Incident Response Lead
Company
IBM
Location
US Bethesda
Type
Full Time
Job Description
A career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe. You’ll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. Your ability to accelerate impact and make meaningful change for your clients is enabled by our strategic partner ecosystem and our robust technology platforms across the IBM portfolio; including Software and Red Hat.
Curiosity and a constant quest for knowledge serve as the foundation to success in IBM Consulting. In your role you’ll be encouraged to challenge the norm investigate ideas outside of your role and come up with creative solutions resulting in ground breaking impact for a wide network of clients. Our culture of evolution and empathy centers on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.
Your Role and Responsibilities
Monitor security alerts using SIEM and EDR tools to identify suspicious activity. Perform initial analysis and triage of security incidents. Escalate complex issues to Tier 2 and Tier 3 SOC Analysts. Maintain detailed incident logs and reports. Ensure compliance with Standard Operating Procedures (SOPs) for incident response. Provide real-time monitoring and initial incident response for security events.
Required Technical and Professional Expertise
- CompTIA Security+ certification.
- 1-2 years of experience in IT security or network operations.
- Familiarity with SIEM and EDR tools with a particular focus on Splunk
- Basic understanding of security concepts such as firewalls IDS/IPS malware analysis and incident response.
Preferred Technical and Professional Expertise
- Experience working in a 24×7 SOC environment.
- Familiarity with SOAR tools and automation.
- Exposure to FedRAMP compliance and NIST guidelines.
- Network+ or other relevant security certifications.
- Experience leveraging Splunk as a SIEM for a cloud-hosted environment.
Date Posted
10/06/2024
Views
0
Similar Jobs
Automation Operations Lead - IBM
Views in the last 30 days - 0
Required Technical and Professional Expertise 3 years Operations Management experience 3 years DevOps experience 3 years Leadership and Project Man...
View DetailsSAP BW Analytics Lead - IBM
Views in the last 30 days - 4
The job description is for a Package Consultant at IBM responsible for designing developing and reengineering complex application components integrati...
View DetailsSecurity Tufin 7 Security Next Generation Firewall - IBM
Views in the last 30 days - 0
The text describes a career in IBM Consulting highlighting the importance of longterm relationships collaboration and innovation It also mentions the ...
View DetailsDeputy Architect - IBM
Views in the last 30 days - 0
The job description highlights the importance of longterm relationships collaboration and innovation in IBM Consulting The role requires strong archit...
View DetailsMid Security Operations Center Analyst II - IBM
Views in the last 30 days - 0
The job posting is for a Security Operations Center Analyst II position in IBM Consulting Federal The role involves supporting a 24x7x365 operation fo...
View DetailsSolution/Cloud Architect - IBM
Views in the last 30 days - 0
The text describes a career in IBM Consulting highlighting the importance of longterm relationships collaboration and innovation It also outlines the ...
View Details