Senior Specialist in IT Security responsible for cybersecurity incident handling and threat analysis. Interfacing with managed security providers, analyzing threats, and managing incidents.
Responsibilities
Serve as a technical resource for cyber security incident handling
Provide qualified guidance on and coordinate execution of identification, analysis, response and monitoring of cyber threat and vulnerabilities
Monitor and consult on technical vulnerability remediation Incident Management and Monitoring
Manage Security incidents. Assist in developing concepts for efficient and effective security response activities.
Be a trusted point of contact and expertise for incidents and manage all the incident response activities including escalation to upper management.
Note: this role requires some on-call duty Vulnerability Management
Analyze and interpret results of vulnerability management activities using standard frameworks (CVSS)
Research and investigate new and emerging vulnerabilities, to include 0Day events
Identify and resolve false positive findings in assessment results
Assess compensating controls and validate their effectiveness
Integrate information from disparate sources and create tactical intelligence that is relevant to protecting the business. Threat Management
Research and investigate new and emerging cyber threats and vulnerabilities through participation in external security communities.
Manage the collection, analysis, and dissemination of cybersecurity threat information
Manage relationships with global stakeholders to identify business needs and design appropriate security controls.
Analyze and interpret threat information using standard frameworks (Cyber Kill Chain, MITRE ATT&CK framework)
Requirements
B.S in information assurance (or related field) with minimum of 3 years’ experience
Minimum 1 years’ experience on a computer security incident response team or in an incident response role
Practical experience with identifying, analyzing, and communicating cyber threat and vulnerability information
Exemplary verbal and written communication skills (English business fluent spoken and written)
Demonstrated ability to think strategically and perform detailed, complex analysis and data interpretation
Effective interpersonal skills, out-of-the-box thinking and ability to interface with all levels of staff
Ability to work under pressure and deal with ambiguous situations.
Ideal, but not required
Experience in a global corporation
Experience with incident response across a multi-provider cloud environment
Experience with incident management in Microsoft Azure
Familiarity with Endpoint Detection and Response technologies (Microsoft Defender ATP, CrowdStrike Falcon)
SANS Certified Incident Handler, CERT-Certified Computer Security Incident Handler certification or equivalent
Experience applying threat and vulnerability analyses models, including the LM Cyber Kill Chain, the Diamond Model of Intrusion Analysis, the MITRE ATT&CK Framework and the Common Vulnerability Scoring System (CVSS)
Partner Sales Specialist focusing on enabling partners to sell Microsoft Security solutions. Collaborating with teams to activate partners for effective sales across their customer base.
Activity Security Representative providing multi - disciplined security support for a customer’s facility at GDIT. Role involves ensuring security protocols and maintaining documentation for classified materials.
Cybersecurity Engineer enhancing enterprise security posture at GDIT. Designing secure identity controls and managing authentication solutions for Microsoft environments.
Information Security Officer developing risk management systems and collaborating with stakeholders for a tech company. Working on information assets and engineering teams in a hybrid working environment.
Security Lead managing GSA cloud applications security architecture. Collaborating with teams to ensure compliance with federal security standards and best practices.
Security Officer providing safety and security services in East Valley locations for Banner Health. Involves emergency response, patrols, alarm monitoring, and writing reports.
Security Engineer contributing to security initiatives for incident management platform at Rootly. Collaborating cross - functionally to ensure reliable and scalable security solutions.
Lead Senior Information System Security Manager (ISSM) for Boeing's cybersecurity programs. Focus on implementing compliance for DFARS/NIST and managing a large portfolio for CUI.
Técnico de Segurança do Trabalho supporting Segurança, Meio Ambiente e Saúde in submarinas operations for Petrobras in Macaé/RJ. Contribuir para ambientes de trabalho seguros e cumprimento de normas.
Senior Information Security Analyst focused on Blue Team/CSIRT at PagBank. Engaging in cybersecurity incident response and advanced security solutions support.