Baobab Insurance GmbH logo

Incident Responder - Dutch speaking (m/f/d)

Baobab Insurance GmbH

Rotterdam
Full-time
2-5 years experience
Hybrid

Work Arrangement

Office Days per Week: 3 days

Key Skills

Incident response
Forensic investigation
Ransomware analysis
Systems restoration
Active Directory
Microsoft 365
SIEM
EDR
Splunk
CrowdStrike
Velociraptor
Windows Defender
AI tools
Threat hunting
Technical documentation
Log analysis

Job Description

Welcome to Baobab Risk Solutions – Your Partner for the Cyber Security of Tomorrow!
The digital world is growing – and with it, the threat of cyber attacks. Every successful attack not only jeopardizes businesses but also undermines trust in our connected society. At Baobab Risk Solutions, we are committed to making the digital world safer – proactively, sustainably, and with cutting-edge technology. Our mission: to protect companies from cyber threats before they arise, contributing to a more secure digital future.
Shape the digital security of tomorrow with us. Join a team that doesn’t just watch but actively protects. Your ideas and commitment can make all the difference. If that’s not enough, here’s more:

  • Flexible Working: With your MacBook, you can work from home two days per week and work in our modern office in Rotterdam the remaining days.

  • Attractive Compensation: Competitive salary and VSOP options.

  • Growth & Career: Grow with us – in a dynamic company with clear advancement opportunities.

  • and many more benefits.

Baobab Risk Solutions – Growing together. Making the digital world safer, together.

Your Mission

  • Execute containment and forensic investigation of ransomware, business email compromise and other incidents: preserve evidence, analyze host and identity logs, and develop findings with specialist guidance.

  • Support systems restoration after cyber incidents: assess backups, rebuild servers and endpoints, resolve dependencies and validate services before returning them to use.

  • Work with client IT teams and managed service providers across Windows, Active Directory, Microsoft 365, virtualization and backup environments.

  • Document technical work and communicate progress, uncertainties and blockers, escalating risks to the lead.

  • Put cutting-edge AI tools to work in investigations, recovery and automation. Experiment with new approaches, validate results and help shape how the team adopts them, while protecting incident data.

  • Improve recovery checklists, scripts and playbooks by sharing lessons from casework.



Your Profile

Minimum requirements for the role

  • Professional working proficiency in Dutch and English for client discussions, written updates and coordination with international response partners.

  • 2+ years of hands-on experience in IT support, systems administration, recovery or incident response.

  • Experience using SIEM, EDR and forensic tools, such as Windows Defender for Business, Splunk, CrowdStrike, Velociraptor, X-Ways, KAPE, Hayabusa, SOF-ELK or OpenRelik. (These are examples; experience with comparable tools is equally relevant.)

  • Basic experience documenting technical work in tickets, change logs or recovery notes.

  • Practical experience using AI tools for technical tasks, such as information extraction, log analysis or agentic workflows.

  • Openness to coaching and feedback, and motivation to develop your security and investigation skills.

Languages

  • Dutch - business fluent

  • English - business fluent

Requirements that give you an edge

  • Strong practical restoration experience, ideally with SMEs or small IT teams.

  • Hands-on troubleshooting and backup or restore knowledge, with willingness to learn unfamiliar technologies.

  • Familiarity with threat hunting and using threat intelligence to guide investigations, prioritize suspicious activity and assess indicators of compromise.

Why us?

  • Flexible work options - work from home for up to two days a week and join us in our office in Rotterdam for the remaining two days 

  • 28 Vacation Days - plus Christmas Eve & New Year’s Eve

  • Competitive Compensation - Attractive salary & equity options

  • Continuous Learning - Support for your professional growth and development, both internally and through access to the Udemy Business platform

  • Challenging & Supportive Culture - Work with motivated colleagues in an environment where you can grow, achieve, and enjoy the journey

  • Long-Term Growth - A stable career path in a fast-growing company

  • Welcoming Team - A people-first culture where joy at work and future prospects come first

Our Values

  • Customer First: Our customers and partners always come first.

  • Embrace Speed: Fast decisions and pragmatic solutions.

  • Data Over Gut Feeling: We make data-driven decisions.

  • Take Ownership: You get involved, no matter your position.

  • Continuous Learning: We challenge ourselves and grow together.

  • Open Culture: We have no rigid hierarchies. We communicate openly, directly, and at eye level.

Diversity welcome!

What matters to us is who you are and what you want to contribute – not your origin, gender, skin color, religion or beliefs, sexual orientation, gender identity, age, or whether you live with or without a disability. We believe in the strength of diverse teams and create an environment where everyone feels welcome and respected.

If you're interested in making a difference with us, we look forward to receiving your application!

Core Responsibilities

Execute containment and forensic investigations of cyber incidents while supporting system restoration and service validation. Document technical findings and utilize AI tools to improve recovery playbooks and automation workflows.

Requirements

Requires professional proficiency in Dutch and English with at least 2 years of experience in IT support, systems administration, or incident response. Candidates must have practical experience with SIEM, EDR, and forensic tools, along with a motivation to develop security investigation skills.

Benefits

  • Flexible working
  • VSOP options
  • 28 vacation days
  • Christmas Eve off
  • New Year's Eve off
  • Continuous learning
  • Udemy Business access

About Baobab Insurance GmbH

Industry: Insurance

Company size: 11-50 employees

Baobab Risk Solutions is the leading MGA (Managing General Agent) and partner for digital risk management. The company combines preventative technology with comprehensive insurance coverage, including cyber insurance, fidelity insurance, and IT liability. A central pillar of the portfolio is continuous, AI-based monitoring of the attack surface, alongside the Baobab MDR (Managed Detection and Response) solution for active threat defense. BRS also integrates a variety of risk-relevant services—such as phishing simulations and awareness training—into its insurance coverage at no additional cost. Founded in 2021 in Berlin, Baobab Risk Solutions operates in Germany, Austria, and the Benelux countries. The company supports small-to-medium enterprises (SMEs) and the upper industrial sector in sustainably strengthening their digital resilience. For more information, visit: baobab.io

Added Today