drjobs Senior Incident Response Advisor, Night Shift

Senior Incident Response Advisor, Night Shift

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Richmond - USA

Yearly Salary drjobs

$ 126000 - 174000

Vacancy

1 Vacancy

Job Description

Company

Federal Reserve Bank of Richmond

When you join the Federal Reservethe nations central bankyoull play a key role collaborating with leading tech professionals to strengthen and protect our economic financial and payments systems. We invest in contemporary and emerging technology each year to support the Federal Reserve and our economy and were building a dynamic team for our future.

Bring your passion and expertise and well provide the opportunities that will challenge you and propel your growthalong with a wide range of benefits and perks that support your health wealth and addition to competitive compensation we offer a comprehensive benefits package that includes tuition assistance generous paid time off top-notch health care benefits child and family care leave professional development opportunities a 401(k) match pension and more. All brought together in a work environment where you can truly find balance.

About the Opportunity

The Federal Reserve System (FRS) National Incident Response Team (NIRT) has an immediate opening for an Incident Response Advisor Senior position reporting to a Senior Manager Information Security. The NIRT a national service provider for the FRS delivers effective intrusion detection incident response forensics security intelligence threat assessment and penetration testing services.

The role is for an experienced incident response professional. You will be expected to be able to investigate and respond to security events within the FRS with minimal oversight. Additionally as you gain experience you will be expected to lead larger and more impactful incidents. The ideal candidate will have some more specialized skills such as Security Operations Center (SOC) support disk and/or memory forensics phone forensics malware analysis and/or threat hunting skills. This position will also serve as the Night Shift lead and will be responsible for technical training for junior tenured staff shift scheduling and other lead duties.

Hours: The core hours are evening/night shift and are to be confirmed during onboarding. You may also be required to work overnights weekends or holidays scheduling flexibility is required. Due to the nature of this work and 2nd shift schedule for this role this position will have the ability to work remotely within a commutable distance to a Federal Reserve Bank location.

What You Will Do:

  • Perform security event triage and analysis with knowledge in current security threats and techniques.

  • Manage and lead security incidents and conduct incident analysis containment protection mitigation and recovery activities across the FRS.

  • Perform and lead incident response workflow processes.

  • Analyze all relevant data sources for attack indicators and potential network and host compromises.

  • Respond to different attack vectors such as data exfiltration DDoS malware insider risk and phishing.

  • Develop scripts and tools to improve the efficiency of incident detection and response processes.

  • Lead investigations.

  • Identify gaps/opportunities for enhancements to workflows and processes for enhancing the incident response lifecycle.

  • Support cross-team projects to help implement cybersecurity improvements.

  • Provide subject matter expertise to partners on an as-needed basis.

  • Interface with NIRT customers and stakeholders.

Qualifications:

  • Bachelors Degree or equivalent experience with 6 to 9 years of relevant work experience.

  • You should have in-depth understanding of a variety of information technologies and information security topics. Specifically this should include the following:

  • Advanced SIEM/SOAR utilization skills to analyze security events from multiple monitoring and logging sources to identify investigate and confirm suspicious activity.

  • Advanced knowledge of incident response and handling methodologies.

  • Advanced knowledge of common adversary tactics techniques and procedures (TTPs).

  • Advanced knowledge of cyber threats and vulnerabilities.

  • Advanced knowledge of cyber-attack stages (e.g. reconnaissance scanning enumeration gaining access escalation of privileges maintaining access network exploitation covering tracks).

  • Advanced knowledge of which system files (e.g. log files registry files configuration files) contain relevant information and where to find those system files).

  • Advanced ability to analyze all relevant data sources for attack indicators and potential network and host compromises.

  • Advanced knowledge of current security threats techniques and landscape and a dedicated approach to research current information security landscape.

  • Advanced understanding of IT Infrastructure designs technologies products and services. This should include knowledge of networking protocols firewall functionality host and network intrusion detection systems operating systems databases encryption load balancing and other technologies.

  • You will hold one or more relevant security certifications/degrees and/or commensurate experience.

  • Ability to communicate complex information concepts or ideas in a confident and well-organized manner through verbal written and/or visual means evaluate information for reliability validity and relevance and function effectively in a dynamic fast-paced environment.

  • In addition youll function in a collaborative environment seeking continuous consultation with other analysts and expertsboth internal and external to the organizationto leverage analytical and technical expertise think critically and think like threat actors.

  • Ability to develop productive working relationships with a broad range of business and operational area professionals.

Discover the Reason Why So Many People Love It Here!

When you join the Richmond Fed not only will you find a challenging and purposeful career but youll also have access to a wide range of benefits and perks that support your health and wealth including:

  • Great medical benefits

  • Pension and 401(k) with employer match

  • Paid time off

  • Tuition reimbursement

  • Paid volunteer leave

  • Onsite amenities that make working here fun!

Other Requirements and Considerations:

Full Time / Part Time

Full time

Regular / Temporary

Regular

Job Exempt (Yes / No)

Yes

Job Category

Information Technology Family Group

Work Shift

Second (United States of America)

The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.

Always verify and apply to jobs on Federal Reserve System Careers ( or through verified Federal Reserve Bank social media channels.

Privacy Notice


Required Experience:

Senior IC

Employment Type

Full-Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.