Sr Cyber Security Analyst
Company
IBM
Location
US Dallas
Type
Full Time
Job Description
Information and Data are some of the most important organizational assets in today’s businesses. As a Security Consultant you will be a key advisor for IBM’s clients analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client’s organization with the cognitive solutions that are making IBM the fastest growing enterprise security business in the world.
Your Role and Responsibilities
IBM is seeking a Mid or Senior Level Cyber Security Analyst to work on the CISO Security Operations Center team – supporting the rapid threat detection and response mission. This position requires a motivated fast learner who can work within a security operations function to identify analyze and remediate potential threats to the environment. The candidate will require security industry knowledge that evolves with current and emerging threats as well as an ongoing understanding of key business and technological processes.
About the Team:
The Security Operations Center has a global footprint within IBM and is responsible for monitoring 24×7 monitoring and incident response. As a part of this team you will be working with other likeminded security professionals in order to secure and protect IBM employees systems and environments (IBM Cloud) against emerging cybersecurity threats.
About the Role:
This role will perform security monitoring investigations and response to thwart internal and external threats to the IBM environment. Additionally you will collaborate on an ongoing basis with the Cyber Security Rapid Response Incident Response Team and other security teams to support detection triage incident analysis containment remediation and reporting of events/incidents while coordinating balancing business priorities emerging and actual threats and best practices to ensure the confidentiality integrity and availability of information assets. This role may include daytime evening or overnight and weekend shifts to meet business requirements and fufill the 24×7 mission.
Essential Duties and Responsibilities:
- Drive the global security monitoring and rapid response mission across the team.
- Detect respond mitigate and report on cyber threats/incidents that may impact the environment.
- Model effective communication and response to internal stakeholders within your investigations.
- Improve runbooks processes and response capabilities.
- Resolve problems independently and understand escalation procedures.
- Participate in security incidents and act as the technical Subject Matter Expert during significant security incidents.
- Collaborate with technical leads: Engineering Operations Service Desk Applications and BISOs on matters related to security monitoring across global footprint.
- Collaborate and serve as liaison to Managed and/or Unmanaged Security Service providers.
- Act as an internal information security consultant to the business and technology units advising on risks threats and control practices related to Rapid Response.
- Conduct training and knowledge sharing sessions within the team.
- Drive rule tuning and detection use cases across our SOC tools.
- Provide oversight and mentoring to other team members to improve team capabilities.
- Perform threat hunts that target adversary TTPs across enterprise environments.
Location: Austin or Dallas TX
Required Technical and Professional Expertise
- 2+ years of information security related experience.
- Experience with security operations security engineering risk management vulnerability management threat analysis security auditing incident response and other information security practices preferred.
- Strong knowledge of cloud computing and network protocols.
- Knowledge of industry information security standards/frameworks (NIST MITRE FEDRAMP).
- Experience working with SIEM tools and log analysis.Knowledge of EDR tools and endpoint analysis.
- Excellent written and oral communication skills with the ability to effectively communicate with information technology professionals as well as senior management and auditors.
- High level of personal integrity and the ability to professionally handle confidential investigations and exude the appropriate level of judgment.
- High degree of initiative accountability and ability to work as part of a team.
- Relevant IT security industry recognized certifications (CYSA+ Sec+ GSOC BLT2 etc).
Preferred Technical and Professional Expertise
- 4+ years of information security experience in a security operations or engineering role.
- Strong understanding of networking protocols and firewall management.
- Enterprise experience in incident response or security operations environment.
- Experience with programming or scripting languages.
- Experience tuning rules within SIEM tools like Qradar.
- Strong experience with EDR platforms such as Crowdstrike Microsoft Defender 365 Uptycs or Carbon Black conducting analysis as part of investigations.
- Experience with cloud computing platforms e.g. IBM Cloud Amazon Web Services Azure.
- Experience with host virtualization platforms e.g. VMware Hyper-V.
- Experience with application container technologies e.g. Kubernetes.
- Purple team experience conducting attacker simulation and adversary emulation.
- System administration skills for Windows and LinuWindows Linux and/or Mac forensics.
- Relevant IT security industry recognized certifications (CASP CISSP GCIH GCIA GMON OSCP etc.).
Date Posted
03/06/2024
Views
0
Similar Jobs
Managing Consultant SAP S/4HANA GRC Security - IBM
Views in the last 30 days - 0
The job posting is for a SAP Security and GRC Consultant at IBM The ideal candidate will have a strong background in implementing and managing SAP Sec...
View DetailsBrand Technical Specialist - IBM
Views in the last 30 days - 0
The text is a job description for a Brand Technical Specialist at IBM The role involves working closely with clients to develop relationships understa...
View DetailsDigital Technical Specialist - Entry Level Sales Program 2025 - IBM
Views in the last 30 days - 0
The text describes a role for a Digital Technical Specialist at IBM focusing on providing innovative solutions to clients collaborating with teams and...
View DetailsSenior Managing Consultant SAP Treasury - IBM
Views in the last 30 days - 0
The text describes a career opportunity in IBM Consultings strategic SAP solution leadership role focusing on leading technical design development and...
View DetailsComputer Operator - IBM
Views in the last 30 days - 0
The job posting is for a Data Center Specialist to join the IBM Cloud team The role involves technical problemsolving customer service and hardware in...
View DetailsSAP Production Consultant - IBM
Views in the last 30 days - 0
The job posting is for a seniorlevel SAP consultant to lead the design configuration and implementation of production planning and production executio...
View Details