Cyber - Digital Forensics & Incident Response Analyst (DFIR) - SDS

Santander·Boadilla del Monte, Spain

What they offer

  • Permanent contract

    Full-time hours.

  • Hybrid

    Office and home days — the ad has the split.

What they ask for

  • Have the right to work in Spain

    Santander doesn't mention sponsorship in the ad.

  • Work in English

    English is required, per the ad.

  • Be near Boadilla del Monte for hybrid days

    No relocation package mentioned.

Pulled from the advert automatically — the full ad is what counts.

Added 8 days ago
Read the full advert

About the role

Cyber - Digital Forensics & Incident Response Analyst (DFIR) - SDSCountry: Spain

Job Description

Santander (www.santander.com) is evolving from a high-impact global brand into a technology-driven organization, and our people are at the center of this journey. Together, we are driving a customer-centric transformation that values bold thinking, innovation, and the courage to challenge what is possible.

This is more than a strategic shift. It is an opportunity for motivated professionals to grow, learn, and make a real difference.

Our mission is to help more people and businesses prosper. We embrace a strong risk culture, and we expect all our professionals at every level to take a proactive and responsible approach to risk management.

Santander Digital Services is the technology and operations team at Santander. We are convinced of the importance of technology that is aligned with business requirements and that our work not only brings value to users, people, and communities, but also fosters individual creativity. Our team of more than 10,000 people across 8 countries (Spain, Portugal, Poland, the United Kingdom, the USA, Mexico, Chile, and Brazil) develops and/or implements financial solutions across a wide range of technologies (including Blockchain, Big Data, and Angular) on all types of on-premise and cloud-based platforms.

Santander Digital Services is looking for a DFIR Analyst to work in our offices located in Boadilla del Monte, for the Global CERT, a key team within our technological ecosystem.

What you'll do

We are shaping the way we work through innovation, cutting-edge technology, collaboration, and the freedom to explore new ideas. To succeed in this role, you will be responsible for:

  • Participate in complex Digital Forensics & Incident Response (DFIR) investigations, including complex and advanced engagements.

  • Acquire and analyze forensic artifacts on different platforms (*Nix, MacOS, Windows, Android, among others) to determine the vector of compromise, the scope of the incident, and the attacker's actions.

  • Search, correlate, and analyze logs in SIEM environments.

  • Prepare technical and executive reporting for cases.

  • Identify and propose improvements to technological risks and controls within the Group.

What we're looking for

Our people are our greatest strength. Each individual brings unique perspectives that make us stronger as a team and as an organization. We are empowering teams to go further by valuing who they are and maximizing what they contribute.

The following requirements represent the essential knowledge, skills, and abilities for success in this role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Demonstrable experience in Digital Forensics & Incident Response (DFIR), digital forensic analysis, or in a SOC or CSIRT environment.

  • Practical experience in the analysis and acquisition of artifacts in Windows and/or Linux environments.

  • Participation in security incident management in corporate or similar environments.

  • Motivation to deepen technical expertise and evolve towards managing complex investigations in a global environment.

Nice to have

  • Knowledge of a SIEM (Splunk, Crowdstrike, QRadar, or other similar tools).

  • Solid knowledge of Windows and/or Linux operating systems from a technical perspective.

  • Experience with forensic tools such as EnCase, Cellebrite, Nuix, or other similar tools. (Valuable)

  • Certifications such as CompTIA Security+, CySA+, eCIR, Blue Team Level 1/2, or other relevant training related to incident analysis or blue teaming. (Valuable)

  • Technical curiosity and a continuous learning mindset.

  • Analytical skills, communication skills, and attention to detail.

  • Ability to write clear and concise technical documentation.

  • Good team spirit.

Education & certifications

  • Vocational Training (CFGS), a degree in a technological field, or equivalent demonstrable experience in cybersecurity/digital forensics.

Languages

  • Advanced English level in an international professional environment. (Mandatory)

What you'll get

Your contribution matters and is recognized. You can expect a fair and competitive rewards package that reflects the impact you create and the value you deliver. But we know that rewards go beyond numbers.

  • We enable our teams to go further through global opportunities and expansive career paths.

  • Flexibility that works. Enjoy hybrid work models, with some days remote and others in person with your team, along with flexible hours.

  • Lifelong learning. Access hundreds of courses on our platforms, including exclusive access to our global learning hub: Santander Open Academy (www.santanderopenacademy.com)

  • Competitive rewards. Receive a highly competitive salary with performance-based bonuses, keeping you motivated to grow with us.

  • Financial benefits. Enjoy preferential banking conditions, special interest rates on loans, life insurance, and more.

  • Your health is our priority. Through BeHealthy, our global wellness program, we promote holistic well-being.

  • We know that family comes first. That's why we offer childcare support and family programs tailored to every stage of life.

  • Always by your side. Access Santander Contigo, our program for employees and their families offering legal, emotional, and administrative advisory services.

  • Additional benefits. Gym membership/WellHub, medical centers at some of our facilities, meal allowance, parking, shuttle service from various points in Madrid, as well as exclusive discounts and offers for Santander employees. And that's just the beginning: we'll tell you more when you join!

We are here to keep you motivated, help you achieve your goals, and celebrate your progress, every step of the way.

Hiring process

If this sounds like a role that interests you, please apply.

Additional information

Santander is proud to be an organization that provides equal opportunities regardless of age, gender, disability, marital status, race, religion, or sexual orientation. We are committed to providing an inclusive and accessible application process for all candidates.

This job was automatically translated to English, .

About the company

Santander

Santander

Banking and Fintech

View company profile
Spanish company
210000 employees