Head of Cyber Defence & Incident Response

Remote — Hradec Kralove, Královéhradecký kraj, Czech Republic Posted 4d First seen 3d
ATS Keyword Match See which key terms from this posting your resume already has. Free.

Join Quadient, a company dedicated to supporting businesses in their digital transformation and growth journey. As the Head of Cyber Defence and Incident Response, you will lead the organization's cyber defense operations and incident response efforts. You will optimize security tooling, manage the MSSP relationship, and drive vulnerability and threat management. This role offers a hybrid work model, access to global learning opportunities, and a comprehensive rewards package.

About the role

  • Strong experience leading cyber defence/SOC and incident response, including major incident coordination, investigation, containment and recovery.
  • Hands-on understanding of detection and response tooling and concepts (SIEM, SOAR, EDR/XDR, NDR, email security, log pipelines), including tuning, use-case engineering and operational workflows.
  • Proven experience managing an MSSP or outsourced SOC capability, including SLAs/KPIs, service governance, escalations, and continuous improvement.
  • Strong experience running vulnerability management and threat management programmes, including prioritisation based on exploitability, exposure, and business impact.
  • Knowledge of incident response processes, digital forensics fundamentals, evidence handling, and working with legal/privacy and external forensic partners.
  • Experience defending hybrid environments (on‑prem and cloud), including identity signals, network telemetry, endpoint visibility, and cloud-native security monitoring.
  • Ability to operate under pressure and lead cross-functional teams through high-severity incidents, communicating clearly and making timely risk-based decisions.
  • Fluent in English – excellent written and verbal communication skills, including producing clear architecture guidance, standards, and security design documentation.

Desirable

  • Certifications such as GCIH, GCIA, GNFA, CISSP, CISM, or equivalent experience in incident response and security operations.
  • Experience with threat hunting, purple teaming, and using MITRE ATT&CK to structure detections, gaps analysis, and defensive improvements.
  • Experience with security operations in cloud platforms and common tools (e.g., Microsoft Defender, Sentinel, Splunk, CrowdStrike, Palo Alto, AWS/Azure security services) and integrating telemetry across environments.
  • Calm under pressure, able to lead effectively during incidents and make timely decisions with incomplete information.
  • Highly collaborative, able to coordinate across IT, engineering, legal/privacy, and business leaders during investigations and recovery.
  • Operationally rigorous with strong attention to detail, documentation and evidence quality (case notes, timelines, lessons learned).
  • Continuous improvement mindset—drives measurable outcomes through tooling optimisation, process refinement, and coaching teams to improve security hygiene.

Additional Information

Rewards & Benefits  

  • Flexible Work: Embrace a hybrid work model blending office and remote setup for a balanced lifestyle.  
  • Endless Learning: Access global opportunities for growth through our 24/7 online learning platform.  
  • Inclusive Community: Join our Empowered Communities and engage in our Philanthropy program.  
  • Comprehensive Rewards: Enjoy competitive Total Rewards covering wellness, work/life balance, and more, including a generous referral scheme.  
  • Caring for Wellbeing: Access our complimentary employee assistance program for mental health support.  

Smart Work at Quadient 
At Quadient, our Smart Work approach fosters connection, collaboration, and innovation while offering flexibility based on role requirements. Whether on-site, hybrid, or remote, our work environments are designed to support productivity and engagement. Hybrid employees balance remote and in-office work, on-site roles contribute daily to our vibrant workplace culture, and remote employees stay connected through virtual collaboration and in-person events. No matter where you work, you’ll be part of a dynamic, people-first community that drives success together. 

Be yourself at Quadient  
Our values define how we work as a team: Empowerment, Passion, Inspiration and Community.  They inspire us to be EPIC. Together. What makes Quadient different is how different we are. We’re a team of individuals with one goal but many perspectives. When you connect with Quadient, you become part of a community that cares - in a culture that embraces differences and values every voice.  

We will consider any reasonable modifications to the interview process. If you require any assistance with the application process, please email us at career@quadient.com  

Quadient is an Equal Employment Opportunity Employer. *: We firmly believe in zero discrimination in employment on any basis, including race, color, religion, sex, national origin, age, disability, veteran or military status, genetic information, citizenship status, and any other characteristics protected by local, state, or federal law. 

People. Connected. 

Rewards & Benefits  

  • Flexible Work: Embrace a hybrid work model blending office and remote setup for a balanced lifestyle.  
  • Endless Learning: Access global opportunities for growth through our 24/7 online learning platform.  
  • Inclusive Community: Join our Empowered Communities and engage in our Philanthropy program.  
  • Comprehensive Rewards: Enjoy competitive Total Rewards covering wellness, work/life balance, and more, including a generous referral scheme.  
  • Caring for Wellbeing: Access our complimentary employee assistance program for mental health support.  

Smart Work at Quadient 
At Quadient, our Smart Work approach fosters connection, collaboration, and innovation while offering flexibility based on role requirements. Whether on-site, hybrid, or remote, our work environments are designed to support productivity and engagement. Hybrid employees balance remote and in-office work, on-site roles contribute daily to our vibrant workplace culture, and remote employees stay connected through virtual collaboration and in-person events. No matter where you work, you’ll be part of a dynamic, people-first community that drives success together. 

Be yourself at Quadient  
Our values define how we work as a team: Empowerment, Passion, Inspiration and Community.  They inspire us to be EPIC. Together. What makes Quadient different is how different we are. We’re a team of individuals with one goal but many perspectives. When you connect with Quadient, you become part of a community that cares - in a culture that embraces differences and values every voice.  

We will consider any reasonable modifications to the interview process. If you require any assistance with the application process, please email us at career@quadient.com  

Quadient is an Equal Employment Opportunity Employer. *: We firmly believe in zero discrimination in employment on any basis, including race, color, religion, sex, national origin, age, disability, veteran or military status, genetic information, citizenship status, and any other characteristics protected by local, state, or federal law. 

People. Connected. 

Key missions

  • Assurer la capacité de défense cybernétique de l'organisation dans un environnement hybride, en garantissant une surveillance, une détection, une réponse et une récupération efficaces.
  • Diriger les opérations de défense cybernétique et la réponse aux incidents de cybersécurité au sein de l'organisation, en coordonnant la réponse aux incidents de sécurité.
  • Optimiser les outils de sécurité et diriger la gestion des vulnérabilités et des menaces, en utilisant l'intelligence sur les menaces pour prioriser les améliorations défensives.