Cybersecurity Incident Response Specialist

Geotab Inc.
Atlanta, United States of America
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate

Job location

Remote
Atlanta, United States of America

Tech stack

Amazon Web Services (AWS)
Software System Penetration Testing
Azure
Bash
Computer Security
Python
Log Analysis
Network Forensics
Powershell
Reverse Engineering
Security Information and Event Management
SQL Databases
Web Applications
Scripting (Bash/Python/Go/Ruby)
QRadar
Malware
Information Technology
Oracle Cloud Infrastructure
Splunk

Job description

We are always looking for amazing talent who can contribute to our growth and deliver results! Geotab is seeking a Cybersecurity Incident Response Specialist who will be responsible for protecting Geotab's software, hardware, and supply chain by leading incident response efforts across government-compliant and commercial environments. If you love investigative security work, thrive in fast-moving environments, and are keen to join an industry leader - we would love to hear from you!, As a Cybersecurity Incident Response Specialist, your key area of responsibility will be owning incident response operations for Geotab's government compliance environments. You will proactively monitor, triage, and lead response efforts for security incidents, conduct log analysis across web applications, and leverage tools including Elastic and CrowdStrike. During lower-incident periods, you will lead threat hunts and strategic IR project work to continuously improve our security posture. You will participate in a on-call rotation with dedicated coverage for US-specific incidents.

To be successful in this role you will be a self-starter with strong investigative instincts who can execute independently with minimal supervision. In addition, the successful candidate will have excellent communication skills with the ability to coordinate across leadership and internal teams, and a demonstrated ability to push tasks to completion even in ambiguous or high-pressure situations.

How you'll make an impact:

  • Proactively monitor, evaluate, and track systems and networks for breaches to Geotab's security, products, and customers
  • Identify security flaws and vulnerabilities and utilize industry standard metrics for evaluating risks (e.g. CVSS)
  • Ensure that Geotab's compliance requirements are met (e.g. NIST 800-53 & NIST 800-171), with dedicated focus on FedRAMP and CONUS environments
  • Perform security audits, risk analysis, network forensics, and penetration testing to reduce attack surface
  • Perform malware analysis and reverse engineering to develop a procedural set of responses to security problems
  • Establish plans that outlines security gap assessments, policies, procedures, playbooks, training, and tabletop testing
  • Establish protocols for effectively communicating security incidents and breaches with customers, internal stakeholders, and law enforcement
  • Remedy security breaches in a timely manner according to priority and provide expert SME guidance to internal teams

Requirements

Do you have experience in Python?, * Post-secondary diploma or degree specializing in Computer Science, Engineering, or a related field

  • 3-5 years of experience in an Incident Response or Security Operations role
  • Hands-on experience with Elastic, CrowdStrike, and SQL; scripting proficiency in Python, PowerShell, and Bash; familiarity with Splunk, QRadar, or other SIEM tools is a strong asset
  • Experience in GCP environments (primary); AWS, Azure, or Oracle cloud familiarity is an asset
  • CCSP certification desired; CISSP and SANS certifications is a plus - strong hands-on experience will be considered over certifications alone
  • Strong communication skills with proven ability to work independently as a self-starter in a remote or hybrid environment (Atlanta or remote; hybrid if Atlanta-based)
  • Willingness to participate in a on-call incidents
  • To be eligible, candidates must have continuously resided in the continental United States for at least three years immediately preceding their application. Successful applicants will be required to provide verifiable documentation of continuous lawful residency. Some exceptions apply to US citizens.
  • Ability to pass an enhanced background check, including a drug screening test (if applicable) and a credit check., employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. Geotab expressly prohibits any form of workplace harassment or discrimination based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of Geotab's employees to perform their job duties may result in discipline up to and including discharge. If you would like more information about our EEO program or wish to file a complaint, please contact our EEO officer, Klaus Boeckers at HRCompliance@geotab.com. For more details, view a copy of the EEOC's Know Your Rights poster. By submitting a job application to Geotab Inc. or its affiliates and subsidiaries (collectively, "Geotab"), you acknowledge Geotab's collection, use and disclosure of your personal data in accordance with our

Benefits & conditions

Pulled from the full job description

  • Parental leave

  • Health insurance

  • Dental insurance, Flex working arrangements Home office reimbursement program Baby bonus & parental leave top up program Online learning and networking opportunities Electric vehicle purchase incentive program Competitive medical and dental benefits Retirement savings program

  • The above are offered to full-time permanent employees only

About the company

Geotab ® is a global leader in IoT and connected transportation and certified "Great Place to Work ." We are a company of diverse and talented individuals who work together to help businesses grow and succeed, and increase the safety and sustainability of our communities. Geotab is advancing security, connecting commercial vehicles to the internet and providing web-based analytics to help customers better manage their fleets. Geotab's open platform and Geotab Marketplace ®, offering hundreds of third-party solution options, allows both small and large businesses to automate operations by integrating vehicle data with their other data assets. Processing billions of data points a day, Geotab leverages data analytics and machine learning to improve productivity, optimize fleets through the reduction of fuel consumption, enhance driver safety and achieve strong compliance to regulatory changes. Our team is growing and we're looking for people who follow their passion, think differently and want to make an impact. Ours is a fast paced, ever changing environment. Geotabbers accept that challenge and are willing to take on new tasks and activities - ones that may not always be described in the initial job description. Join us for a fulfilling career with opportunities to innovate, great benefits, and our fun and inclusive work culture. Reach your full potential with Geotab. To see what it's like to be a Geotabber, check out our blog and follow us @InsideGeotab on Instagram., At Geotab, we have adopted a flexible hybrid working model in that we have systems, functions, programs and policies in place to support both in-person and virtual work. However, you are welcomed and encouraged to come into our beautiful, safe, clean offices as often as you like. When working from home, you are required to have a reliable internet connection with at least 50mb DL/10mb UL. Virtual work is supported with cloud-based applications, collaboration tools and asynchronous working. The health and safety of employees are a top priority. We encourage work-life balance and keep the Geotab culture going strong with online social events, chat rooms and gatherings. Join us and help reshape the future of technology!

Apply for this position