Full-Time Cyber Incident Response Lead

Experian is hiring a remote Full-Time Cyber Incident Response Lead. The career level for this job opening is Experienced and is accepting Worldwide based applicants remotely. Read complete job description before applying.

Experian

Job Title

Cyber Incident Response Lead

Posted

Career Level

Full-Time

Career Level

Experienced

Locations Accepted

Worldwide

Job Details

Respond, contain, escalate, investigate, and coordinate mitigation of security events. As a member of Experian's Global Security Office (EGSO)/Cyber Fusion Center (CFC), you'll respond to anomalies detected and escalated by the Cyber Fusion Center, following Experian's Incident Response Plan.

Join a growing team of advanced responders. This role supports escalations of complex and prioritized matters from Experian's existing 24x7 security monitoring and response functions, responding to and analyzing security incidents involving threats targeting Experian information assets.

Work with various teams and stakeholders. You'll work with end-users, technical support teams, and management to ensure remediation and recovery from these threats.

Key Responsibilities:

  • Conduct advanced incident response activities to investigate and contain complex or larger-scale cybersecurity matters.
  • Orchestrate workstreams across teams (Forensics and Cyber Threat Hunting) and explain the CFC's overall understanding of attacker activity.
  • Respond to cyber security events and alerts associated with threats, intrusions, or compromises (meeting applicable Service Level Objectives).
  • Manage multiple cases throughout the incident response lifecycle (Analysis, Containment, Eradication, Recovery, and Lessons Learned).
  • Coordinate successful incident conclusion according to process and procedures, escalating severe incidents.
  • Maintain detailed case documentation (notes, analysis findings, containment steps, cause).
  • Manage assigned caseload and hand off cases as needed.
  • Maintain understanding of common Operating Systems, Security Technologies, and Networking.
  • Interpret logs (Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures) to identify root cause and next steps.
  • Mentor and provide advanced support to analysts.
  • Support overall direction for the CFC and input to security strategy.

Required Background:

  • Bachelor's Degree in Computer Science, Computer Engineering, Information Security, or related field, or 8+ years of experience in Security Operations Centers or Cyber Security Incident Response Teams.
  • Demonstrated knowledge of Incident Response and Investigative Methodology.
  • Knowledge of network protocols (TCP/IP, UDP, ICMP), standard protocols (HTTP/S, DNS, SSH, SMTP, SMB), wireless networking, network infrastructure, and topologies (DMZ, VPN, WAN) and network technologies (WAF, IPS, Routers, Firewalls).
  • Experience with commercial and open-source SIEMs, full packet capture tools, and network analysis tools (Splunk, Wireshark, SOF-ELK).
  • Experience using common Incident Response and Security Monitoring applications (SIEM, EDR, WAF, IPS).
  • Knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs).
  • At least one certification involving incident response, ethical hacking, cyber security, or network forensics (e.g., GCIH, E|CEH, E|CIH, GNFA, CNFE).
  • Security Management certification (e.g., CISSP, CISM) or obtain within two years.

FAQs

What is the last date for applying to the job?

The deadline to apply for Full-Time Cyber Incident Response Lead at Experian is 7th of February 2025 . We consider jobs older than one month to have expired.

Which countries are accepted for this remote job?

This job accepts [ Worldwide ] applicants. .

Related Jobs You May Like

Cybersecurity Internal Audit Manager

Santa Clara, CALIFORNIA
16 hours ago
Audit Management
Cybersecurity Processes
Internal Controls
ServiceNow
Full-Time
Manager
YEAR $158500 - $277500

Sr. Azure Security Architect & Engineer

Mumbai, India
1 day ago
Azure Architecture
Azure Security
Cloud Security
J.S. Held LLC
Full-Time
Senior Manager

Embedded VSOC Analyst - Korean Speaker

West Coast, CA, WA, OR
1 day ago
Data Visualization
Geopolitical Analysis
Intelligence Analysis
Sibylline Ltd
Full-Time
Experienced
YEAR $100000 - $120000

Sr Staff Cyber Systems Architect

Englewood Cliffs, NEW JERSEY
1 day ago
Active Directory
Cloud Computing
Cybersecurity
NBCUniversal
Full-Time
Senior Manager
YEAR $145000 - $185000

Solutions Consultant - Public Sector

Edinburgh, United Kingdom
2 days ago
Cloud Architectures
Communication Skills
Sales
Palo Alto Networks
Full-Time
Experienced

Product Security Engineer (Kubernetes)

Prague, Czech Republic
2 days ago
Application Security
Container Security
Kubernetes
Mirantis
Full-Time
Experienced

Cortex Domain Consultant

London, United Kingdom
2 days ago
Scripting
Security Operations
SIEM
Palo Alto Networks
Full-Time
Experienced

Manager, Customer Success Manager

USA
2 days ago
Account Management
Customer Success Management
Cybersecurity
Abnormal Security
Full-Time
Manager
YEAR $160000 - $188000

Senior Information Systems Auditor

Asia
2 days ago
Auditing
Information Security
IT Infrastructure
Pilmico Foods Corporation
Full-Time
Senior Manager

Sr. Manager, Security Engineering

USA
2 days ago
Application Security
Cloud Security
Security Engineering
6sense
Full-Time
Senior Manager
YEAR $214860 - $315128

Senior Systems Security Engineer

Heredia, Costa Rica
2 days ago
Endpoint Security
Linux Administration
PowerShell Scripting
Experian
Full-Time
Experienced

Sr. Principal, Value CoE

TX,Remote
2 days ago
Business Consulting
Customer Value Platform
Sales Enablement
Palo Alto Networks
Full-Time
Senior Manager
YEAR $153000 - $229000

Looking for a specific job?