Cyber Incident Response Lead (Remote)
- United States
- Information Technology & Systems
- Permanent
- Hybrid
- Full Time
- $133,109 - $239,596
As a member of Experian's Global Security Office (EGSO)/Cyber Fusion Center (CFC), you will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Center according to Experian's Incident Response Plan. As an individual contributor, you will join a growing team of specialized, advanced responders to support escalations of complex and prioritized matters from Experian's existing 24x7 security monitoring and response functions. You will work with end-users, technical support teams, and management to ensure remediation and recovery from these threats.
You will report to the Senior Manager, Global Incident Response. You will have a regular Monday – Friday schedule, with the expectation to participate in an on-call schedule or work outside of normal work hours to respond to cybersecurity incidents.
You'll have the opportunity to:
- Conduct advanced incident response activities to investigate and contain complex or larger-scale cybersecurity matters.
- Orchestrate workstreams across teams (Forensics and Cyber Threat Hunting) and explain the CFC's overall understanding of the timeline of attacker activity.
- Respond to cybersecurity events and alerts associated with threats, intrusions, or compromises per any applicable SLOs.
- Manage multiple cases related to security incidents throughout the incident response lifecycle, including Analysis, Containment, Eradication, Recovery, and Lessons Learned.
- Coordinate successful conclusion of security incidents according to Process & Procedures, and escalate severe incidents according to Experian's Incident Response Plan.
- Maintain case documentation, including notes, analysis findings, containment steps, and cause for each assigned security incident.
- Maintain assigned caseload and move incidents through each phase of the IR Lifecycle, handing off cases as needed for progress.
- Maintain an understanding of common Operating Systems (Windows, Linux, Mac OS), Security Technologies (Anti-Virus, Intrusion Prevention), Cloud Security investigations and response tools, and Networking (Firewalls, Proxies).
- Interpret device and application logs from a variety of sources (Firewalls, Proxies, Web Servers, System Logs, Splunk, Packet Captures) to identify the root cause and determine the next steps for containment, eradication, and recovery.
- Support overall direction for the CFC and input to the security strategy.
- Mentor and provide advanced support to analysts (Logs review, IP Block question).
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create digital marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realise their financial goals and help them to save time and money.
We operate across a range of markets, from financial services to healthcare, automotive, agrifinance, insurance, and many more industry segments.
We invest in people and new advanced technologies to unlock the power of data and to innovate. A FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 23,300 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.
- 8+ years of experience working within cybersecurity or information technology roles, at least 4+ of which includes working as an investigator, analyst, or leader in a Cyber Incident Response Team.
- Bachelor's Degree in Computer Science, Computer Engineering, Information Systems, Information Security, or a related field. 11+ years of experience working within a Security Operations Center, Incident Response Team, law enforcement, or military experience may be accepted in lieu of this requirement.
- Knowledge of network protocols (TCP/IP, UDP, ICMP), standard protocols (HTTP/S, DNS, SSH, SMTP, SMB), wireless networking, networking infrastructure, and network topologies (DMZ, VPN, WAN) and network technologies (WAF, IPS, Routers, or Firewalls).
- Experience with commercial and open-source SIEMs, full packet capture tools, and network analysis tools (Splunk, Wireshark, SOF-ELK).
- Exhibit skills using common Incident Response and Security Monitoring applications such as SIEM (Splunk), EDR (MDE), Tanium, WAF, IPS.
- Preference for candidates to have at least one certification involving incident response, ethical hacking, cyber security (GCIH, E CEH, E CIH), or network forensics (GIAC Network Forensic Analyst (GNFA), NICCS Certified Network Forensics Examiner (CNFE)).
- Hold one Security Management certification (ISC2 CISSP, CISM) or obtain such certification within the first two years as a Cyber Incident Response Lead.
- Preference for candidates based in Mountain or Pacific Time Zone. Candidates in other U.S. time zones will also be considered.
Benefits/Perks:
- Great compensation package and bonus plan.
- Core benefits including medical, dental, vision, and matching 401K.
- Flexible work environment, ability to work remote, hybrid or in-office.
- Flexible time off including volunteer time off, vacation, sick and 12-paid holidays.
- Explore all our exciting benefits here: https://yourexperianbenefits.com/cand-index.html.
At Experian, our people and culture set us apart. We're deeply committed to creating an environment where everyone feels they belong and can excel. From inclusion and authenticity to work/life balance, development, wellness, collaboration, and recognition, we focus on what truly matters. Our people-first approach has earned us global recognition: World's Best Workplaces™ 2024 (Fortune Top 25), Great Place To Work™ 2025 in 26 countries, and Glassdoor Best Places to Work 2024, among others.
Want to see what life at Experian is really like? Explore Experian Life on social or visit our Careers Site.
Our compensation reflects the cost of labor across several U.S. geographic markets. The base pay range for this position is listed above. Within this range, individual pay is determined by work location and additional factors such as job-related skills, experience, and education. You will be also eligible for a variable pay opportunity.
Experian is proud to be an Equal Opportunity Employer for all groups protected under applicable federal, state and local law, including protected veterans and individuals with disabilities. Innovation is an important part of Experian's DNA and practices, and our inclusive workforce allows everyone to succeed and bring their whole self to work. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
#LI-Remote
This is a remote position.
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
Brasília, Brazil
Experience Level
Not Applicable
Employment
Part-time
Location
Brasilia
Role Type
Hub
Schedule
Part Time
Department
Sales & Business Development
Brand
Serasa Experian
Remote working available
No
Description
Localidade: São Carlos ou BrasíliaEscala: 6x1Modelo de trabalho: PresencialResponsabilidades:Realizar análise documental de acordo com as instruções fornecidas nos manuais de treinamento;Manter-se atu
Reference
c61a2f95-aee6-46e8-bd5b-07d358427ad7
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
We are looking for a Senior DevOps Engineer who will manage the development and maintenance of our infrastructure and applications. You will work with our development and operations teams to ensure s
Reference
f07bc2a9-aaab-44c2-937e-3c1b18c5f14b
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Associate
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
$63,964 - $110,872
Schedule
Full Time
Department
Project Management
Brand
Experian
Remote working available
No
Description
We are looking for a Technical Program Associate (TPA) who is passionate about driving execution, learning complex systems, and supporting cross-functional delivery across engineering, product, and da
Reference
38d1e9b8-af3f-4ee0-ae66-17531cd1dca5
Expiry Date
01/01/0001
Salary
Location
Santiago, Chile
Experience Level
Not Applicable
Employment
Permanent
Location
Santiago
Role Type
Hybrid
Schedule
Full Time
Department
Data Management
Brand
Experian
Remote working available
Yes
Description
You will be part of the Data Consumer Assurance function within the Data Management organization, supporting the monitoring, validation, and assurance of Experian’s AWS-based data assets. You’ll hel
Reference
4082932c-87c0-497f-b523-7f9bfd20fe73
Expiry Date
01/01/0001
Salary
Location
Heredia , Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Description
· Assists in the development of mail population segments to meet customer marketing strategies.· Assesses and selects appropriate resources for program delivery.· Serves as project
Reference
98fed663-4064-414a-9b0b-608097e20cb3
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Description
1. Critiques customer specifications. Develops and executes project plans including program flows. 2. Develops mail population segments to meet customer marketing strategies. 3.
Reference
4fcd23bb-6b63-41af-a572-2ccf5f143192
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Description
Assists in the development of mail population segments to meet customer marketing strategies.Assesses and selects appropriate resources for program delivery.Serves as project coordinator for program
Reference
4690b9e5-d525-4e20-9f87-e379ba465a53
Expiry Date
01/01/0001
Salary
Location
Heredia , Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Description
Assists in the development of mail population segments to meet customer marketing strategies.Assesses and selects appropriate resources for program delivery.Serves as project coordinator for program
Reference
c32fcc1e-4f2d-4721-bda2-2eb72a235c19
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Human Resources
Brand
Experian
Remote working available
Yes
Description
The Work Relations Partner is responsible for managing and resolving employee relations issues to ensure a fair, respectful, and legally compliant workplace. You will support the organization by foste
Reference
e4ec3ae5-41ba-4e9b-9c61-8b9acc75cf35
Expiry Date
01/01/0001
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
No
Description
Descripción del trabajo Propósito del Cargo Garantizar la atención y respuesta integral de reclamos, derechos de petición, investigaciones para entidades de control y demás comunicaciones escritas pr
Reference
4f882a90-e057-43b9-91dc-1bb59cf58e07
Expiry Date
01/01/0001
Salary
Location
Washington, United States
Experience Level
Not Applicable
Employment
Permanent
Location
Washington
Role Type
Hybrid
Salary Range
$71,640 - $124,176
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
Yes
Description
The Experian North America Government Affairs team is Washington, D.C.-based, with a focus on state and federal lobbying activity. This includes monitoring policy developments and engaging in legislat
Reference
567900a0-50c2-45cc-aafd-933f1a36141c
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Roam
Schedule
Full Time
Department
Sales & Business Development
Brand
PagueVeloz
Remote working available
No
Description
Prospecção de Clientes: Identificar e abordar potenciais clientes formando uma carteira sólida.Manutenção de Carteira: Manter uma carteira de clientes ativa, oferecendo um atendimento de excelência e
Reference
b7c5b94f-cded-4fce-bca6-33db2ca67ff2
Expiry Date
01/01/0001
Salary
Location
Sofia , Bulgaria
Experience Level
Not Applicable
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
As a Quality Assurance Engineer, you will play an important role in a dynamic, collaborative, and high-performing team. You will help ensure the delivery of high-quality software by guiding test autom
Reference
82ace30d-c2cd-4a42-b4f4-08a1f72f40c4
Expiry Date
01/01/0001
Salary
Location
Sofia , Bulgaria
Experience Level
Not Applicable
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
Reporting to the Software Team Manager, you will help modernize the automation flows of one of our main products. You will be responsible for designing, implementing, and maintaining automated test su
Reference
87186537-f21a-46bf-832b-920e4c78d459
Expiry Date
01/01/0001
Salary
Location
Nottingham, England
Experience Level
Not Applicable
Employment
Permanent
Location
Nottingham
Role Type
Home
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
Yes
Description
We are looking for a dynamic and strategic Business Operations Lead to join our Cyber Fusion Center (CFC). This leadership role is important to managing programmes, and helping the CFC defend against
Reference
51950595-dc9c-4b9a-a6c2-4e724e0ca8b7
Expiry Date
01/01/0001
Salary
Location
Cyberjaya, Malaysia
Experience Level
Associate
Employment
Permanent
Location
Cyberjaya
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
Requirements Analysis and Design - • Attend and contribute to discussions and backlog refinement. • Translates functional requirements into technical requirements. • Contribute ideas and estimates of
Reference
ea385ecb-fa9f-4e9a-9420-dfdd19120fc9
Expiry Date
01/01/0001