Finding the best job has never been easier
Share
Job Description:
The role of the Senior Incident Management Specialist is to coordinate the response and recovery activities from information security incidents. This includes collaboration with appropriate response, assist with determining the root cause of incidents and work with stakeholders and responsible parties to remediate any identified control gaps or failures; Escalate issues to management in a timely manner with appropriate information regarding severity, exposure, and action items; this role requires critical thinking and investigative mindset coupled effective written, and verbal communication skills.
This is a senior role with high visibility at the global level including interacting with and providing direct updates to executives and senior leadership stakeholders. A Senior Incident Manager provides their knowledge and expertise in incident response to lead, mentor, and challenge associates on the team. The team conducts 24/7 follow-the-sun (FTS) operations which you will work closely with AMRS and EMEA regions.
What you will do
• Establish oversight of information security events and cyber incidents and communicate analysis, containment and remediation efforts to all business partners.
• Lead more junior incident managers to evaluate, communicate, and contain cyber security incidents while collaborating with other security teams, technology organizations, and line of business partners.
• Cyber incident response and recovery plans will be available to use and should be maintained by the team. Any issues that require management escalation will be expected to be completed in a timely manner including all appropriate information in relation to risk and action times.
• The Cyber Incident Manager will provide status updates and post-incident findings for executives and stakeholders in non-technical terms encompassing risk, impact, likelihood, containment and remediation activities and threat actors.
• Risk management including briefing and recommending actions to executive leadership within Global Information Security and other business partners on events and incidents
• The incident manager is part of a global 24/7/365 follow-the-sun rotation and there is a requirement to work 3-5 weekends per year in an on-call basis as a primary contact. There will also be a requirement to cover holidays for APAC and EMEA regions.
Required Skills
· Proven experience handling Information Security related events and incidents
· Experience in an operations focused role with an emphasis on cyber incident response
· Demonstrable experience in the coordination of containment activities related to cyber security incidents
· Familiarity with security vulnerabilities exploits and APT tools, techniques, and procedures
· Familiarity with network security vulnerabilities, exploits, malware, and digital forensics desirable
· An excellent verbal and written communicator who can adapt to their audience
· Decisive and can make difficult decisions in what can be a high-pressure environment
· Exercise independent judgment in methods, techniques, and evaluation criteria for obtaining results
· Able to handle multiple competing priorities in a fast-paced environment and act without causing an undue delay
· Supportive and can work well as part of a team as well as independently
· Ability to remain calm under pressure
· Ability to work in a strong team-orientated environment with a sense of urgency and resilience
· Must be able to think outside the box and develop solutions to accomplish seemingly impossible tasks whilst remaining risk and objective focused, with an investigative mindset
· Ability to quickly understand and navigate a large organization
· Security+ or equivalent certification
· GCIH or equivalent certification required within six months of employment.
These jobs might be a good fit