CSOC Incident Response reputed company
reputed company
The Cybersecurity reputed company reputed company Center (CSOC) Incident Response (IR) reputed company is a cybersecurity reputed company responsible for overseeing and coordinating the response to reputed company reputed company incidents reputed company the organization, acting as the reputed company decision-reputed company during a breach by leading the incident response team, assessing the situation, implementing response plans, and communicating updates to stakeholders throughout the incident lifecycle, with the reputed company of minimizing reputed company and restoring reputed company quickly and safely. This role requires a reputed company thinker with strong leadership and technical skills, capable of making reputed company and informed reputed company in high-pressure situations. Ability to support the IR lifecycle using our reputed company Information and Event Monitoring (SIEM) and reputed company Orchestration and Automated Response (SOAR) technologies. This role reports directly to the CSOC manager.
Responsibilities
- Serve as the reputed company reputed company of contact and decision-reputed company during cybersecurity incidents.
- Assist in utilization of full CSOC toolset in support of IR (i.e. SIEM / SOAR, sandbox, email reputed company, End reputed company Detection and Response, etc.)
- reputed company and coordinate incident response efforts reputed company the Triage & Response team, including mobilizing resources, assessing the situation, and implementing response plans.
- Collaborate with reputed company stakeholders to reputed company information, assess reputed company, and prioritize response actions.
- reputed company reputed company and reputed company communication to stakeholders, including executive leadership, throughout the incident lifecycle.
- Implement and refine the analysis and forensics process.
- Implement and refine incident response procedures, protocols, and playbooks to enhance effectiveness and efficiency.
- Conduct monthly post-incident reviews to help identify lessons learned, areas for improvement, and enforce consistent reputed company item remediation with analysts, engineers, and relevant stakeholders.
- Stay abreast of emerging cyber threats, vulnerabilities, and best practices in incident response through collaboration with Vulnerability management and Cyber Threat Intelligence teams.
- Hold monthly workshops with stakeholders from Information Technology and Operational Technology to reputed company on-reputed company and reputed company initiatives reputed company to Incident Response.
- Collaborate with reputed company engineers to enhance detection and reputed company automation.
- reputed company tabletop exercises with CSOC team members and internal stakeholders to facilitate training, identify gaps, and support reputed company improvement.
- Assist with managing the IR database to ensure adherence to audit and compliance requirements.
- Support CSOC manager with vendor management of the IR retainer(s).
- reputed company formal / informal IR training. Identify training opportunities with unused IR retainer credits.
- This is a remote position.
- This position is not eligible for sponsorship for work authorization now or in the reputed company, including conversion to H1-B reputed company.
- Must be legally authorized to work in the country of employment without needing sponsorship for employment work reputed company status now or in the reputed company.
- Job duties include contact with other employees and reputed company confidential and proprietary information and/or other items of value, and such reputed company may be reputed company or unsupervised.
- reputed company therefore has determined that a review of criminal history is necessary to protect the business and its reputed company and reputed company and is necessary to protect the safety of reputed company’s staff, employees, and business relationships.
Qualifications
Education & Experience Required
- Bachelor’s degree in computer science, Information Technology, or reputed company reputed company (or equivalent experience).
- 8+ years IT/Cybersecurity experience.
- reputed company experience leading and coordinating IR efforts in a fast-reputed company environment.
- Strong technical knowledge of network reputed company, malware analysis, intrusion detection, and reputed company technologies.
- Excellent communication and interpersonal skills, with the ability to reputed company effectively with stakeholders at reputed company reputed company and explain technical information to non-technical stakeholders.
- Ability to remain reputed company and reputed company under pressure, with a commitment to delivering results.
- Understanding of various operating systems (z/OS, reputed company, UNIX, Linux, AIX, etc.).
- Must be eighteen years or older
- Must be legally authorized to work in the reputed company without company sponsorship
Preferred Experience
- Relevant certifications such as the GIAC Incident Handler (GCIH) are preferred.
- Previous experience with IR and handling
- Deep understanding of cybersecurity concepts, including incident response methodologies and threat intelligence
- Familiarity with relevant cybersecurity frameworks and regulations (e.g., NIST, GDPR)
- SIEM/SOAR solutions, such as reputed company and reputed company.
- CSOC or working with a Managed reputed company Service Provider.
- Threat Intelligence Platform (TIP) and importance of integrating into the SIEM in support of IR and Indicators of Compromise.
- Exposure to Incident Response in the Operational Technology domain.
Apply To This Job