Incident Response Engineer combating cybersecurity threats for GEICO by handling security events and conducting incident response activities. Engaging in complex investigations including cloud response and malware analysis.
Responsibilities
Identify, detect, respond, and mitigate sophisticated threats to GEICO
Perform incident response functions including: Responding to cloud-based incidents in AWS, Azure, and GCP
Host-based analysis of Windows, Linux and Mac operating systems
Examine data collected from a variety of tools and sources (e.g., IDS alerts, firewall logs, web logs, network traffic logs) to identify IOCs and/or malicious TTPs
Review/Comprehend log data and apply use case scenarios in effort to further develop threat detection and incident response capabilities
Analyze events that occur within their environments for the purposes of mitigating threats
Requirements
4+ years of Incident Response experience
Knowledge of digital forensics and incident response best practices
Experience with responding to cloud-based incidents
Demonstrated experience performing root cause analysis of security events and incidents
Knowledgeable with security frameworks (E.g. – MITRE ATT&CK framework)
Ability to understand security control mechanisms for Windows, Linux, and Mac operating systems
Knowledge of computer networking concepts and protocols, and network security methodologies
Knowledge of common threat actor TTPs
Proficient in scripting languages such as Bash, Python, Perl, and PowerShell.
Ability to apply strong critical thinking, logic, decision making, troubleshooting, and problem-solving skills
Strong written and oral communication skills
Ability to work independently and as a team member
Ability to handle advanced-level triage and troubleshooting
Ability to produce technical documentation, such as Visio flows and processes
Ability to understand complex problems while presenting them simplistically in a formal setting
Ability to learn and apply large amounts of technical and procedural information, and to follow published standards and processes.
Ability to follow complex instructions, resolve conflicts or facilitate conflict resolution, and have strong organization/priority setting skills.
Ability to analyze Windows systems for changes that occur during a specific timeframe.
Ability to analyze network packet captures
Knowledge of cloud computing technologies and concepts (SaaS, PaaS, IaaS, etc.)
Knowledge in cyber defense systems and mechanisms.
Engineer designing, planning, and implementing cloud infrastructure for diverse clients in Defence Enterprise Business Unit. Support operations and manage system/network infrastructure projects effectively.
Project Engineer - Electrical delivering engineering projects to support safe and efficient mining operations at Ernest Henry. Collaborating with teams for successful project execution and electrical system management.
Mine Planning Engineer responsible for developing underground mine designs and schedules for Evolution Mining. Collaborating with planning, scheduling, and underground operations teams for efficient execution.
Load Calculation Engineer supporting certification activities and load calculation for wind turbine compliance. Requires advanced knowledge in wind‑turbine theory and proficiency with specific tools.
Engineer responsible for assuring software quality for Windfarm Control by developing programs and defining test cases. Collaborating with different departments in an international environment.
Software Engineer 3 at Newport News Shipbuilding collaborating on software requirements development and validation for naval systems. Conducting multidisciplinary research and ensuring compliance with software standards.
Manufacturing Engineer Intern supporting development and documentation of aerospace hydraulic actuator production processes. Collaborating with teams to improve product flow and quality while utilizing CAD tools.
Process Engineer focused on continuous improvement in food manufacturing, leading projects and mentoring teams. Collaborating with plant leadership to implement lean manufacturing principles.
Mechanical M&R Engineer at LyondellBasell supporting Bayport Polymers Plant asset maintenance strategy. Collaborating across disciplines and applying data analysis for performance improvements.
Process Engineer leading continuous improvement initiatives in manufacturing at Ventura Foods. Focusing on Lean manufacturing and process improvement projects to enhance operational efficiency.