Cyber Defense Analyst specializing in initial threat triage and incident response. Work in Ford's Cyber Defense Center using advanced security tools.
Responsibilities
Perform initial triage of various security incidents to determine if a threat applies to Ford including phishing, malicious software, hostile probes, information theft, and misuse of computing facilities
Conduct daily analysis on the aforementioned incidents using a range of tools such as SIEM, EDR, IDS/IPS, Cloud, and Sandbox analysis
Collaborate with internal and customer teams to investigate and contain incidents
Respond to cyber security queries received from Ford personnel
Adhere to various playbooks/procedures to provide consistent and repeatable methods to resolve security incidents
Effectively document investigation details for both technical and non-technical audiences
Recognize attacker Tools, Techniques, and Procedures (TTPs) and Indicator of Compromises (IOCs) that apply to current and future investigations
Support Shift Lead rotation at least once per calendar quarter
Keeping up-to-date with emerging cybersecurity threats to proactively prevent potential attacks and improve Ford’s cyber security posture
Leverage AI-driven threat detection and analysis tools to enhance triage accuracy and accelerate identification of emerging attack patterns
Requirements
Bachelor’s degree in a computer related field
2+ years of experience with SIEM tools and/or reviewing system log files, data correlation, and analysis (i.e. firewall, network flow, system logs, IDS)
2+ years of experience in customer service including the resolution of escalations, incident handling, and response
In depth knowledge of servers, clients, various computer peripherals, network and/or storage technologies with various operating systems including Windows, Linux, and Mac
Experience in a fast paced, high stress, support environment, able to work with a sense of urgency and attention to detail
Must work well with others including peers and end-users
Strong interest in cyber security with an eagerness and willingness to learn
Strong deductive reasoning, critical and analytical thinking, problem solving, and prioritization skills
Disciplined approach utilized when completing work and adhering to procedure
Strong oral and written communications skills – able and willing to communicate technical items in non-technical terms
Demonstrate high level of independent initiative, drive for results and commitment to integrity
Ability to concurrently work on multiple assignments/projects and complete on schedule with high quality
2+ years of Cyber Security experience (Preferred)
2+ years Cloud experience in Google Cloud Platform (GCP) or Microsoft Azure (Preferred)
Experience applying Artificial Intelligence (AI) and Machine Learning (ML) to improve processes, decision-making, or analysis within your current job responsibilities (Preferred)
Familiar with Ford Computing Infrastructure and application development life cycle (SDM) (Preferred)
Document Analyst designing and maintaining automated documents for LexisNexis' Workflow Solutions division. Collaborating in an agile environment to improve document efficiency through automation.
Analista de Qualidade Sênior in PMO team conducting quality audits on engineering projects and processes. Supporting continuous improvement initiatives and quality standards documentation.
Business Transformation Analyst optimizing workflows for SpryPoint, a cloud - native provider transforming utility operations. Focused on data - driven insights, process analysis, and stakeholder collaboration.
Analyst, Revenue Management River at Royal Caribbean Group developing pricing strategies for cruise. Monitoring market performance and collaborating cross - functionally to enhance revenue opportunities.
Customer Due Diligence Analyst reviewing applications to ensure compliance with legal and regulatory requirements for LexisNexis Risk Solutions. Interacting with customers and documenting findings accurately in a production - driven environment.
Document Analyst creating and maintaining automated documents for LexisNexis Legal & Professional. Collaborating in an agile environment to enhance document efficiency through automation.
BCBA delivering evidence - based behavioral health services for children in a hybrid setting. Conducting assessments, developing interventions, and collaborating with interdisciplinary teams in Salt Lake City, UT.
Program Planning Scheduling Analyst at Northrop Grumman focused on master planning and scheduling for aerospace systems. Collaborating with diverse teams to ensure program objectives are met on time.
Financial Analyst assessing credit applications for heavy vehicles at Omni. Analyzing economic - financial information and defining credit limits as per company policies.