
Cyber Incident Response Manager
Fever · Madrid, Community of Madrid, Spain
- On site
- Full-time
- €75,000 / year
- Madrid, Community of Madrid, Spain
Job highlights
- Lead global security for a live entertainment tech platform.
- Mature incident response and security operations capabilities.
- Enhance detection engineering and refine response processes.
- Manage and mentor a specialized incident response team.
- Protect a fast-moving, high-growth global organization.
About the role
About Fever
Hey there! We’re Fever, the world’s leading tech platform for culture and live entertainment. Our mission? To democratize access to culture and entertainment. With our proprietary cutting-edge technology and data-driven approach, we’re revolutionizing the way people engage with live entertainment. Every month, our platform inspires over 300 million people in +55 countries (and counting) to discover unforgettable experiences while also empowering event creators with our data and technology, helping them scale, innovate, and enhance their events to reach new audiences. Our results? We’ve teamed up with major industry leaders like Netflix, F.C. Barcelona, and Primavera Sound, presented international award-winning experiences, and are backed by several leading global investors! Impressive, right? To achieve our mission, we are looking for bar-raisers with a hands-on mindset who are eager to help shape the future of entertainment! Ready to be part of the experience? Now, let’s discuss this role and what you will do to help achieve Fever’s mission.About the role
We are seeking a Cyber Incident Response Manager to strengthen and scale Fever’s global security posture across both cloud and corporate IT environments. In this role, you will mature our end-to-end incident response lifecycle and elevate our security operations capabilities to protect a fast-moving, high-growth global organization. You will lead the enhancement of detection engineering, refine incident response processes and runbooks, and extend security coverage into new operational areas. Additionally, you will help grow and empower a specialized team focused on reducing response and containment times while driving continuous improvements in detection logic, automation and tooling.What would you do at Fever?
On your first month in Fever:- Be fully integrated into the team. You will participate in planning and follow-up meetings with other areas.
- Have met the departments of Fever.
- Get familiar with Fever's technological structure and ecosystem (applications, infrastructure, architecture, etc.)
- Gain a deep understanding of Fever’s cloud infrastructure, security stack and current IR processes.
- Assess the current cyber incident response posture, threat detections and monitoring capabilities.
- Conduct a maturity assessment of IR processes for our cloud service providers (e.g. AWS) and other critical platforms.
- Review existing runbooks and identify gaps or areas for rapid improvement.
- Lead cross-functional tabletop exercises with engineering, data and operations teams.
- Build a prioritized action plan for strengthening transversal incident response across teams.
- Operate a mature, measurable and scalable incident response process.
- Deliver improved detection logic and automation that reduces mean time to identify, contain and mitigate incidents.
- Propose new detection strategies and execute improvements to threat intelligence and monitoring coverage.
- Optimize KPIs and expand reporting to ensure progress against security objectives.
Key Responsibilities
- Strengthen and scale the incident response program.
- Design, update and maintain IR processes, playbooks and runbooks tailored to cloud and corporate IT environments.
- Enhance detection engineering capabilities by collaborating with infrastructure, data and engineering teams.
- Lead response coordination efforts during incidents, ensuring rapid containment, eradication and recovery.
- Enhance monitoring and detection with integrated threat intelligence and advanced threat detection capabilities.
- Manage and mentor a specialized incident response team.
- Continuously assess and improve IR metrics, KPIs, dashboards and reporting methodologies.
- Conduct IR training, simulations and preparedness exercises across the organization.
About You
Must have:- Strong understanding of modern security tooling, including SOAR platforms, cloud-native detection services, EDR solutions (e.g. CrowdStrike), SIEM platforms and automation technologies.
- Skilled in analyzing and correlating large-scale security telemetry across cloud, SaaS, and endpoint sources using languages and tools such as Python, AWS Athena, Google BigQuery, etc.
- Ability to rapidly automate data handling, detection logic and remediation workflows.
- Hands-on experience responding to security incidents in cloud environments.
- Ability to design, document and maintain IR runbooks, playbooks and tabletop exercises.
- 5+ years of experience in cybersecurity, with at least 2–3 years dedicated to leading an incident response process.
- Fluent in English (written and spoken).
- Analytical mindset and strong problem-solving skills.
- Excellent communication skills.
- Bachelor or Master’s Degree in Computer Science, Information Security, or another similar relevant degree (or equivalent experience in a technical security role).
- Professional certifications demonstrating technical IR expertise and cloud security proficiency, such as GCIH, GCIA, GCFA, GEIR, AWS Security Specialty, or similar industry-recognized credentials.
Benefits & Perks
- Opportunity to have a real impact in a high-growth global category leader
- 40% discount on all Fever events and experiences
- Position based in Madrid, home office friendly.
- Relocation package for international candidates
- Responsibility from day one and professional and personal growth
- Great work environment with a young, international team of talented people to work with!
- Health insurance and other benefits such as Flexible remuneration with a 100% tax exemption through Cobee.
- English Lessons
- Gympass Membership
- Possibility to receive in advance part of your salary by Payflow.
- Attractive compensation package consisting of base salary and the potential to earn a significant bonus for top performance.
Key skills/competency
Cyber Incident Response Manager, Incident Response Lifecycle, Security Operations, Detection Engineering, Cloud Security, SIEM, SOAR, EDR, Python, Threat IntelligenceSkills & topics
- Cyber Incident Response Manager
- Incident Response
- Cybersecurity
- Security Operations
- Cloud Security
- SIEM
- SOAR
- EDR
- Threat Intelligence
- Python
How to get hired
- Tailor your resume: Highlight 5+ years cybersecurity experience, with 2-3 years leading incident response. Emphasize cloud security, SOAR, SIEM, and EDR tool proficiency.
- Showcase technical skills: Detail experience with Python, AWS Athena, Google BigQuery, and automating data handling/remediation workflows.
- Prepare for interviews: Be ready to discuss your experience responding to cloud security incidents and designing IR playbooks.
- Highlight leadership: Demonstrate your ability to manage and mentor a specialized team and conduct tabletop exercises.
- Express cultural fit: Align your application with Fever's mission to democratize culture and entertainment.
Technical preparation
Master modern security tools like SOAR, EDR, SIEM.,Practice analyzing security telemetry with Python/BigQuery.,Automate data handling, detection, and remediation.,Prepare to discuss cloud incident response scenarios.
Behavioral questions
Describe a complex security incident you managed.,How do you mentor and develop a security team?,How do you collaborate with engineering and data teams?,How do you handle pressure during a critical incident?
Frequently asked questions
- What are the key responsibilities for the Cyber Incident Response Manager at Fever?
- The Cyber Incident Response Manager at Fever will be responsible for strengthening and scaling the incident response program, designing and maintaining IR processes and playbooks, enhancing detection engineering, leading incident response coordination, managing a specialized team, and continuously improving IR metrics and reporting.
- What technical skills are required for the Cyber Incident Response Manager role at Fever?
- Required technical skills include a strong understanding of modern security tooling (SOAR, cloud-native detection, EDR, SIEM), proficiency in analyzing security telemetry using Python, AWS Athena, or Google BigQuery, and hands-on experience responding to incidents in cloud environments. Automation skills for data handling and remediation are also essential.
- What is the experience level expected for the Cyber Incident Response Manager position?
- Candidates should have at least 5 years of experience in cybersecurity, with a minimum of 2-3 years specifically dedicated to leading an incident response process. Experience in cloud environments is crucial.
- What are the benefits of working as a Cyber Incident Response Manager at Fever?
- Fever offers a 40% discount on events, a relocation package for international candidates, opportunities for professional growth, a great work environment with an international team, health insurance, flexible remuneration, English lessons, and an attractive compensation package with base salary and bonus potential.
- Is this Cyber Incident Response Manager position remote, hybrid, or on-site?
- The position is based in Madrid and is described as 'home office friendly,' suggesting a hybrid work arrangement is possible, though not explicitly stated as fully remote.
- What is Fever's approach to diversity and inclusion for this role?
- Fever is committed to creating an inclusive and diverse workspace, encouraging applications from candidates of all backgrounds and experiences. They aim to find the best talent regardless of various personal characteristics and offer accommodations during the selection process.
- What kind of professional certifications are beneficial for the Cyber Incident Response Manager role?
- While not strictly required, professional certifications like GCIH, GCIA, GCFA, GEIR, or AWS Security Specialty are considered a plus, demonstrating technical IR expertise and cloud security proficiency.
- How does Fever support the professional development of its Cyber Incident Response Manager?
- Fever emphasizes responsibility from day one, offering significant opportunities for professional and personal growth. The role is within a high-growth global leader, providing a dynamic environment to enhance skills and career.