What you’ll be doing...

Are you ready to upgrade your career in security?

At Verizon we believe technology should help you achieve more. And we help businesses do exactly that almost daily —co-creating innovative connected products, rapidly and securely deploying apps in the cloud, managing employee-owned devices on a global scale, and deflecting sophisticated hacker attacks.

In support of our world leading position in Cyber Security, we have recently launched a new service, the Computer Emergency Response Team (CSIRT).

Our newly offered service will constitute of a designated CSIRT Consultant full time or as a shared resource, who will work as a contact and communications point between our security services team and customer’s security and IT staff as well as users and other important stakeholders. You will also be responsible for operating the incident management process in accordance with the procedures designed in cooperation with the customer.

On a day to day basis you will assist with identifying and responding to incidents as well as proactively proposing improvements for how to reduce risk and potential future incidents.

  • Receiving and monitoring incident information from our managed security services and other sources.
  • Reviewing the collected incident data and confirming or rejecting incidents based on the analysis.
  • Classifying and prioritizing incidents based on established criteria.
  • Facilitating communication between stakeholders of the status of the incident.
  • Coordinating the containment effort based on the available information and established processes.
  • Performing vulnerability management using Qualys tool.
  • Making containment decisions and facilitating decision making by other parties using established escalation process.
  • Communicating with the affected users and stakeholders to organize the containment effort.
  • Verifying the effectiveness of containment actions taken.
  • Identifying the attack vector of used by incident and confirming take actions to confirm that similar incidents are prevented in the future.
  • Validating the effectiveness of the eradication actions.
  • Coordinating forensics and law enforcement activities with officials if necessary.
  • Coordinating the recovery actions.
  • Confirming that the recovery effort was successful.
  • Confirming that all temporary containment efforts have been removed.
  • Updating stakeholders on the status of the recovery effort and conducting a root cause analysis for the incident.
  • Communicating the results of the root cause analysis to customer and stakeholders to prevent similar incidents in the future.
  • Analyzing the incident response effort, with feedback from customer and third parties.
  • Identifying and analyzing any mistakes as well as good decisions done during response process.
  • Using the results of the analysis as an input for improvements, such as incident response.
  • Conducting proactive management of Monitoring and Analytics solution.
  • Helping develop operational metrics to illustrate risk reduction over time.
  • Being a SPOC in case of technical escalations.

What we’re looking for...

Qualifications:

You'll need to have:

  • Bachelor's degree or four or more years of work experience in Security incident detection or Security incident management
  • Demonstrated strong communication skills and the capability to engage with customers at both technical and executive levels.
  • Knowledge of Network and Web Application vulnerability assessments.
  • Strong problem-solving and security analytics skills and the ability to identify gaps in processes and recommend improvements for mitigation.

Even better if you have:

  • Four or more years of experience in security operations, risk management, operational management, and/or consultant management.
  • CSIRT Team experience.
  • Experience of how to structure and operate an efficient Incident Response process.
  • Knowledge of common types of malware, their infection vectors, how identify them using network and host based tools, how to eradicate them and verify the success of eradication efforts.
  • Knowledge of current security threats and vulnerabilities, how to detect and mitigate them, ability to understand their possible consequences on the customer’s environment.
  • Understanding of modern technologies used to detect malware and vulnerabilities and protect assets.
  • SIEM (SPLUNK) and log analytics skills is desirable
  • SANS or other Security certifications, such as GCIA, GCIH, GREM, GPEN, CEH.
  • CISSP Certification and / or CISM Certification.
  • ITIL Foundations training / certification.
  • Knowledge of ISO 27001 requirements.

When you join Verizon...

You’ll be doing work that matters alongside other talented people, transforming the way people, businesses and things connect with each other. Beyond powering America’s fastest and most reliable network, we’re leading the way in broadband, cloud and security solutions, Internet of Things and innovating in areas such as, video entertainment. Of course, we will offer you great pay and benefits, but we’re about more than that. Verizon is a place where you can craft your own path to greatness. Whether you think in code, words, pictures or numbers, find your future at Verizon.