Cyber Incident Response Lead
hace 6 horas
Full-time
Employee Status: Regular
Role Type: Home
Department: Legal & Compliance
Schedule: Full Time
Shift: Day Shift
**Company Description**:
Experian is the world's leading global information services company.
During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.
We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime.
We have 20,000 people operating across 44 countries and every day we're investing in new technologies, talented people, and innovation to help all our clients maximize every opportunity.
As a member of Experian's Global Security Office (EGSO) - Global Cyber Incident Response Team, (GCIRT) this individual will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Centre (CFC) according to Experian's Incident Response Plan.
The member will respond and analyze security incidents involving threats targeting Experian information assets.
These threats may include phishing, malware, network attacks, suspicious activity, etc.
In addition, this position will involve working with end-users, stakeholders, technical support teams, and management to ensure proper remediation and recovery from these threats.
Leverages analytical skills using data collected from endpoints, environmental logging, and a variety of other sources to maximize containment and eradication of threats, while expediting recovery of the business.
This individual will be responsible for driving the Incident Response teams SLO Goals and performance, working to improve Incident Response process documentation, and coordinating training of team.
They will be accountable for the overall Incident Response tower personnel management strategy.
This position reports to the CFC Sr.
Manager Cyber Incident Response.
**Key Responsibilities Include**:
The Team Lead executes Operational Processes and Procedures as a matter of daily responsibility.
The role is the detailed and repeatable execution of all operational tasks which are documented in the Wiki and Incident Response Plan.
- Respond to Security to cyber security events and alerts associated to threats, intrusions, and-or compromises per SLO.
- Effectively manages multiple cases related to security incidents throughout the incident response lifecycle; including Analysis, Containment, Eradication, Recovery, and Lessons Learned.
- Identifies best methods to contain, eradicate, and recover from a wide variety of security incidents.
Provides recommendations to proactively prevent incidents from re-occurring in the future.
- Coordinates successful conclusion of security incidents according to Process & Procedures.
Escalates severe incidents according to Experian's Incident Response Plan.
- Maintains all case documentation, including notes, analysis findings, containment steps, and root cause for each assigned security incident.
- Maintains a foundational understanding of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, etc.
), and Security Technologies (Anti-Virus, Intrusion Prevention, etc.)
- Follow all documented GCIRT playbooks, standards, processes, and procedures (GCIRT xWiki).
All cases owned by an Analyst shall be well documented in accordance with GCIRT standards.
- Frequently attend and participate in the CFC Weekly Lessons Learned Meetings.
Contribute at least two (2) items to the CFC Weekly Meeting Lessons Learned per Month.
- Maintain GCIRT Shift Logs for period worked.
Verify Shift Logs are completed and accurate by L1 analysts.
- All assigned security incidents must be reviewed, updated, and documented at least every (3) business days.
Coordinate coverage for any cases which need update while out on leave or holiday.
- Incident updates or contact with end user to be done every 24 hours and documented case notes.
- Maintain assigned case load and efficiently move incidents through each phase of the IR Lifecyle with a goal to complete cases within 5 business days.
- Follow case hand-off procedure, assisting other GCIRT Team Members with their caseload while they are off shift.
- Provide Advanced Support as needed to other GCIRT Analysts (Logs review, IP Block question).
Mentor other GCIRT analyst when required (process question, tool usage)
- Leads local resources to ensure team meets SLOs and follows Incident Response Process, Procedures & Playbooks.
- Supports overall direction for the GCIRT and input to the overall security strategy.
- Work with GCIRT team to resolve any case discrepancies or breach of SLOs, including:
- Unresolved GCIRT Cases exceeding SLOs and make sure to assist other analysts with their case
-
Cyber Incident Response Team Lead
hace 5 horas
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Cyber Incident Response Delegate
hace 4 días
Heredia, Costa Rica IBM A tiempo completo**Introduction** **Your Role and Responsibilities** - Act as a delegate to the IBM Cloud CISO by overseeing cyber incidents in collaboration with IBM CSIRT, Legal, and other various security teams within IBM. - Provide final approvals for the Root Cause Analysis performed post-incident and ensure preventative actions are in place with the responsible...
-
Senior Cyber Incident Response Coordinator
hace 5 horas
Heredia, Costa Rica Ibm A tiempo completo**Introduction**As an IBM Cloud Senior Cyber Incident Response Coordinator, you will coordinate with IBM CSIRT, the Security Operations Center (SOC), and other security teams to investigate and recover from cyber related threats / incidents.You will oversee the Root Cause Analysis process and ensure preventative actions are in place with the responsible...
-
Sr. Cyber Incident Response Analyst
hace 5 horas
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Cybersecurity Incident Response
hace 1 semana
Heredia, Costa Rica Re:Sources Global A tiempo completoCompany Description **Job Description**: The Senior Associate, Information Security is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to...
-
Security Incident Response Analyst
hace 5 horas
Heredia, Costa Rica Grupo Preselección A tiempo completo**We'd love to hear from people with**Ability to work in a dynamic, on call environment.Advanced English Level.5+ years of professional experience in cybersecurity and/or information security or demonstrated equivalent capability.Hands-on experience working in cyber incident analysis and/or response in medium to large organizations with cloud and forensics...
-
Cfc Cti Senior Cyber Threat Hunter
hace 2 días
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...
-
Cfc Cti Senior Cyber Threat Hunter
hace 2 horas
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Sr. Insider Threat Investigator
hace 6 horas
Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Cyber Security Engineer
hace 3 días
Heredia, Costa Rica Equifax A tiempo completo**Equifax is where you can power your possible. If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you. **As a critical team member of the Equifax Cyber Countermeasures Team, you will drive our incident response and analytic capabilities,...
-
Cyber Security Data Engineer
hace 5 días
Heredia, Costa Rica Stryker A tiempo completo**Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: **Who we Want**: - ** Dedicated...
-
Senior Security Incident Responder
hace 5 horas
Heredia, Costa Rica Tebra A tiempo completo**About the Role**:A security engineer to join our team to focus on threat detection and response protection.In this position, you will investigate security issues using log data, networking tools and big data search engines to stop threats impacting our internal and external customers.You will be part of Tebra's security team as a trusted resource to help...
-
Cybersecurity Analyst
hace 5 horas
Heredia, Costa Rica Moody'S A tiempo completoMoody's Cyber Security team is responsible for helping the organization balance risk by aligning policies and procedures with Moody's business requirements.The team is responsible for the development, enforcement and monitoring of security controls, policies and procedures, and for the delivery of security services.Cyber Security team sets strategic...
-
Senior Cyber Analyst Mergers And Acquisitions
hace 6 horas
Heredia, Costa Rica Sysco Costa Rica A tiempo completoThis role is responsible for executing Cybersecurity M&A due diligence and leading cyber integration planning, coordination, and reporting while partnering across multiple Cyber, business, and technology cross function teams.**Requirements**:- Execute Cybersecurity M&A due diligence activities partnering with business and technology deal teams to identify...
-
Service Cordinator
hace 5 días
Heredia, Costa Rica Kyndryl A tiempo completo571374BR **Why Kyndryl** - Our world has never been more alive with opportunities and, at Kyndryl, we’re ready to seize them. We design, build, manage and modernize the mission-critical technology systems that the world depends on every day. Kyndryl is at the heart of progress — dedicated to helping companies and people grow strong. Our people are...
-
Service Cordinator
hace 5 horas
Heredia, Costa Rica Kyndryl A tiempo completo476155BR**Why Kyndryl****Your Role and Responsibilities**This role manages Severity 1 Major Incidents that are impacting the client on a production or financial environment.The Major Incident Manager (MIM) is expected manage and take the leadership/Ownership of the incident and coordinate all the action plans, ETAs, follow ups required to accelerate the...
-
Principal Engineer Security Services
hace 6 horas
Heredia, Costa Rica 360Training A tiempo completo**Principal Engineer Security Services**The Principal Engineer Security Services will play a crucial role in ensuring the ongoing security and protection of our company's information assets.They will be responsible for designing, developing, and overseeing the implementation of cybersecurity solutions to safeguard our systems, networks, and data.The...
-
Security Engineer
hace 1 semana
Heredia, Costa Rica Experian A tiempo completoCompany Description Experian is a global leader in consumer and business credit reporting and marketing services and a constituent of the United Kingdom's FTSE 100 index, with total revenue for the year ended March 31, 2020, of US$5.2 billion. We support clients in more than 100 countries and employ approximately 17,800 people in 45 countries. Job...
-
Incident Manager
hace 6 horas
Heredia, Costa Rica Vmware A tiempo completo**The Elevator Pitch: Why will you enjoy this new opportunity?**Are you passionate about learning innovative technology and solving complex problems for VMware's Top 100 Global Customers?Are you comfortable stepping into difficult and complex situations involving multiple key stakeholders and setting the path to resolution?If so, VMware has an Incident...
-
Market Response Specialist
hace 5 días
Heredia, Costa Rica LSEG (London Stock Exchange Group) A tiempo completoYOU AND YOUR TEAM: The role of a Market Response Specialist is a new one for our office in Costa Rica. We're now building a small team of colleagues with excellent language skills and drive for creating strong relationships with clients that will lead to sales opportunities. The team members will generate new opportunities for sales by verifying inbound...