|
Lead Engineer, Information Security (DFIR) - Remote - Cumming Georgia
Company: GXO Logistics Location: Cumming, Georgia
Posted On: 11/14/2024
Logistics at full potential. At GXO, we're constantly looking for talented individuals at all levels who can deliver the caliber of service our company requires. You know that a positive work environment creates happy employees, which boosts productivity and dedication. On our team, you'll have the support to excel at work and the resources to build a career you can be proud of. As the Lead Engineer, Information Security (DFIR), you will be responsible for performing, facilitating and documenting the complex analysis, development and testing of security methodologies and technologies. You'll utilize your knowledge and experience with incident response, threat analysis, governance, risk management and compliance to help keep our operations running smoothly. Become a part of our rapidly growing global team and we'll help you develop your career to a level that will exceed your expectations. Pay, benefits and more:We are eager to attract the best, so we offer competitive compensation and a generous benefits package, including full health insurance (medical, dental and vision), 401(k), life insurance, disability and more What you'll do on a typical day: Serve as part of the CIRT (Cyber Incident Response Team) as an Incident Commander, working with other members of the core incident response team and stakeholders throughout the incident response lifecycle.Investigate network intrusions and other cybersecurity incidents to determine the cause and extent of the breach. Includes ability to perform host-based and network-based analysis across all major operating systems and network device platforms.Form and articulate expert opinions based on analysis.Investigate instances of malicious code and documents to determine attack vectors and payloads.Gather and utilize threat intelligence to lead relevant hunt missions across the enterprise, working directly with the Cybersecurity Operations Center (CSOC). Develop and produce reports on breaking cyberthreat news and disseminate to appropriate teams to maintain appropriate levels of situational awareness.Analyze threat actor profiles and track threat groups and their associated indicators of compromise and tactics, techniques, and procedures to drive hunting, detection, and prevention efforts.Support other DFIR Engineers in triage and response to security alerts and perform root cause analysis. What you need to succeed at GXO:At a minimum, you'll need: |
|