Cybersecurity Incident Commander

Global Change Management Inc
Charlotte, NC, United States
10 days ago
Apply on www.careerbuilder.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Data Analysis Microsoft Azure Big Data Cloud Computing Cyber Security Information Systems Continuous Delivery Continuous Integration Data Files
+8 more
Data Security Internet Security Security Information and Event Management Unstructured Data Enterprise Search Multi-Cloud Information Technology Splunk

Requirements

  • Cloud experience preferably Azure/AWS security experience, GCIA, GCIH, or other GIAC certifications, at least one certification needed;
  • Forensic capability and Automation;
  • Splunk/Sort/Phantom practical experience.
  • AI
  • Lead, senior role Cyber security
  • Able to participate in a rotating On-Call schedule approximately once a month for after-hours information security events / incidents.
  • Excellent communication skills customer facing calm even demeanor when challenged, team player who works well with others and works well collaboratively.
  • High EQ. Ethical Hacker skills.
  • Incident commander - Lead calls, strong and varied technical capabilities, social awareness working with all levels, able to prioritize.
  • Broad understanding and experience managing security mitigation solutions at all layers and protocols
  • Experience securing multi-cloud environments, FaaS and CI/CD pipelines
  • Experience securing Applications and APIs
  • Bachelor's degree in information systems or equivalent experience
  • Ability to analyze large data sets and unstructured data for the purpose of identifying trends and anomalies indicative of malicious activity, as well as demonstrated capability to learn and develop new techniques
  • Experience with cyber hunting practices/exercises using SIEM, Enterprise search tools, or other solutions

Sr. Incident Response Lead duties:

Lead investigations into information security events / incidents

Drive efforts towards containment of threats and remediation of environment during or after an incident

Maintain and improve CyberSecurity Incident Response plan

Lead audit management responsibilities to ensure identified gaps are addressed in respect to required timing to reduce risk

Contribute to the development of use case and prioritization of use case development

Contribute to the process improvement process through development of new detections and changes in the response processes

Perform complex security investigations and root cause analyses

Skills: Amazon Web Services (AWS), Artificial Intelligence (AI), Auditing, Automation, Cloud Computing, Communication Skills, Computer Hacking, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Customer Relations, Data Analysis, Data Sets, Develop Methodologies, Establish Priorities, GCIA - GIAC Certified Intrusion Analyst, GCIH - GIAC Certified Incident Handler, GIAC - Global Information Assurance Certification, Hunting, Incident Response, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Microsoft Windows Azure, On Call, Process Improvement, Risk Management, Root Cause Analysis, Security Attacks, Security Information and Event Management (SIEM), Security Monitoring, Splunk, Team Player, Trend Analysis, Unstructured Data, Use Cases

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:53 min

Applying software development methodologies to incident response

Tobias Dunn-Krahn · LIVE

3:38 min

Reusing email software standards for HTTP file uploads

Imran Nazar · World Congress 2023

3:28 min

Defining big data and machine learning fundamentals

Ayon Roy · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

5:21 min

Extracting and preprocessing HTML data into markdown files

Rainer Stropek Rainer Stropek · LIVE

2:10 min

Why organizations combine big data and machine learning

Ayon Roy · LIVE

Videos

See all

Related articles

See all