14 days old

Sr. Incident Commander, Talos Incident Response

Cisco Systems Inc.
Tours, Centre-Val de Loire 37000
Apply Now
Apply on the Company Site

What Youll Do

Working within established methodologies to perform a variety of Incident Response related activities for Cisco customers this will include emergency response to cyber incidents.

It will from time to time also include proactively hunting for adversaries in customer networks, crafting and performing Table-Top Exercises, and performing IR Readiness Assessments. The Incident Commander will also be responsible for leading and working on projects that will support tactical and strategic business objectives. Demonstration of leadership abilities, clear and concise communication with a variety of partners, ability to lead during a crisis, personal agility to adapt to changing environments, and a strong comprehension of malware, emerging threats and calculating risk will be critical to success.

Who Youll Work With

When you work with us, youll be part of a distributed team of highly empowered Incident Response and Cyber Threat Intelligence professionals who work as a collaborative team passionate about helping our clients be both better prepared to defend against adversaries on their network, as well as responding to active incidents within their network.

Who You Are

Both your clients and your colleagues consider you a charismatic, articulate individual, and a born diplomat. You check your ego at the door and learn from others constantly, while also helping to educate those who arent as proficient as you are in technical or procedural topics. As a result, you have a track record of working diligently to help your clients and teammates and have even come up with some novel techniques in your time.

Required Skills:

Respond to cyber incidents caused by internal and external threats to our customers, that may involve nontraditional working hours

Must be willing to routinely travel with less than 24-hour notice, up to 35% of the time

Can clearly communicate the Incident Response Lifecycle and the Kill Chain (Attack) Life Cycle.

Demonstrate capability to map technical findings to business impacts and communicate those in a manner which is understandable by a non-technical audience.

Be able to scope an incident, gain consensus on objectives with customers, and lead a team of incident response consultants during an emergency engagement

  • Specialize in host centric analysis utilizing a variety of tools (e.g. F-Response, X-Ways, Volatility, Cisco AMP, etc)
  • Design, lead and participate in Table-Top Exercises with customers
  • Proactively seek for adversaries on customer networks usinga variety techniques
  • Lead and perform Incident Response Readiness Assessments for customers
  • Draft communications, assessments, and reports that may be both internal and customer facing, to include leadership and executive management
  • Understanding of different attacks and how best to design custom detection, containment, and remediation plans for customers
  • Serve as a liaison to different businesses and communicate with fellow team members and colleagues on other security teams. As-needed, manage relationships with business partners, management, vendors, and external parties
  • Develop and document processes to ensure consistent and scalable response operations
  • Demonstrate industry leadership through blog posts and public speaking at conferences and events
  • Bachelors' Degree in Computer Science or a related technical degree; or, equivalent industry experience.
  • Experience in information security and handling incidents
  • Willing to be on-call and work off-shift hours, to include nights, weekends, and holidays

Desired Characteristics:

  • Detailed understanding of current cyber security threats, attacks, and countermeasures. Such as Advanced Persistent Threat (APT), Cyber Crime, Hacktivism and associated tactics
  • Strong track record of understanding and interest in recognized IT Security-related standards and technologies, demonstrated through training, job experience and/or industry activities.

IT Security Certifications

Industry certifications such as the CISSP, CISM, CISA, GCIH, CFCE, GFCA, and/or GCFE

Why Cisco Talos IR

We always strive to do the right thing, for our team, for our customers, and for the world!

Why Cisco?!

We connect everything: people, processes, data, and things. We innovate everywhere, taking bold risks to shape the technologies that give us smart cities, connected cars, and handheld hospitals. And we do it in style with unique personalities who arent afraid to change the way the world works, lives, plays and learns. We celebrate the creativity and diversity that fuels our innovation. We are dreamers and we are doers.

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Posted: 2021-06-02 Expires: 2021-07-03
Sponsored by:
ADP Logo

Before you go...

Our free job seeker tools include alerts for new jobs, saving your favorites, optimized job matching, and more! Just enter your email below.

Share this job:

Sr. Incident Commander, Talos Incident Response

Cisco Systems Inc.
Tours, Centre-Val de Loire 37000
Facebook Share
Copy Job URL

Join us to start saving your Favorite Jobs!

Sign In Create Account
Powered ByCareerCast