations experience, particularly on Google Cloud and/or Azure environments.
  • Experience of networks, firewalls and related security tools.
  • CISSP, CISM, GCIH or other relevant certifications in the field.
  • German language skills.

Proven ability to leverage AI tools to enhance productivity, optimise workflows to solve business problems, while applying critical judgment to ensure responsible and ethical use of data and AI outputs.

Well-being & Benefits

Emotionally and mentally balanced: We support you in dealing with life crises, maintaining stability through illness, and maintaining good mental health.

  • Empowering managers who value your ideas and decisions. Show your positive attitude, determination, and open-mindedness.
  • A professional, passionate, and fun workplace.
  • A modern office with fun and relaxing areas to boost creativity.
  • Continuous learning culture with coaching and support from team experts.
  • A culture where you can openly speak about mental health.

Physically thriving: We support you managing your physical health by taking appropriate preventive measures and providing a workplace that helps you thrive. For example, Private healthcare and life insurance with premium benefits for you and discounts for your loved ones, healthier ways of working and check-up's.

Socially connected: We strongly believe in collaboration, inclusion and feeling connected to open up new perspectives and strengthen our self-confidence and well-being.

  • 24 days holiday, loyalty days, and bank holidays (including weekdays for weekend bank holidays).
  • Hybrid working model with flexible working options
  • Enjoy retailer discounts, cultural and CSR activities, workshops, and more.

Financially secure: We support you to meet personal financial goals during your active career and for the future.

  • Competitive income, performance-based promotions, and a sense of purpose.
  • Meal vouchers, bonuses for referrals

Interested in more: discover what our employees value in the Well-being & Benefits hub!

We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively.

Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group.

We welcome applications from all people and promote a positive, fair and inclusive work environment.

Frequently Asked Questions

Is the salary disclosed for the Security Incident Response Manager (f/m/x) position at db?
The salary for this Security Incident Response Manager (f/m/x) role at db is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Security Incident Response Manager (f/m/x) position at db located?
This Security Incident Response Manager (f/m/x) role at db is based in Bucharest, 6A Dimitrie Pompeiu Blvd. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Security Incident Response Manager (f/m/x) role at db full-time or part-time?
This is listed as a Full time position. It is posted as a Security Incident Response Manager (f/m/x) role in the F063 DB Global Technology SRL department at db.
Which team or department does the Security Incident Response Manager (f/m/x) at db belong to?
This Security Incident Response Manager (f/m/x) position is part of the F063 DB Global Technology SRL department at db. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Security Incident Response Manager (f/m/x) position at db?
Click the "Apply Now" button on this page. You will be redirected to db's official application portal hosted on workday where you can submit your application directly.
When was the Security Incident Response Manager (f/m/x) job at db posted?
This Security Incident Response Manager (f/m/x) position at db was posted on Sep 16, 2026. Apply as soon as possible — early applications are often reviewed first.
Security Incident Response Manager (f/m/x)
db
Apply for this role ↗

You'll be redirected to db's official application page on Workday.