обновлено 9 дней назад
Senior CERT Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior CERT Analyst (Cybersecurity): Leading global cyber incident response for intrusions, malware, and ransomware with an accent on threat detection, forensic analysis, and coordinated containment. Focus on investigating complex incidents, mentoring analysts, coordinating eradication and recovery across global teams, and making rapid risk-based decisions during critical events.
Location: Greenville, South Carolina, United States; based at headquarters. The role covers global security incidents from 10 am–7 pm EST/EDT on weekdays, with shared weekend and holiday on-call coverage and emergency availability for critical events.
Company
is a global manufacturer of tires, engineered composite materials, mobility solutions, and connected data- and AI-based services.
What you will do
- Lead business-as-usual and complex incidents involving intrusions, malware, and ransomware from detection through recovery.
- Assess incident impact, coordinate containment and remediation, and recommend risk-based countermeasures.
- Monitor emerging threats, triage alerts, determine severity, and analyze data from SIEM, EDR, IDS/IPS, firewalls, network traffic, system logs, and OSINT.
- Coordinate containment, eradication, and recovery across global teams while protecting privacy and confidentiality.
- Mentor junior analysts and provide executive-ready updates and clear incident documentation.
- Participate in shared weekend and holiday on-call coverage and emergency response for critical-severity events.
Requirements
- 5+ years of experience in incident response, CERT, SOC, CSIRT, security management, technical leadership, or forensics.
- A two-year technical degree with relevant experience or a bachelor's degree in Computer Science, Cybersecurity, Information Technology, Computer Engineering, or a related field.
- Strong knowledge of the cyber kill chain and MITRE ATT&CK for investigations and reporting.
- Hands-on experience with network forensics, malware identification and eradication, security tooling, and cyber incident decision-making.
- Solid understanding of Windows and Linux environments, networking protocols, architecture, and system or application hardening; 2–3 years of administration or DevOps experience.
- Clear written and verbal English communication, ability to work across time zones, and availability for the stated EST/EDT coverage and emergency response requirements.
Nice to have
- Experience with Splunk, Python, PowerShell, database query languages, or offensive and defensive security tools.
- Ability to learn and apply new technologies quickly.
Culture & Benefits
- Personalized development plans, mentorship, cross-functional opportunities, and advancement paths.
- Inclusive and supportive working environment with employee Connected Communities.
- Opportunities to work on sustainable materials, digital transformation, and connected solutions.
- Travel within North America and globally may be required, but is infrequent.
- Immigration sponsorship is not available for this position.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
10 дней назад
Sr. Staff Security Analyst - Incident Commander (Cybersecurity)
145 600 - 209 300$
10 дней назад
Security Analyst (Cybersecurity)
50 - 65$
9 дней назад
Manager, Security Operations (Hands On/Technical) (Cybersecurity)
108 000 - 148 000$
13 дней назад
Security Operations Analyst (Cybersecurity)
100 000 - 125 000$
10 дней назад
Associate Solution Consultant – Security Incident Handler (Cybersecurity)
13 дней назад
Security Operations Analyst (Cybersecurity)
100 000 - 125 000$