Incident Response

hace 1 mes


San Jose, Costa Rica Boston Consulting Group A tiempo completo
WHAT YOU'LL DO
The Incident Response & Insider Threat - Cyber Security Manager is an experienced position within BCGâs global enterprise Cyber Security Incident Response Team (CSIRT) that requires a thorough understanding of incident response (IR) operations and insider threat investigations. This position is a general incident response role, but with focus on insider threat detection & investigation.

The Incident Response & Insider Threat - Cyber Security Manager will support CSIRTâs overall IR operations at all levels and will serve a the go-to resource for the investigation of insider threats. The successful candidate will be an experienced incident responder with subject matter expertise (SME) in the area of insider threat managment.

The Incident Response & Insider Threat - Cyber Security Manager works with various teams within BCG and with vendors and partners to support CSIRTâs mission of preventing, detecting, and responding to cyber threats. This role requires advanced analytical and methodical skills coupled with strong, detail-oriented documentation & reporting skills that together yield consumable and comprehensive investigation reports.

YOU'RE GOOD AT
  • Support CSIRT operations to ensure proper assessment, containment, mitigation of cyber threats.
  • Conduct sensitive investigations into instances of suspected insider threat attacks.
  • Review and analyze cyber threats and provide SME support and guidance to junior security analysts.
  • Work closely with CSIRT team & technology to detect, investigate, and communicate cyber threats.
  • Act as an insider threat SME, providing guidance & recommendations on emerging threats.
  • Proactively identifying process & technology improvements and taking initiative to implement changes.
  • Contribute to develop our standard operating procedures and playbooks when needed.
  • Maintain up-to-date knowledge of the cyber security industry.

YOU BRING (EXPERIENCE & QUALIFICATIONS)
  • Minimum of 6 years of information security experience, with a very strong technical background.
  • Demonstrated information security and risk management experience in a global enterprise.
  • Demonstrated Incident Response experience in a consulting or SOC setting.
  • Demonstrated insider threat response operations experience, including investigation & reporting.
    • Experience with User Behavior Analytics a plus
  • Experience conducting forensic investigations via log analysis.
    • Experience with Splunk Enterprise Security a plus
  • Experience conducting investigations using EDR tools, such as Crowdstrike, Microsoft Defender, or similar.
  • Experience performing analysis using DLP tools, such as Forcepoint, Symantec DLP, or similar.
  • Solid English-language verbal and written communications skills.
  • Calm demeanor, grace under fire, outstanding listening skills.
  • Solid problem solving, analytical skills and decision-making.
  • Security certification like CISSP, CEH, GCIA or GCIH or similar a plus.

YOU'LL WORK WITH
BCGâs information technology group collaboratively delivers the latest digital technologies that enable our consultants to lead and our business to grow. For our IT jobs, we seek individuals with expertise in the areas of IT infrastructure, application development, business systems, collaborative and social technologies, information security, and project leadership.

  • Incident Response Analyst

    hace 2 semanas


    San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun, and most importantly to each other’s success. Learn more about...


  • San José, Costa Rica Cloud Software Group A tiempo completo

    Key Responsibilities - Incident Management - Lead cross-functional response to high priority, high visibility, complex critical incidents. - Calmly assess situations and command flawless execution of the incident response process to high-profile, high-impact escalations, to drive customer loyalty - Ensure the flow of information by pulling in appropriate...


  • San José, Costa Rica Cloud Software Group A tiempo completo

    Key Responsibilities Incident Management - Lead cross-functional response to high priority, high visibility, complex critical incidents. - Calmly assess situations and command flawless execution of the incident response process to high-profile, high-impact escalations, to drive customer loyalty - Ensure the flow of information by pulling in appropriate...


  • San Francisco, Costa Rica Cloud Software Group A tiempo completo

    Key Responsibilities Incident Management - Lead cross-functional response to high priority, high visibility, complex critical incidents. - Calmly assess situations and command flawless execution of the incident response process to high-profile, high-impact escalations, to drive customer loyalty - Ensure the flow of information by pulling in appropriate...


  • San José, Costa Rica Reclutamiento NAM A tiempo completo

    Descripción del puesto: Salvaguardar la organización contra amenazas cibernéticas mediante el monitoreo y la implementación de medidas de seguridad, la respuesta a incidentes y la promoción de una cultura de seguridad informática. Requisitos del puesto: Técnico en Ciberseguridad Dominio de inglés: B1 - B2 Contar con experiencia de 2-4 años en...


  • San José, Costa Rica Aliaxis Latin American Services, S.A A tiempo completo

    Coordinate information security projects with resources from the IT organization and business units. - Implement the Group security and privacy policies, controls, and cyber incident response procedures. - Work with regional IT to ensure that disaster recovery and business continuity plans are in place and tested. - Investigate and coordinate resolution and...


  • San José, Costa Rica DXC Technology A tiempo completo

    **_ Responsibilities: _** The support consultant TS role is important to the functioning of the customers managed infrastructure and services - Part of the reactive service team the support consultant TS is responsible to resolve all incident for the customers managed by the delivery team. - The time to resolve an incident is important, this reduces...


  • San Pedro, Costa Rica CRG Solutions A tiempo completo

    DFIR and Malware analyst Short description: The Digital Forensics & Incident Response investigator will handle cyber-attacks and data breaches investigations involving internal or external threat. The investigator will conduct an end-to-end investigation including Malware Analysis to reveal the big picture and protect any of the company's worldwide clients...


  • San José, Costa Rica Object Technology Solutions Inc A tiempo completo

    Monitor and respond to alerts from key security technologies and other internalsources. Tunes alerts, processing rules, maintenance jobs, etc. to minimize falsepositives and noise while ensuring relevant security information is capturedand highlighted. Develop and implement new relevant detections within company SIEM. Research emerging threats,...

  • Cybersecurity Analyst

    hace 4 semanas


    San Antonio, Costa Rica Stryker A tiempo completo

    **Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: Position summary: - The Security...

  • Cybersecurity Analyst

    hace 1 día


    San Antonio, Costa Rica Stryker A tiempo completo

    **Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: **Who we Want**: - ** Dedicated...

  • IT Security Analyst

    hace 7 días


    San Antonio, Costa Rica Stryker A tiempo completo

    **Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Who we want**: - ** Detail-oriented process improvers.** **Critical...

  • IT Security Analyst

    hace 6 días


    San Antonio, Costa Rica Stryker Corporation A tiempo completo

    **Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: **Who we Want**: - ** Dedicated...

  • Cybersecurity Analyst

    hace 7 días


    San Antonio, Costa Rica Stryker Corporation A tiempo completo

    **Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: **Who we Want**: - ** Collaborative...


  • San Francisco, Costa Rica Bosch Group A tiempo completo

    Company Description - Bosch Service Solutions is a leading global supplier of Business Process Outsourcing for complex business processes and services. Using the latest technology and the Internet of Things, the Bosch division develops integrated and innovative service solutions in the areas of Mobility, Monitoring, and Customer Experience. Around 9,000...


  • San Francisco, Costa Rica Bosch Group A tiempo completo

    **Company Description**: - Bosch Service Solutions is a leading global supplier of Business Process Outsourcing for complex business processes and services. Using the latest technology and the Internet of Things, the Bosch division develops integrated and innovative service solutions in the areas of Mobility, Monitoring, and Customer Experience. Around...

  • Devsecops Engineer

    hace 2 semanas


    San José, Costa Rica Splunk A tiempo completo

    **About Splunk**: Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. Splunk is a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most meaningfully, to each...

  • IT Support Specialist

    hace 7 días


    San José, Costa Rica Gensler A tiempo completo

    Your Role Support Specialists provide first-line response to end user incidents received via service desk requests and office operational requirements. Support Specialists are generally focused on the day-to-day support of the region but must continually collaborate and communicate with the larger distributed team of support staff across the globe. The...

  • IT Support Specialist

    hace 1 día


    San José, Costa Rica Gensler A tiempo completo

    Your Role Support Specialists provide first-line response to end user incidents received via service desk requests and office operational requirements. Support Specialists are generally focused on the day-to-day support of the region but must continually collaborate and communicate with the larger distributed team of support staff across the globe. The...


  • San José, Costa Rica GSB A tiempo completo

    An important and internationally recognized company is looking for a Cloud Security Engineer, trained to: Advise and follow best practices, ensure cloud environments are configured to meet compliance requirements and prevent the latest security threats, and the continuous vigilance needed to protect against advanced attacks from around the world **Key...