PLEASE NOTE: ***LA LOCAL CANDIDATES WILL ONLY BE CONSIDERED FOR THIS ROLE** Please note, they are offering a remote option to start, upon conversion, you will need to be okay with a hybrid schedule, 3 days onsite, 2 day remote.
Cyber Security Incident Response Specialist will be responsible for the fundamental operations of servers, operating systems, networks, firewalls, cloud applications, and infrastructure along with day-to-day Incident Response activities as well as additional SOC related detection and response activities as required for a global environment.
Position: Cyber Security Incident Response Specialist
Address: Century City, CA
Why Open: New Role, Growth
Hours: 40 hrs/wk; M-F; 8-5pm PST
Duration: 6-12 mo. contract
Interview Process: 2 Video Interviews > Offer
Skills Used in this Environment:
- Change Management
- Identity and Access Management (IAM)
- Cyber Threat Intelligence (CTI)
- Microsoft Defender
- PingFederate
- Proofpoint
- Cyber Threat Hunting (CTH)
- Security Awareness
- Cybersecurity Incident Response
- Security Information and Event Management (SIEM)
- Microsoft Azure
Job Scope / Day to Day:
- 75% Incident Response work with 25% mix of playbook enhancements, automation introduction, and training
- Conduct day-to-day Incident Response activities as well as additional SOC related detection and response activities as required for a global environment
- A minimum of 3 years in Information Technology, ideally with 2 years’ experience in a hands-on Incident Response, Threat Hunting, or forensics role
- Understanding of the fundamental operations of servers, operating systems, networks, firewalls, cloud applications, and infrastructure
- Expertise building workflows and playbooks to facilitate the Incident Response process
- an understanding of the NIST framework and using a continuous improvement loop
- Security Incident Response efforts, working to identify and mitigate information security threats
- Review security information, event logs, and reports, provide findings and recommendations
- Nice to haves: GCIH, CYSA+, and GCIA certifications
PLEASE NOTE: ***LA LOCAL CANDIDATES WILL ONLY BE CONSIDERED FOR THIS ROLE** Please note, they are offering a remote option to start, upon conversion, you will need to be okay with a hybrid schedule, 3 days onsite, 2 day remote.