Cyber Defense Senior Analyst
- Legal & Compliance
- Permanent
- Hybrid
- Full Time
- Cyberjaya
As a Cyber Defense Senior Analyst, you will join the frontline of the Cyber Fusion Center, performing in-depth analysis, triage, and response to security threats by following documented policies, processes, and playbooks to meet Service Level Objectives (SLOs). The frontline team provides global 24x7 security operations and monitoring for cybersecurity events impacting Experian and is a division of Experian’s Cyber Fusion Center (CFC) which is organized under the Experian Global Security Office (EGSO). It acts as the first line of defense in Experian's broader incident response and incident management functions and is responsible for receiving, triaging, and prioritizing cybersecurity alerts, including being the dedicated point of contact for potential security incidents reported by users (e.g., Experian employees). Depending on the results of triage, this team is then responsible for investigating, containing, eradicating, and recovering from events falling in its purview or escalating higher-risk events to dedicated incident response and management teams in the CFC as necessary.
This role is critical in ensuring the effective handling of potential threats and plays a part in driving continuous improvement in security operations.
Summary of Primary Responsibilities
As the Cyber Defense Senior Analyst, you will:
- Execute daily security operations by monitoring, triaging and conducting response activities for security events and alerts associated with cyber threats, intrusions, and/or compromises alongside a team of global security analysts in accordance with documented SLOs, policies, processes, and playbooks.
- Leverage investigative experience and technical skills to effectively analyze events using security tooling and logging (e.g., SIEM, EDR) and assess potential risk / severity level of cyber threats; escalate higher-risk events to dedicated incident response and management teams in the CFC in alignment with established processes.
- Collaborate with external teams for incident resolution and escalations, driving effective incident handling
- Notify team Lead(s) of concerns related to operations, such as anomalous changes in metrics, notable open incidents, quality concerns, or observed risks; support with resolution if appropriate
- Manage and complete assigned caseload efficiently throughout the incident response lifecycle, including analysis, containment, eradication, recovery, and lessons learned; maintain high standards of quality and thoroughness to resolve events appropriately
- Maintain all case documentation, including notes, analysis findings, containment steps, and root cause for each assigned security incident. Ensure incident updates or contact with end users are performed in a timely manner and documented accordingly and that case hand-off processes are completed as appropriate, such as completing / verifying shift logs
- When requested, assist in training and onboarding of new team members to help their transition to our processes
- Develop and apply subject matter expertise in security operations processes to assist in driving improvements to relevant playbooks, Standard Operating Procedures (SOPs), and training materials
- Support management's overall strategy for CFC by participating in execution of improvement initiatives in conjunction with management's plans
- Assist the team Leads and management on use case development by suggesting enhancement or tuning of use cases to improve the security posture of Experian
Successful candidate is required to work on 12 hours rotational shift.
What We Offer
- Hybrid work model
- 20 days of annual leave
- Comprehensive medical and hospitalization coverage (including dependents)
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realize their financial goals and help them save time and money.
We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.
Education and Professional Experience:
- 3+ years or equivalent of information security experience working within a Security Operations Center or Cyber Security Incident Response Teams
- Bachelor's degree in computer science, Computer Engineering, Information Systems, Information Security, or a related field. 6+ years or more experience working within a Security Operations Center, Incident Response Team, law enforcement, or military experience may be accepted in lieu of this requirement.
- One or more professional, currently-held certifications related to Digital Forensics, Incident Response, or Ethical Hacking highly preferred (e.g., GCIH, GMON, GCED, GSOC, CEH, GCFE, GCFA, CFCE, ENCE). Information security management certifications (CISSP, CISM) or vendor-specific certifications are a plus.
Technical Knowledge and Skills:
- Demonstrate working knowledge of the Incident Response Life Cycle, MITRE ATT&CK Framework, Cyber Kill Chain, and other cybersecurity frameworks.
- Demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs), as well as common industry practices to investigate and respond to threats including phishing, malware, network attacks, suspicious activity, data security incidents, etc.
- Demonstrated proficiency in determining appropriate methods to contain, eradicate, and recover from a wide variety of security incidents. Provides recommendations to proactively prevent incidents from re-occurring in the future.
- Possesses an understanding of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, NetFlow, etc.), Cloud Infrastructure (AWS, Azure, GCP), and Security Technologies (Anti-Virus, Intrusion Prevention, Web Application Firewalls, etc.)
- Ability to review and interpret device and application logs from a variety of sources (e.g., Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures, etc.) to identify root cause and determine next steps for containment, eradication, and recovery.
- Experience with common Incident Response and Security Monitoring applications such as SIEM (e.g., Qradar, Splunk), EDR (e.g., FireEye HX, CrowdStrike Falcon, Microsoft Defender, etc.); experience with Security Orchestration, Automation, and Response (SOAR) technologies such as Palo Alto XSOAR and Google Secops (Chronicle) are a plus
- Actively seeks to build advanced technical skills and hands-on knowledge in areas such as:
- In-depth packet analysis skills, core forensic familiarity, incident response skills, public could security practices, and data fusion skills based on multiple security data sources
- Security analysis and architecture of Azure and AWS cloud environment using security tools including Defender for Cloud, Wiz, GuardDuty, CloudTrail, or CloudWatch.
- System administration on Unix, Linux, or Windows
- Network forensics, logging, and event management
- Defensive network infrastructure (operations or engineering)
- Vulnerability assessment and penetration testing concepts
- Malware analysis concepts, techniques, and reverse engineering
- In-depth knowledge of network and host security technologies and products (such as firewalls, network IDS, scanners) and continuously improve these skills
- Security monitoring technologies, such as SIEM, IPS/IDS, UEBA, DLP, among others
- Scripting and automation
Behavioral Skills
- Demonstrate critical thinking skills, problem solving, analytical expertise, attention to detail, and the ability to function in a team-oriented, fast-paced, dynamic, global environment.
- Strong written and verbal communication skills including the ability to describe findings, concerns and/or required actions to users, teams, or leadership for potential incidents. The ability to explain technical terminology to the lay person is frequently required.
- Proven record of improving the way work is performed, originating action and ideas to drive enhancements to existing conditions and processes.
- Ability to conduct security incident investigation efforts and effectively coordinate communications
- Self-motivated and able to work with little supervision.
- Ability to participate in paid overtime when operational needs may require additional support
Our uniqueness is that we truly celebrate yours. Experian's culture and people are key differentiators. We take our people agenda very seriously and focus on what truly matters; DEI, work/life balance, development, authenticity, engagement, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's strong people first approach is award winning; Great Place To Work™ in 24 countries, FORTUNE Best Companies to work and Glassdoor Best Places to Work (globally 4.4 Stars) to name a few. Check out Experian Life on social or our Careers Site to understand why.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is a critical part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
# LI-Hybrid
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
United States
Experience Level
Not Applicable
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$80,237 - $139,077
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
Yes
Description
Job descriptionWe would love you to join us at Experian in helping us to shape the future of employer services for Human Resources compliance and outsourcing. We are looking for a Customer Success Man
Reference
85900184-2088-43ca-969f-b9438d24c12a
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Not Applicable
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$50,992 - $88,386
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
Yes
Description
Job descriptionWe are looking for a Customer Success Representative – EES Verification Fulfillment. You'll help shape a new business at Experian and help to lead market reach of new and existing produ
Reference
79bedb10-e209-4a13-917d-940df4daa90d
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Serasa Experian
Remote working available
No
Description
Desenvolver e manter pipelines de dados automatizados para consolidação, tratamento e análise de informações financeiras.Integrar diferentes fontes de dados (ERP, BI, planilhas, APIs externas) em bas
Reference
65d8d347-65c4-43d1-9e38-8bc79b3c96c4
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Associate
Employment
Permanent
Location
Costa Mesa
Role Type
Home
Salary Range
See Pay Range
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Description
Our team, culture and people are what help set us apart and the main reason why we continue to be named to the Forbes 100 most innovative companies for the last five years.Our Sales Account Executives
Reference
f4a43607-c993-45de-8c06-93f7af022829
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Entry Level
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$63,964 - $110,872
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
Yes
Description
Join Experian as a Mobile Developer – Make an Impact at ScaleAre you looking for the agility of a startup combined with the stability and resources of an established industry leader? At Experian Consu
Reference
57e7beac-2f92-4627-897f-b0b479219345
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Sales & Business Development
Brand
PagueVeloz
Remote working available
No
Description
Prospecção de Clientes: Identificar e abordar potenciais clientes na região formando uma carteira sólida.Manutenção de Carteira: Manter uma carteira de clientes ativa, oferecendo um atendimento de ex
Reference
74d50730-ec54-4079-b9ef-ca824bb17d64
Expiry Date
01/01/0001
Salary
Location
UNITED STATES
Experience Level
Mid-Senior Level
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$133,109 - $239,596
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
Yes
Description
We're seeking a experienced Cloud Application Architect & Engineer, with expertise in AWS and healthcare data systems to lead the design and implementation of secure, scalable, and compliant cloud-nat
Reference
cb65315e-7077-446d-a136-f67af836001f
Expiry Date
01/01/0001
Salary
Location
UNITED STATES
Experience Level
Mid-Senior Level
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$133,109 - $239,596
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
Yes
Description
As an experienced Cloud Data Architect & Engineer with AWS and healthcare data systems, you will report to Experian Health.Architecture & StrategyDesign HIPAA-compliant data architectures using AWS-na
Reference
b7d5fec9-2bb6-4b3b-9422-919da02c287c
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
Yes
Description
SummaryAs an FP&A Supervisor, you will lead financial performance for main teams, overseeing labor planning, forecast accuracy, and process improvements. Managing a team of 3-8 individuals, you'll ens
Reference
e325a936-929d-47ab-806d-256ebcf79a7c
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Costa Mesa
Role Type
Home
Salary Range
$115,747 - $208,344
Schedule
Full Time
Department
Product Management
Brand
Experian
Remote working available
Yes
Description
We would love you to join us at Experian in helping us to shape the future of employer services for Human Resources compliance and outsourcing. We are looking for a Product Operations Manager to enhan
Reference
45c1f7c0-5491-4907-85f1-777a6b4d8005
Expiry Date
01/01/0001
Salary
Location
Heredia , Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Project Management
Brand
Experian
Remote working available
No
Description
Job description Company DescriptionExperian is a global company in data services, helping organizations and consumers manage risk and make informed decisions. We empower individuals and businesses at
Reference
eb4b9741-8b32-4e35-8526-88b1eeeb2724
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
$100,649 - $174,459
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
We are looking for a Technical Program Manager (TPM) to lead the planning, execution, and delivery of complex, cross-functional programs. As a TPM, you will work at the intersection of engineering, pr
Reference
f340f838-6ee6-4bf9-8aeb-d11aa3a6b76c
Expiry Date
01/01/0001
Salary
Location
Sofia , Bulgaria
Experience Level
Not Applicable
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
No
Description
We’re launching a brand-new Business Performance function within the Experian Consumer Services UK Analytics team - and we’re looking for a Senior Data Analyst to help shape its future. This is a uniq
Reference
3efae2f7-d563-4f10-9a1b-4617a6f8295a
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
Serasa Experian
Remote working available
No
Description
Quais serão suas principais entregas?- Planejar, executar e gerir prazos em processos trabalhistas e processos administrativos;- Realizar audiências e sustentações orais em todas as instâncias;- Asses
Reference
9547b6ab-ce6c-4a59-8eb8-3341c786e0cf
Expiry Date
01/01/0001
Salary
Location
Sofia , Bulgaria
Experience Level
Not Applicable
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
What you will do:Follow Software Delivery Lifecycle (SDLC) process.Attend and contribute to or lead design and review process with guidance from Product ConsultancyOversee, where required, the people
Reference
83e3cb3a-3800-4c0a-b1dc-da7c42aea748
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Serasa Experian
Remote working available
No
Description
Estamos em busca de um(a) profissional de Data Analytics Pleno com olhar estratégico e habilidade para transformar dados em decisões. Esse papel será essencial para gerar insights que impulsionem a pe
Reference
3311d6e1-29b5-4b19-b0d0-4c21e8becc59
Expiry Date
01/01/0001