Cyber Incident Response Lead
- Legal & Compliance
- Permanent
- Home
- Full Time
- Ruddington
As a member of Experian's Global Security Office (EGSO) / Cyber Fusion Center (CFC) you will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Centre (CFC) according to Experian's Incident Response Plan. This team member will join a new, growing team of specialized, advanced responders to support escalations of complex or prioritized matters from Experian's existing 24x7 security monitoring and response functions responsible for responding to and analysing security incidents involving threats targeting Experian information assets.
These threats may include phishing, malware, network attacks, suspicious activity. Also, you will involve working with end-users, partners, technical support teams, and management to ensure remediation and recovery from these threats. Use analytics & data collected from endpoints, environmental logging, and a variety of other sources to maximise containment and eradication of threats, while expediting recovery of the business.
Please note you will have a regular Monday – Friday schedule and expectation to participate in on-call schedule or work outside of normal work hours to manage cybersecurity incidents.
You will report to the CFC Senior Director of Incident Management and Security Operations.
Main Responsibilities include:-
- Conduct advanced incident response activities to investigate and contain complex and larger-scale cybersecurity matters (such as potential major severity incidents)
- In the event of investigative matters requiring additional analytical support from teams such as Forensics and Cyber Threat Hunt workstreams across the teams and hold responsibility for expressing the CFC's overall understanding of the timeline of attacker activity so that appropriate containment and remediation actions can be coordinated
- Respond to Security to cyber security events and alerts associated to threats, intrusions, and compromises per any applicable SLOs.
- Manage multiple cases related to security incidents throughout the incident response lifecycle; including Analysis, Containment, Eradication, Recovery, and Lessons Learned.
- Maintain case documentation, including notes, analysis findings, containment steps, and cause for each assigned security incident.
- Maintain an understanding of common Operating Systems (Windows, Linux, Mac OS), Security Technologies (Anti-Virus, Intrusion Prevention), and Networking (Firewalls, Proxies)
- Interpret device and application logs from a variety of sources (e.g. Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures) to identify cause and determine next steps for containment, eradication, and recovery.
- Provide Advanced Support to analysts (Logs review, IP Block question). Mentor other analysts (process question, tool usage)
Internal Grade D
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realise their financial goals and help them save time and money.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland.
Find out what its like to work for Experian by clicking here
- Must have knowledge of network protocols (TCP/IP, UDP, ICMP), standard protocols (HTTP/S, DNS, SSH, SMTP, SMB), wireless networking, networking infrastructure, and network topologies (DMZ, VPN, WAN) and network technologies (WAF, IPS, Routers, Firewalls)
- Experience with commercial & opensource SIEMs, full packet capture tools, and network analysis tools (Splunk, Wireshark, SOF-ELK)
- Have a demonstrated knowledge of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs).
- Exhibit skills using common Incident Response and Security Monitoring applications such as SIEM (Splunk), EDR (FireEye HX, CrowdStrike Falcon, McAfee mVision EDR.), WAF, IPS
Benefits package includes:
- Flexible work environment, working hybrid or in the office if you prefer.
- Great compensation package and discretionary bonus plan
- Core benefits include pension, bupa healthcare, sharesave scheme and more
- 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
Find out what its like to work for Experian by clicking here
#LI-Remote
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
Kuala Lumpur, Malaysia
Experience Level
Not Applicable
Employment
Permanent
Location
Kuala Lumpur
Role Type
Hybrid
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
No
Description
Job description Customer Service Executive plays a critical role in providing an interface between customers and the client company. They are required to answer incoming calls from customers for vario
Reference
27aecdae-4779-4f2c-ab84-2e768be668f1
Expiry Date
01/01/0001
Salary
Location
North Sydney, Australia
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Sydney
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
No
Description
Our Customer Success team play an integral part in maintaining and growing our clients across ANZ. They advise and guide a wide variety of clients who are using Experian products, from the point of s
Reference
8ea305f7-a719-4e9b-8da1-4a29a4746f66
Expiry Date
01/01/0001
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Administration & Office Support
Brand
Experian
Remote working available
No
Description
👩💼👨💼 Propósito del Rol: Serás responsable de brindar soporte administrativo y organizativo de alto nivel, asegurando el manejo eficiente de agendas ejecutivas, coordinación de reuniones, viajes
Reference
3ef73626-1d45-49ab-9810-3cbbaca2855e
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Associate
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
See Pay Range
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Description
What we're looking forCommunication is the key to our success. You grasp concepts quickly and know how to make the complex easy to understand. You can effortlessly share your knowledge of the industry
Reference
3678f469-742d-430a-94a8-c873fde1950e
Expiry Date
01/01/0001
Salary
Location
Heredia , Costa Rica
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
Yes
Description
We are looking for an Agile Developer II to join our development team. You will analyze, develop, and maintain software applications using .NET, React.js, Kubernetes, and other modern technologies. Yo
Reference
b00236d1-922b-409e-92fc-2415bfe35187
Expiry Date
01/01/0001
Salary
Location
Blumenau, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Blumenau
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Desenvolvimento e evolução de plataformas web em Python/Golang;Configurações de sistemas (experiência com Docker);Documentação das Regras de Negócio e Arquitetura;Comunicação técnica para conversas en
Reference
1362d06e-d3e4-4711-b79e-6dec6bc1a07c
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Você será responsável por atuar em um time de Inteligência de Dados, focado em produtos e soluções para o agronegócio, compilando, estruturando e disponibilizando informações aderentes ao negócio para
Reference
b454bed8-a659-4377-9825-ace8be799505
Expiry Date
01/01/0001
Salary
Location
Blumenau, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Blumenau
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
PagueVeloz
Remote working available
No
Description
Aqui você vai implementar e manter soluções fullstack, escaláveis e com alta disponibilidade, otimizando o uso de recursos e propondo melhorias no processo de trabalho. Além de disseminar conhecimento
Reference
fab0c52f-b240-4be6-8fe8-67b575afbe3c
Expiry Date
01/01/0001
Salary
Location
Blumenau, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Blumenau
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
PagueVeloz
Remote working available
No
Description
Aqui você vai implementar e manter soluções backend em nuvem, escaláveis e com alta disponibilidade, otimizando o uso de recursos e propondo melhorias no processo de trabalho. Além de disseminar conhe
Reference
492ec9c4-db6b-4775-9241-de7470af0fb8
Expiry Date
01/01/0001
Salary
Location
Blumenau, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Blumenau
Role Type
Home
Schedule
Full Time
Department
Information Technology & Systems
Brand
PagueVeloz
Remote working available
No
Description
Aqui você vai implementar e manter soluções backend em nuvem, escaláveis e com alta disponibilidade, otimizando o uso de recursos e propondo melhorias no processo de trabalho. Além de disseminar conhe
Reference
44723e3c-a367-468b-8674-e94ac54ec818
Expiry Date
01/01/0001
Salary
Location
Sofia , Bulgaria
Experience Level
Not Applicable
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Data Management
Brand
Experian
Remote working available
No
Description
Reporting into Head of Data Management you will deliver critical management information and analysis to allow our data managers identify data quality enhancements, monitor data usage and track supplie
Reference
12dfa665-54c7-4a86-b238-8fba4ad94b05
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Serasa Experian
Remote working available
No
Description
O Analista de Business Partner Finance tem como principal escopo o atendimento da área de negócios referente (mas não somente) ao planejamento financeiro, com foco na receita. Além disso, será ponto f
Reference
cb0027c5-648c-4d3f-9d09-183da89383b1
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Analytics
Brand
Serasa Experian
Remote working available
No
Description
Experiência com SQLExperiência em ferramentas de DataViz (Preferencialmente Power BI) Boa comunicação com áreas de negócio
Reference
7b051513-f330-4502-b476-5c81279f83eb
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
O Analista de Desenvolvimento de Software Junior será responsável por desenvolver e manter soluções backend utilizando Golang, garantindo a alta qualidade e performance das aplicações. Este papel exig
Reference
887069af-1f14-47b5-a726-9042de4b0fb8
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Data Management
Brand
Serasa Experian
Remote working available
No
Description
Identificar e mapear padrões de fraudes e retroalimentar a estratégia de prevenção a fraudes.Construir relatórios detalhados sobre incidentes de fraude. Monitorar e analisar transações para identifica
Reference
76bb0995-619c-4890-bb10-ac8eeae0b4c3
Expiry Date
01/01/0001
Salary
Location
Mumbai, India
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Mumbai
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
No
Description
As a Sales Manager you will evaluate sales opportunities in multiple domains like BFSI, Telecom etc. Your exposure to Solution Sales/ Consulting environment or financial services will differentiate yo
Reference
771162b7-7c77-4b48-a57a-aa164fee9a13
Expiry Date
01/01/0001