Richemont Senior Associate, Cyber Incident Response

Location
Seniority
Senior
Posted
Mar 31, 2026

About Richemont

Richemont is a Swiss luxury goods holding company composed of prestigious maisons in jewellery, watchmaking and associated luxury accessories. As an employer, Richemont combines heritage craftsmanship with modern retail and digital operations across a global footprint, offering a matrixed environment that supports both creative maisons and centralized corporate functions.

Richemont — New York: Senior Associate, Cyber Incident Response. Lead detection, triage and remediation of cyber incidents across global maisons.

Role & Responsibilities

  • Lead detection, triage and containment of cyber security incidents affecting corporate and maison environments, including cloud, endpoints and on-premise infrastructure.
  • Perform technical forensic analysis on hosts, networks and logs to determine root cause, scope and impact of security events.
  • Coordinate cross-functional incident response activities with IT operations, legal, communications, risk, and business stakeholders to execute remediation plans.
  • Operate and tune SIEM and EDR tooling to improve detection fidelity and reduce mean time to respond.
  • Develop, maintain and execute playbooks, runbooks and incident reporting artifacts; perform post-incident reviews and implement preventative controls.
  • Conduct threat hunting and proactive detection exercises leveraging threat intelligence and MITRE ATT&CK methodologies.
  • Support tabletop exercises, readiness assessments and training for regional IT and security teams.
  • Prepare clear technical and executive incident summaries and recommendations for senior management and external partners when required.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity or a related technical discipline, or equivalent practical experience.
  • 4+ years of hands‑on experience in incident response, digital forensics, or a SOC role within an enterprise environment.
  • Practical knowledge of endpoint, network and cloud forensics and remediation techniques.
  • Familiarity with regulatory and data privacy considerations relevant to incident handling and external disclosures.
  • Preferred certifications: GCIH, GCFA, CISSP, SANS advanced incident response certs or equivalent.

Skills

SIEM (Splunk, IBM QRadar) configuration and query development EDR platforms (CrowdStrike, Microsoft Defender for Endpoint) Network forensics and packet analysis (Wireshark, Zeek) Endpoint and host forensics (FTK, EnCase, OSQuery) Scripting and automation (Python, PowerShell) Threat intelligence and attribution (MITRE ATT&CK framework, Recorded Future, MISP) Log analysis, IDS/IPS and threat-hunting methodologies Incident management and playbook development

Experience

Minimum of approximately four years of progressive, hands-on experience in incident response, digital forensics or security operations within medium-to-large enterprises or service providers; experience supporting cloud and hybrid environments is highly desirable.

Education

Bachelor’s degree in Computer Science, Information Security, Cybersecurity or a related field, or equivalent professional experience.

Workplace

This position is based in New York, New York, USA.

Culture

Richemont fosters a collegial environment that balances artisanal heritage with modern, technology-driven operations. Teams are collaborative and internationally distributed, with an emphasis on discretion, high standards and continuous professional development within a luxury brand ecosystem.

About Cerulean

Cerulean is the definitive career portal for the global luxury industry. We match exceptional professionals with exclusive opportunities at the world's most prestigious brands. From haute couture and fine watchmaking to prestige beauty, hospitality, and boutique retail, Cerulean centralises luxury employment to help you find the career for which you were destined.

Frequently Asked Questions

A.

The luxury industry is characterised by a diverse and nuanced nomenclature. Esteemed houses frequently employ proprietary terminology, and even within a single organisation like Richemont, titles may vary across global markets to reflect local conventions. To ensure absolute clarity, Cerulean assigns a standardised, industry-coherent canonical title to every listing. However, it is worth noting that this role is functionally synonymous with «Senior Incident Response Analyst», «Cyber Incident Response Analyst», «Security Incident Response Specialist», «Threat Response Senior Associate», «Cybersecurity Incident Responder», and other variations. Our sophisticated search architecture anticipates these variations, ensuring that inquiries using related terms will seamlessly yield the exact roles you desire.

Richemont

Richemont Senior Associate, Cyber Incident Response

New York, USA

Continue to the application.