Incident Response & Prevention Manager

Details of the offer

**Responsibilities**:

- Report to Senior Manager to facilitate all phases in the incident response lifecycle
- Involve in various incident prevention projects to improve Security posture

Preparation
- Understand different regulatory and compliance requirements like critical time to report, escalation flows, etc.
- Take part in self-assessment exercises like Tabletop Exercises, Attack Simulations, Red/Purple Team exercises to make sure the incident response process is working smoothly
- Develop incident response runbooks, playbooks and SOPs with reference to different regulatory requirements
- Evaluate the incident response readiness of different layers - people, process, technology

Detection & Analysis
- Respond to the cyber security incidents escalated from various channels including the 24/7 SOC team.
- Respond to cyber security incidents in compliance with the local authority / regulatory requirements.
- Assess the risk, impact and scope of the identified security threats
- Perform deep-dive incident analysis of various data sources by analysing and investigating security related logs against medium-term threats and IOCs

Containment, Eradication and Recovery
- Communicate with the stakeholders and provide guidance, recommendations to contain and eradicate the security incident
- Participate in root cause analysis using forensic and other custom tools to identify any sources of compromise and/or malicious activities taking place.
- Document and present investigative findings for high profile events and other incidents of interest.

Post incident activities
- Provide lessons learnt meeting to the stakeholders
- Lead and keep track on the follow-up activities
- Document the incident in the case management system and provide incident reports
- Always ready to jump in, in the event of security incidents.

**Requirements**:

- 5+ years experience in the Cyber Security industry
- Strong technical and analytical skills
- Familiar with the cyber security incident response process
- Hands-on experience on performing incident response activities
- Have scripting experience like Bash, PowerShell, Python, Go, etc, and the ability to use these skills to aid in responding to incidents involving Windows, Linux, macOS, as well as cloud environment
- Have knowledge of cybersecurity tools and software like NGFW, EDR, IDS/IPS, EDR, DLP, SIEM, other log management platforms, etc.
- Be familiar with the MITRE ATT&CK Framework and/or Cyber Kill Chain
- Be passionate on exploring new technologies and having creative initiative to boost the team capabilities
- Holders of security related certifications is a plus (e.g.Azure, AWS, CISSP, GCIH, GCIA, GCFA, GNFA, GREM, or other equivalent)
- Knowledge of regulatory and compliance requirements like GDPR, MAS, PSD2 etc is a plus.
- Fast learner with can do attitude and ready to get the hands dirty
- A strong team player who can collaborate with compassion

LI-MK1

Hybrid


Nominal Salary: To be agreed

Source: Whatjobs_Ppc

Requirements

Presales Software

Occupations Presales Software: Job Description Presales Software: Job information Presales Software from the Company PT Nusantara Compnet Integrator , this l...


Pt Nusantara Compnet Integrator - Jakarta

Published a month ago

Project Manajer Contractor Architect Interior Design

Occupations Project Manajer Contractor Architect Interior Design: Job Description Project Manajer Contractor Architect Interior Design: Job information Proje...


Pt Meka Eduversity Komunikasi - Jakarta

Published a month ago

Azure Cloud Architect Consultant (Senior Manager)

About EY: EY, a global leader operating in more than 150 countries delivers unparalleled service in Consulting and assists clients to transform and upskill t...


Ernst & Young - Jakarta

Published a month ago

Data Engineer (Technology Consultant)

About EY: EY, a global leader operating in more than 150 countries delivers unparalleled service in Consulting and assists clients to transform and upskill t...


Ernst & Young - Jakarta

Published a month ago

Built at: 2024-12-26T03:56:20.128Z