Job Profile Name: Senior Incident Response Analyst
To provide security monitoring and support to Client's technology platforms, network, applications, crew, and environments in response to incidents of varying severity and perform other security monitoring/incident response functions as needed.
Duties and Responsibilities:
- Operate as second level support to a 24x7 managed security operations centre.
- Alert clients regarding intrusions and potential intrusions that may compromise their network infrastructure.
- Maintain an inventory of the procedures used by the SOC and regularly evaluate the SOC procedures and add, remove, and update the procedures as appropriate
- Takes a proactive role in the resolution of incidents, even after they are escalated
- Work on assigned ticket queue
- Understanding and exceeding expectations on all tasked SLA commitments
- Track and report on closure of tickets as per SLAs
- Escalating issues to Level 2 or Level 3 and management when necessary
- Providing daily and weekly reports on security and vulnerability incidents
- Working in shift teams
- Adheres to Client Information Security policies and departmental procedures, along with following industry best practices.
- Works with other departments (within and outside of Information Security) to communicate appropriate and consistent security requirements.
- Should independently manage the assigned project/engagement with minimal oversight/guidance from the manager.
Qualifications:
- Undergraduate degree in information/cyber security, an information technology-related field or equivalent combination of training, certifications, and experience.
- 3-6 years related experience.
- CompTIA Security+, ISC2 CISSP, SANS, or other similar certifications are a plus but not required.
- Knowledge of security concepts, theories, and best practices.
- Ability to analyze and demonstrate problem resolution skills.
- Demonstrated ability to work collaboratively as well as independently, with attention to detail.
- Demonstrated ability to be flexible and exercise good judgment.
- Demonstrated strong organization and time management skills.
- Strong verbal, written and interpersonal communication skills.
- Ability to deal effectively with various levels of business unit crew and management.
- Experience on SIEM, SOAR and EDR/XDR is must.
Special Factors:
- Weekend availability/flexibility to work weekends is a MUST.
- Willing to support US shift (Night shift)
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.