abysalto
abysalto2d ago
New

Senior Product Security Incident Response Engineer (m/f)

CroatiaCroatia·ZagrebHybridsenior
OtherIncident Response Engineer
0 views0 saves0 applied

Quick Summary

Overview

Dive deeper. Aim higher.At Abysalto, that’s not just a motto — it’s how we work. We build serious tech for a variety of clients, but we keep things simple, fast, and focused.

Technical Tools
OtherIncident Response Engineer

Responsibilities

~1 min read
  • Manage the intake, analysis, and resolution of security vulnerabilities and incidents
  • Coordinate security incident response activities in collaboration with development, DevOps, QA, and security teams
  • Define and continuously improve vulnerability management processes
  • Communicate with external vulnerability reporters, partners, and regulatory bodies
  • Ensure the timely publication of security advisories
  • Monitor relevant security standards (ISO 27001, ISO 29147, ISO 30111, NIST, CVSS, CWE) and regulations (NIS2/ZKS, CRA, CSA, GDPR)
  • Prepare security incident reports and manage related metrics
  • Educate internal teams on security practices and procedures

Requirements

~1 min read
  • Several years of experience in information security, with a focus on incident response or vulnerability management
  • Experience leading teams or coordinating cross-functional initiatives
  • Good understanding of application, network, and infrastructure security
  • Deep understanding of common vulnerability classes (OWASP Top 10, CWE Top 25) and exploitation techniques
  • Knowledge of standards and regulatory frameworks such as NIST, OWASP, NIS2, the Cyber Resilience Act (CRA), GDPR, ISO/IEC 27001, ISO/IEC 29147, and ISO/IEC 30111
  • Experience with vulnerability tracking tools and ticketing systems
  • Excellent communication and organizational skills
  • Experience working under pressure, including crisis communication and managing multiple parallel incidents
  • Professional working proficiency in English

Nice to Have

~1 min read
  • Certifications such as CISSP, CISM, GCIH, or similar
  • Experience working in a PSIRT or similar security teams
  • Knowledge of coordinated vulnerability disclosure processes, with hands-on experience in CVSS scoring and the CVE process
  • Experience with reverse engineering, penetration testing, or exploit development
  • Experience working with SBOMs (CycloneDX, SPDX) and tools such as Dependency-Track
  • Experience with cloud security and container security

What We Offer

~1 min read
Work in an experienced and encouraging team
Continuous professional development through training and conferences
Flexible working hours with the option of hybrid work
Work in an agile environment following SCRUM methodology
Pleasant and relaxed work environment with various perks (top-quality Herman Miller Aeron chairs, high-end equipment, discounts with partner companies)
All perks and benefits can be found on our career page

We look forward to meeting you!

Location & Eligibility

Where is the job
Zagreb, Croatia
Hybrid — some on-site time required
Who can apply
HR

Listing Details

Posted
May 22, 2026
First seen
May 22, 2026
Last seen
May 23, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
42%
Scored at
May 22, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

abysaltoSenior Product Security Incident Response Engineer (m/f)