Senior Cyber Defense Incident Responder

American International Group, Inc.
Charlotte, NC, United States
22 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Microsoft Windows Unix Cyber Security Linux Domain Name System (DNS) Hypertext Transfer Protocols (HTTP) Internet Control Message Protocol Internet Protocol Intrusion Detection and Prevention Simple Mail Transfer Protocols Security Information and Event Management Simple Network Management Protocols
+4 more
File Transfer Protocol (FTP) Malware Information Technology Cyber Warfare

Job description

AIG is seeking a highly skilled cyber-defense expert to join AIG’s Detect & Response team. The Senior Cyber Defense Incident Responder will execute a range of threat discovery and incident response duties. The successful candidate will work as part of a team that conducts investigations into potential and actual cyber-attacks affecting AIG’s global business units, lines of business, or information technology infrastructure. The Detect & Response team encompasses several teams across disciplines including alert validation and tuning, incident response, and cyber threat intelligence. The teams follow a kill chain-aligned operational model, giving the candidate exposure to all elements of an attack lifecycle., * Leverage aggregated cyber threat intelligence, log, network flow, and anomaly data for analysis, research and the identification of potential compromise within AIG’s infrastructure or applications.

  • Perform root cause analysis to identify gaps and provide technical and procedural recommendations that will reduce AIG’s exposure to cyber-risks.
  • Prioritize incoming requests to minimize risk exposure and ensure the timely completion of critical tasks and the escalation of time-sensitive issues.
  • Support the development and maintenance of documented play-book procedures, knowledge articles, and training material.
  • Create detailed incident and analysis reports, and provide concise summaries for management.
  • Communicate effectively with other stakeholders of our incident response efforts, including representatives of the business units, technology specialists, vendors, and others.
  • Contribute to our efforts to drive continuous improvement by recommending and collecting various key metrics for reporting to senior management on Incident Response.

Requirements

  • An understanding of cyber security operations processes, procedures, guidelines and solutions, including practical experience of cyber kill chain principles
  • In-depth understanding of Windows, UNIX, and Linux operating systems, networking, malware defenses, and perimeter controls.
  • Knowledge of TCP/IP networking and core Internet protocols such as UDP, ICMP, DNS, FTP, SMTP, HTTP, SNMP, etc.
  • Ability to contribute to the development of SIEM use cases.
  • Strong oral and written communications skills (e.g., technical writing, user guide development, requirements analysis) and ability to interact effectively with technical and non-technical audiences, as well as present in front of small and large groups.
  • Understanding of how to read and interpret malware analysis reports.
  • Self-starter with a sense of urgency who takes ownership and responsibility for service delivery
  • Works independently with minimal guidance to drive projects to completion, while also working collaboratively with the team to achieve strategic goals
  • Professional, clear, and concise communication to both technical and non-technical audiences
  • Strong deductive reasoning, critical thinking, problem solving, prioritization, and consultative skills
  • Proven organizational skills (time management and prioritization), and also employ a rigorous process for all follow-up / coordination activities
  • Comfortable working in a dynamic environment, balancing multiple incidents, special projects, and other activities.
  • Ability to deal diplomatically and effectively at all levels of the business including both technical and non-technical staff, management and senior leadership.
  • Willingness to support and develop junior team members while also delivering on candidate’s own responsibilities.
  • Bachelor’s degree or equivalent practical experience is preferred.
  • Experience with security monitoring, event and anomaly analysis and intrusion detection/ prevention techniques.

At AIG, we value in-person collaboration as a vital part of our culture, which is why we ask our team members to be primarily in the office. This approach helps us work together effectively and create a supportive, connected environment for our team and clients alike.

About the company

At AIG, our people are our greatest asset. We know how important it is to protect and invest in what’s most important to you. That is why we created our Total Rewards Program, a comprehensive benefits package that extends beyond time spent at work to offer benefits focused on your health, wellbeing and financial security-as well as your professional development-to bring peace of mind to you and your family.

Reimagining insurance to make a bigger difference to the world

American International Group, Inc. (AIG) is a global leader in commercial and personal insurance solutions; we are one of the world’s most far-reaching property casualty networks. It is an exciting time to join us - across our operations, we are thinking in new and innovative ways to deliver ever-better solutions to our customers. At AIG, you can go further to support individuals, businesses, and communities, helping them to manage risk, respond to times of uncertainty and discover new potential. We invest in our largest asset, our people, through continuous learning and development, in a culture that celebrates everyone for who they are and what they want to become.

Welcome to a culture of inclusion

We’re committed to creating a culture that truly respects and celebrates each other’s talents, backgrounds, cultures, opinions and goals. We foster a culture of inclusion and belonging through learning, cultural awareness activities and Employee Resource Groups (ERGs). With global chapters, ERGs are a cornerstone for our culture of inclusion. The talent of our people is one of AIG’s greatest assets, and we are honored that our drive for positive change has been recognized by numerous recent awards and accreditations.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on aig.wd1.myworkdayjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:04 min

Defining timestamps and the international standard format

Denny Biasiolli Denny Biasiolli · Europe 2026 Virtual

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

Videos

See all

Related articles

See all