Respond to and investigate security incidents across enterprise and cloud environments, perform digital forensics and malware analysis on Linux/Windows/macOS, triage alerts from SIEM/EDR/cloud tools, improve IR processes and metrics, and communicate findings and recommendations to stakeholders.
What's the role?
Team:
You will join a global Security Operations Center (SOC) and Incident Response team operating across multiple regions, responding to incidents during EMEA business hours. In this role, you'll collaborate with some of the brightest minds in cybersecurity to protect our organization from evolving threats. The SOC's mission is to proactively identify, detect, and respond to security incidents within the HERE environment, performing in-depth forensic analysis to prevent future occurrences. We adhere to industry best practices throughout the incident response lifecycle while leveraging innovative approaches to tackle the most complex security challenges.
*]:pointer-events-auto scroll-mt-[calc(var(--header-height)+min(200px,max(70px,20svh)))]" dir="auto" tabindex="-1" data-turn-id="request-WEB:52dc859d-c957-47fc-a452-5efed682256d-1" data-testid="conversation-turn-4" data-scroll-anchor="true" data-turn="assistant">
As a Senior Security Engineer, you will serve as an individual contributor focused on security incident response, investigations, and digital forensics. You will triage, investigate, and resolve security incidents across enterprise and cloud environments, and help strengthen incident response capabilities through process improvements, metrics, and threat-informed recommendations.
Key Responsibilities
Who are you?
What Do We Offer?
Change is HERE. Apply Now!
As part of HERE Technologies employment process, candidates will be required to successfully complete a pre-employment screening process. This offer and any related claims are subject to the successful completion of a pre-employment screening. This will involve employment, education, and criminal verification if applicable.
#LI-AY2 #LI-HYBRID
Who are we?
HERE Technologies is a location data and technology platform company. We empower our customers to achieve better outcomes - from helping a city manage its infrastructure or a business optimize its assets to guiding drivers to their destination safely.
At HERE we take it upon ourselves to be the change we wish to see. We create solutions that fuel innovation, provide opportunity and foster inclusion to improve people's lives. If you are inspired by an open world and driven to create positive change, join us. Learn more about us on our YouTube Channel.
Team:
You will join a global Security Operations Center (SOC) and Incident Response team operating across multiple regions, responding to incidents during EMEA business hours. In this role, you'll collaborate with some of the brightest minds in cybersecurity to protect our organization from evolving threats. The SOC's mission is to proactively identify, detect, and respond to security incidents within the HERE environment, performing in-depth forensic analysis to prevent future occurrences. We adhere to industry best practices throughout the incident response lifecycle while leveraging innovative approaches to tackle the most complex security challenges.
*]:pointer-events-auto scroll-mt-[calc(var(--header-height)+min(200px,max(70px,20svh)))]" dir="auto" tabindex="-1" data-turn-id="request-WEB:52dc859d-c957-47fc-a452-5efed682256d-1" data-testid="conversation-turn-4" data-scroll-anchor="true" data-turn="assistant">
As a Senior Security Engineer, you will serve as an individual contributor focused on security incident response, investigations, and digital forensics. You will triage, investigate, and resolve security incidents across enterprise and cloud environments, and help strengthen incident response capabilities through process improvements, metrics, and threat-informed recommendations.
Key Responsibilities
- Triage, investigate, and resolve security incidents from multiple sources, following established playbooks, including (but not limited to):
- Phishing email reports
- SIEM/SOAR alerts (Splunk)
- Cloud security alerts (AWS/Azure)
- Endpoint Detection & Response alerts (CrowdStrike)
- Host-based proxy alerts (Zscaler)
- Abuse reports, account compromises, and other security escalations
- Perform in-depth incident investigations, including forensic evidence collection and analysis, to determine scope, root cause, and impact.
- Conduct malware behavior analysis to assess impact and recommend remediation across Linux, Windows, and macOS environments.
- Help improve incident response processes by providing feedback, documenting lessons learned, and tracking operational metrics for leadership.
- Perform threat analysis of emerging threats and communicate findings, recommendations, and risk implications to management.
- Stay current with attacker tactics, techniques, and procedures (TTPs) to identify and respond to sophisticated threats.
- Clearly articulate incident details and response actions to business stakeholders and non-technical audiences.
Who are you?
- Bachelor's or Master's degree in Computer Science, Engineering, or equivalent practical experience.
- 5+ years of professional experience in Security Operations, Incident Response, Digital Forensics, or a closely related cybersecurity role.
- Strong knowledge of incident response processes and incident handling; GCIH/GCIA/GNFA (or equivalent) certifications are a plus.
- Malware analysis skills: ability to analyze malware behavior, assess impact, and recommend remediation across Linux, Windows, and macOS environments.
- Digital forensics experience: solid understanding of forensic evidence collection and analysis to support incident investigations.
- Strong security fundamentals, including modern attack vectors, exploitation techniques, and attack execution patterns.
- Cloud experience required: hands-on experience investigating and responding to security incidents in AWS and/or Azure (e.g., log sources, IAM, network controls, cloud-native security services).
- Excellent communication skills; fluent in English.
What Do We Offer?
- Work on the development of large-scale services, serving and storing petabytes of data
- Work with cutting-edge, modern technologies
- A great work-life balance
- Flexible working hours
- Competitive salary plus bonus
- Fantastic & talented people from 60+ countries worldwide
Change is HERE. Apply Now!
As part of HERE Technologies employment process, candidates will be required to successfully complete a pre-employment screening process. This offer and any related claims are subject to the successful completion of a pre-employment screening. This will involve employment, education, and criminal verification if applicable.
#LI-AY2 #LI-HYBRID
Who are we?
HERE Technologies is a location data and technology platform company. We empower our customers to achieve better outcomes - from helping a city manage its infrastructure or a business optimize its assets to guiding drivers to their destination safely.
At HERE we take it upon ourselves to be the change we wish to see. We create solutions that fuel innovation, provide opportunity and foster inclusion to improve people's lives. If you are inspired by an open world and driven to create positive change, join us. Learn more about us on our YouTube Channel.
HERE Technologies London, England Office
20 Eastbourne Terrace, 11th floor, London, United Kingdom, W2 6LA
Similar Jobs at HERE Technologies
Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Build and maintain developer-facing tooling, GitLab CI pipelines, and automation for scalable map rendering services. Implement Python/Go/Bash automation, optimize pipeline performance, debug build/test/release workflows, and collaborate across teams to improve developer productivity and delivery reliability.
Top Skills:
AWSAzureBashGCPGithub ActionsGithub CopilotGitlab CiGoPython
Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Lead works council and employee representation matters with a primary focus on Germany. Advise stakeholders on consultation, manage processes and documentation, facilitate meetings, resolve workplace issues, coach team members, and collaborate with legal and cross-functional partners to ensure compliant rollout of policies and communications across Europe and globally.
Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Lead product vision and roadmap for the HERE WeGo consumer mobile and web apps. Define user value propositions, drive acquisition and discoverability with marketing, collaborate with design, engineering, QA, and cross-functional teams (Automotive, Map Content, Location Services) to deliver features, and use app KPIs/analytics to guide decisions. Support strategy execution and stakeholder alignment. Up to 10% travel.
What you need to know about the London Tech Scene
London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

