Cyber Incident Response Team Lead
hace 2 semanas
Company Description
Experian is the world's leading global information services company.
During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.
We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime.
We have 20,000 people operating across 44 countries and every day we're investing in new technologies, talented people, and innovation to help all our clients maximize every opportunity.
**Job Description**:
As a member of Experian's Global Security Office (EGSO) / Global Cyber Incident Response Team, (GCIRT) this individual will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Global Security Operations Center (GSOC) according to Experian's Incident Response Plan.
The member will respond and analyze security incidents involving threats targeting Experian information assets.
These threats may include phishing, malware, network attacks, suspicious activity, etc.
In addition, this position will involve working with end-users, stakeholders, technical support teams, and management to ensure proper remediation and recovery from these threats.
Leverages analytical skills using data collected from endpoints, environmental logging, and a variety of other sources to maximize containment and eradication of threats, while expediting recovery of the business.
This individual will be responsible for driving the Incident Response teams SLO Goals and performance, working to improve Incident Response process documentation, and coordinating training of team.
They will be accountable for the overall Incident Response tower personnel management strategy.
This position reports to the GSOC Sr.
Manager Cyber Incident Response.
Key Responsibilities Include:
The Team Lead executes Operational Processes and Procedures as a matter of daily responsibility.
The role is the detailed and repeatable execution of all operational tasks which are documented in the Wiki and Incident Response Plan.
- Respond to Security to cyber security events and alerts associated to threats, intrusions, and/or compromises per SLO.
- Effectively manages multiple cases related to security incidents throughout the incident response lifecycle; including Analysis, Containment, Eradication, Recovery, and Lessons Learned.
- Identifies best methods to contain, eradicate, and recover from a wide variety of security incidents.
Provides recommendations to proactively prevent incidents from re-occurring in the future.
- Coordinates successful conclusion of security incidents according to Process & Procedures.
Escalates severe incidents according to Experian's Incident Response Plan.
- Maintains all case documentation, including notes, analysis findings, containment steps, and root cause for each assigned security incident.
- Maintains a foundational understanding of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, etc.
), and Security Technologies (Anti-Virus, Intrusion Prevention, etc.)
- Follow all documented GCIRT playbooks, standards, processes, and procedures (GCIRT xWiki).
All cases owned by an Analyst shall be well documented in accordance with GCIRT standards.
- Frequently attend and participate in the GSOC Weekly Lessons Learned Meetings.
Contribute at least two (2) items to the GSOC Weekly Meeting Lessons Learned per Month.
- Maintain GCIRT Shift Logs for period worked.
Verify Shift Logs are completed and accurate by L1 analysts.
- All assigned security incidents must be reviewed, updated, and documented at least every (3) business days.
Coordinate coverage for any cases which need update while out on leave or holiday.
- Incident updates or contact with end user to be done every 24 hours and documented case notes.
- Maintain assigned case load and efficiently move incidents through each phase of the IR Lifecyle with a goal to complete cases within 5 business days.
- Follow case hand-off procedure, assisting other GCIRT Team Members with their caseload while they are off shift.
- Provide Advanced Support as needed to other GCIRT Analysts (Logs review, IP Block question).
Mentor other GCIRT analyst when required (process question, tool usage)
- Leads local resources to ensure team meets SLOs and follows Incident Response Process, Procedures & Playbooks.
- Supports overall direction for the GCIRT and input to the overall security strategy.
- Work with GCIRT team to resolve any case discrepancies or breach of SLOs, including:
- Unresolved GCIRT Cases exceeding SLOs and make sure to assist other analysts with their cases
- Inactivity-No updates in more than (7) days and remind other analysts to follow up on thei
-
Cyber Incident Response Team Lead
hace 6 días
San Francisco, Heredia, Costa Rica Experian A tiempo completoJob OverviewCyber Incident Response LeadExperian is the world's leading global information services company. We empower consumers and our clients to manage their data with confidence. This role will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Centre...
-
Cyber Incident Response Lead
hace 3 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoFull-timeEmployee Status: RegularRole Type: HomeDepartment: Legal & ComplianceSchedule: Full TimeShift: Day Shift**Company Description**:Experian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower...
-
Incident Response Specialist
hace 2 semanas
San Francisco, Heredia, Costa Rica Grupo Preselección A tiempo completoWe are seeking an experienced Incident Response Specialist to join our team at Grupo Preselección. As an expert in incident response, you will be responsible for analyzing and responding to cyber incidents in cloud and forensics environments.Key Responsibilities:Analyzing and responding to cyber incidents in cloud and forensics environmentsDeveloping and...
-
Sr. Cyber Incident Response Analyst
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Incident Response Expert
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completo**About Us**Experian is a global company with 20,000 employees operating across 44 countries. We provide information solutions to organizations and consumers, empowering them to make informed decisions.We are committed to innovation, customer satisfaction, and community involvement.Our culture values knowledge sharing, best practices, and collaboration.**Job...
-
Cybersecurity Incident Response
hace 1 día
San Francisco, Heredia, Costa Rica Re:Sources Global A tiempo completoCompany Description**Job Description**:The Senior Associate, Information Security is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure.This individual will be expected to...
-
Cybersecurity Incident Response Specialist
hace 24 horas
San Francisco, Heredia, Costa Rica beBee Careers A tiempo completoJob Description:The Senior Associate, Information Security is a critical role within a global team responsible for the incident response of cyber security incidents associated with businesses, clients, and vendors. This individual must be technically skilled in ensuring incident containment, remediation, and closure.This role requires close collaboration...
-
Security Incident Response Analyst
hace 2 semanas
San Francisco, Heredia, Costa Rica Grupo Preselección A tiempo completo**We'd love to hear from people with**Ability to work in a dynamic, on call environment.Advanced English Level.5+ years of professional experience in cybersecurity and/or information security or demonstrated equivalent capability.Hands-on experience working in cyber incident analysis and/or response in medium to large organizations with cloud and forensics...
-
Threat Hunting and Incident Response Specialist
hace 3 días
San Francisco, Heredia, Costa Rica Experian A tiempo completo**About This Role:** As a Senior Cyber Threat Intelligence Engineer, you will be part of a dynamic team that is responsible for developing and maintaining high-quality threat detection rules informed by critical threats targeting our organization.You will be working closely with security operation teams to defend the enterprise environment from advanced...
-
San Francisco, Heredia, Costa Rica Experian A tiempo completoAbout UsWe have 20,000 people operating across 44 countries and every day we're investing in new technologies, talented people, and innovation to help all our clients maximize every opportunity. Our mission is to empower consumers and our clients to manage their data with confidence. We achieve this through a combination of technology, human expertise, and...
-
Cyber Threat Intelligence Specialist
hace 3 días
San Francisco, Heredia, Costa Rica Experian A tiempo completo**Company Overview:** Experian is the world's leading global information services company, empowering consumers and our clients to manage their data with confidence. We help individuals take financial control, businesses make smarter decisions, lenders lend more responsibly, and organizations prevent identity fraud and crime.**Job Description:** The Cyber...
-
Global Cyber Threat Mitigation Manager
hace 6 días
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany DescriptionWe help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime. As a member of Experian's Global Security Office (EGSO) - Global Cyber Incident Response Team, (GCIRT), this individual will...
-
Experian Cyber Threat Hunter Expert
hace 3 días
San Francisco, Heredia, Costa Rica Experian A tiempo completo**About Experian:** Experian is a world-class organization dedicated to helping individuals and businesses manage their data with confidence. Our global information services company empowers consumers to take financial control, while helping businesses make informed decisions and preventing identity fraud and crime.**Job Summary:** The Experian Cyber Fusion...
-
Cfc Cti Cyber Threat Hunter
hace 3 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...
-
Cfc Cti Cyber Threat Hunter
hace 3 días
San Francisco, Heredia, Costa Rica Experian A tiempo completoFull-timeEmployee Status: RegularRole Type: HybridDepartment: Legal & ComplianceSchedule: Full TimeShift: Day Shift**Company Description**:Experian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we...
-
Cyber Security Risk Manager
hace 2 semanas
San Francisco, Heredia, Costa Rica Fusionhit A tiempo completo**Job Overview**Fusionhit is a forward-thinking company that seeks a highly skilled Cyber Security Risk Manager to lead our compliance and audit efforts. As a key member of our team, you will play a crucial role in ensuring the implementation and maintenance of GRC frameworks such as PCI DSS, SOC 2, and SOC 1, while also managing cybersecurity policies and...
-
Incident Response Support Coordinator Specialist
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completo**About Us**We are a leading global information services company, unlocking the power of data to create opportunities for consumers, businesses, and society.At Experian, we take our people's agenda seriously. We focus on what truly matters: diversity and inclusion, work/life balance, flexible working, development, collaboration, wellness, reward &...
-
Cybersecurity Incident Response Expert
hace 2 semanas
San Francisco, Heredia, Costa Rica Grupo Preselección A tiempo completoWe're looking for a highly skilled individual to join our team at Grupo Preselección as a Cybersecurity Incident Response Expert. The ideal candidate will have advanced English language skills, a strong background in cybersecurity and/or information security, and the ability to work in a dynamic on-call environment.The successful candidate will possess:At...
-
Client Engagement and Incident Response Assistant
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completo**Job Overview**We are seeking an Incident Response Support Coordinator to join our Data Breach Response team. As a key member of our team, you will assist Client Engagement Managers, Business Development Executives, and the Incident Response Team in supporting client project implementation and Data Breach Response services.This role requires a unique blend...
-
Cyber Threat Intelligence Specialist
hace 2 semanas
San Francisco, Heredia, Costa Rica Experian A tiempo completoCompany Overview:Experian is the world's leading global information services company, empowering consumers and clients to manage their data with confidence. We help individuals take financial control, businesses make smarter decisions, lenders lend more responsibly, and organizations prevent identity fraud and crime.**Job Summary:**We are seeking a Cyber...