This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Senior Cybersecurity Incident Response Analyst. This role has been designed as ‘Hybrid’ with an expectation that you will work on average 2 days per week from an HPE office. You will work as a Senior Cybersecurity Incident Response Analyst as part of our Cyber Defense Center team helping to identify, analyze, and respond to security threats. This is a highly technical role that requires a strong understanding of cyber security principles and a passion for protecting our users' data.
Job Responsibility:
Lead and coordinate responses to the most complex cybersecurity incidents, guiding cross-functional teams through containment, eradication, and recovery
Combines deep industry expertise with a thorough understanding of information and security technology to effectively analyze associated logs and respond to high severity incidents
Contributes to the company's security response methods, suggesting automation opportunities which can enhance IR
Mentor and provide technical guidance to less experienced cybersecurity professionals
Stay at the forefront of cybersecurity trends, threats, and technologies, driving innovation within the organization's threat detection and response capabilities
Foster a culture of continuous improvement and innovation, encouraging the adoption of new technologies and methodologies within the team
Providing insight and guidance through after action reviews working with stakeholders
Requirements:
Bachelors degree (or equivalent work experience) required, preferably in computer science, engineering or related area of study
Typically 4+ years of relevant experience
SOC team/Incident response analyst experience is required
Proven track record of leading complex cybersecurity initiatives and managing ambiguous incidents
Advanced understanding of adversary tactics, techniques, and procedures (TTPs)
Advanced Cyber and IT security knowledge
Advanced understanding of Cyber and IT security risks, best practices, threats and prevention measures as well as containment and remediation actions
Advanced understanding of SQL and relevant scripting languages
Advanced data security system analysis skills
Advanced risk assessment and management skills
Advanced understanding of networking and network security
Advanced data understanding of network monitoring and protocols
Advanced knowledge of relevant .Net development, programming and scripting languages
Be a dependable team player with strong business insight, enthusiasm, and a positive attitude
Be an excellent communicator, whether writing, speaking, or presenting
Ability to make rapid informed decisions, while working in an agile environment
Demonstrated understanding of large enterprise computing environments, applications, and TCP/IP networks and protocols
Advanced knowledge of operating systems including Windows, Linux and macOS as well as cloud environments (AWS, Azure, GCP)
Demonstrates proficiency in performing log analysis across common environments (Windows, Linux, AWS, Azure, GCP)
In-depth knowledge of common security threats, vulnerabilities, and attack methodologies
Extensive experience with performing in-depth incident investigation, documenting findings, and developing actionable remediation plans