Cyber Incident Response Lead - Advanced Response Team (Remote)
- United States
- Information Technology & Systems
- Permanent
- Hybrid
- Full Time
- $129,232 - $232,617
As a member of Experian's Global Security Office (EGSO)/Cyber Fusion Center (CFC), you will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Center according to Experian's Incident Response Plan. As an individual contributor, this team member will join a new, growing team of specialized, advanced responders to support escalations of complex and prioritized matters from Experian's existing 24x7 security monitoring and response functions, responsible for responding to and analyzing security incidents involving threats targeting Experian information assets. You will work with end-users, technical support teams, and management to ensure remediation and recovery from these threats.
You will report to the Senior Manager, Global Incident Response.
You'll have the opportunity to:
- Conduct advanced incident response activities to investigate and contain complex or larger-scale cybersecurity matters.
- Orchestrate workstreams across teams (Forensics and Cyber Threat Hunting) and explain the CFC's overall understanding of the timeline of attacker activity so that appropriate containment and remediation actions can be coordinated.
- Respond to cyber security events and alerts associated with threats, intrusions, or compromises per any applicable SLOs.
- Manage multiple cases related to security incidents throughout the incident response lifecycle, including Analysis, Containment, Eradication, Recovery, and Lessons Learned.
- Coordinate successful conclusion of security incidents according to Process & Procedures, and escalate severe incidents according to Experian's Incident Response Plan.
- Maintain case documentation, including notes, analysis findings, containment steps, and cause for each assigned security incident.
- Maintain assigned caseload and move incidents through each phase of the IR Lifecycle, handing off cases as needed for progress.
- Maintain an understanding of common Operating Systems (Windows, Linux, Mac OS), Security Technologies (Anti-Virus, Intrusion Prevention), and Networking (Firewalls, Proxies).
- Interpret device and application logs from a variety of sources (Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures) to identify the root cause and determine the next steps for containment, eradication, and recovery.
- Mentor and provide advanced support to analysts (Logs review, IP Block question).
- Support overall direction for the CFC and input to the security strategy.
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realise their financial goals and help them save time and money.
We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com
Your background:
- Bachelor's Degree in Computer Science, Computer Engineering, Information Security, or a related field, or 8+ years of experience working within Security Operations Centers or Cyber Security Incident Response Teams.
- Demonstrated knowledge of Incident Response and Investigative Methodology.
- Must have knowledge of network protocols (TCP/IP, UDP, ICMP), standard protocols (HTTP/S, DNS, SSH, SMTP, SMB), wireless networking, networking infrastructure, and network topologies (DMZ, VPN, WAN) and network technologies (WAF, IPS, Routers, Firewalls).
- Experience with commercial and open-source SIEMs, full packet capture tools, and network analysis tools (Splunk, Wireshark, SOF-ELK).
- Exhibit skills using common Incident Response and Security Monitoring applications such as SIEM (Splunk), EDR (FireEye HX, CrowdStrike Falcon, McAfee mVision EDR), WAF, IPS.
- Demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs).
- Have at least one certification involving incident response, ethical hacking, cyber security (GCIH, E CEH, E CIH), or network forensics (GIAC Network Forensic Analyst (GNFA), NICCS Certified Network Forensics Examiner (CNFE)).
- Hold one Security Management certification (ISC2 CISSP, CISM) or obtain such certification within the first two years as a Cyber Incident Response Lead.
- This role has a regular Monday – Friday schedule, with the expectation to participate in an on-call schedule or work outside of normal work hours to respond to cybersecurity incidents.
Benefits/Perks:
- Great compensation package and bonus plan.
- Core benefits including medical, dental, vision, and matching 401K.
- Flexible work environment, ability to work remote, hybrid or in-office.
- Flexible time off including volunteer time off, vacation, sick and 12-paid holidays.
Our uniqueness is that we celebrate yours. Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work/life balance, development, authenticity, engagement, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's people first approach is award-winning; Great Place To Work™ in 24 countries, FORTUNE Best Companies to work and Glassdoor Best Places to Work (globally 4.4 Stars) to name a few. Check out Experian Life on social or our Careers Site to understand why.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
#LI-Remote
This is a remote position.
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Marketing and Communications
Brand
Experian
Remote working available
No
Description
El Especialista de Go To Market Digital será responsable de crear y ejecutar estrategias B2B que cubran todo el embudo de ventas (full funnel), optimizando la captación, conversión, activación y reten
Reference
4fd897f6-c681-45c3-bc06-f31ed31cc4f1
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
Yes
Description
The Experian Data Quality (EDQ) North America Professional Services team is focused on helping our clients achieve successful outcomes through both the pre- and post-sales phases of their technology i
Reference
706fb15c-16d1-459d-90d9-526cb98cfc50
Expiry Date
01/01/0001
Salary
Location
Heredia , Costa Rica
Experience Level
Associate
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
Yes
Description
The Technical Client Services Representative will provide outstanding client software support and respond to routine and emergency support calls from clients and support staff.Responsibilities:Trainin
Reference
1ce30e86-bf9e-4753-b89c-daad1a2ca891
Expiry Date
01/01/0001
Salary
Location
Blumenau, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Blumenau
Role Type
Hub
Schedule
Full Time
Department
Administration & Office Support
Brand
Serasa Experian
Remote working available
No
Description
Atendimento ao Cliente interno por chat, telefone e e-mail;Procedimentos administrativos em geral;Responsável pela administração dos grupos de e-mail e whatsapp;Acompanhamento e preenchimento de plani
Reference
3ee83307-215e-4c59-a44c-ef8311139c23
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hub
Schedule
Full Time
Department
Marketing and Communications
Brand
PagueVeloz
Remote working available
No
Description
Definir pautas e produzir conteúdos para os canais de comunicaçãoPlanejar e executar campanhas de endomarketingApoiar na execução de eventos internosDesenvolver identidades visuais e peças para as ini
Reference
ab5d6a4f-5e4d-4389-9cb3-2f9b385b728e
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Serasa Experian
Remote working available
No
Description
Estamos procurando uma pessoa Analista de Curadoria de Chatbot Pleno com foco em GenAI para se juntar à nossa equipe. O perfil ideal será responsável por gerenciar e otimizar a curadoria de conteúdos
Reference
c2589381-1575-4bb5-a26a-8cf80ba197e5
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Data Management
Brand
Serasa Experian
Remote working available
No
Description
Definir a arquitetura e melhores práticas para implementação do Salesforce Data CloudIntegrar o salesforce Data Cloud com ferramentas como Marketing Cloud, Sage Maker e DatabricksColaborar com equipes
Reference
5afc5ba7-856f-430a-bd34-3ca30d739d22
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Data Management
Brand
Serasa Experian
Remote working available
No
Description
Liderar projetos de dados desde o mapeamento de requisitos, até a modelagem de arquitetura e disponibilização dos dadosContribuir para o design, documentação, manutenção, monitoramento e otimização de
Reference
76acc397-c0ae-4f1d-9766-0c99e5bab9ee
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Entry Level
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
See pay range in the job description below
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
Employer: Experian Information Solutions, Inc. Job Title: Staff Engineer Job Location: 475 Anton Blvd., Costa Mesa, CA 92626Performing advanced, expert-level computer application development and sup
Reference
ac8860f8-cd91-4e62-9e1a-f1e84bbb0685
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Entry Level
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
See pay range in the job description below
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
Employer: Experian Information Solutions, Inc. Job Title: Software Development Staff Engineer Job Location: 475 Anton Blvd., Costa Mesa, CA 92626Actively participate in modernization of legacy appli
Reference
8e478ed5-95c0-4951-8b53-7ff30e9e08a0
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Entry Level
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
See pay range in the job description below
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
No
Description
Employer: Experian Information Solutions, Inc. Job Title: Principal Lead Solution Advisor Job Location: 701 Experian Pkwy, Allen, TX 75013Act as a technical lead and industry expert for solutions th
Reference
89c129c7-15e1-4326-a95e-0454753a6196
Expiry Date
01/01/0001
Salary
Location
Blumenau, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Blumenau
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Executar testes manuais em aplicativos móveis (iOS/Android) e web;Ajudar na criação de automações de testes;Identificar, documentar e reportar bugs de forma clara e objetiva;Participar das cerimônias
Reference
5b305668-42c8-4e48-a50b-f794ffa68012
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Serasa Experian
Remote working available
No
Description
Coletar e analisar dados sobre o mercado, incluindo tendências, segmentações, comportamento dos consumidores e concorrência;Sobre concorrência, a nível global, monitorar e avaliar as estratégias, prod
Reference
40883c2c-a21a-470e-ba62-62bbef95e420
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
Yes
Description
Reporting to the Control Testing Manager, the IT Control Testing Analyst will perform control testing over data security and key resiliency risks across the Experian global business. They will work wi
Reference
0bdae96b-56a8-485c-be65-d1ce6407352a
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Entry Level
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
See pay range in the job description below
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
Employer: Consumerinfo.com, Inc. Job Title: Development and Operations Engineer Lead Job Location: 475 Anton Blvd., Costa Mesa, CA 92626Define infrastructure and build pipeline architectures in coll
Reference
d3ba2c97-0396-41d7-8905-d11208bfe38b
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Costa Mesa
Role Type
Home
Salary Range
$112,375 - $202,276
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Description
In this fully remote role, reporting to the Sales Operations VP, you will design and implement strategies for key sales areas, including go-to-market structure, role development, and compensation plan
Reference
eec90318-4876-44fc-8018-1b5e01a3081d
Expiry Date
01/01/0001