All jobs

Cybersecurity Incident Response Engineer

100% Remote Full-time Open now

About Lumen Lumen connects the world. We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly. Together, we are building a culture and company from the people up - committed to teamwork, trust and transparency. People power progress. We're looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future. The Role Cybersecurity Incident Response Team (CIRT) Engineers are expected to respond to and mitigate/remediate cybersecurity alerts from Lumen assets. CIRT Engineers research and recommend preventative measures in conjunction with managing reactive alerts. In addition, CIRT Engineers are responsible to evaluate current capabilities and predict future needs, then work with internal stakeholders, vendors, and peers to anticipate, define, and pursue these capabilities. The Main Responsibilities

  • Respond to, remediate, and document information security incidents not limited to dashboard (Advanced Threat Appliance & SIEM) alerts, tickets, emails, or phone calls.
  • Actively hunt the enterprise for insecure, suspicious, or malicious activity.
  • Review data that is processed within the SIEM to find incident evidence and suspicious events as well as out of scope events.
  • Verify and validate security notifications from both internal and external sources.
  • Identify and resolve incidents that are not defined by (or deviate from) an existing incident response guide.
  • Assist with significant incidents as needed or assigned, including outside of normal business hours.
  • Provide feedback for development and consistency of automated threat detection mechanisms.
  • Update and maintain response guides for accuracy.
  • Support Security projects to improve Cyber Defense Team or Lumen's security posture.
  • Demonstrate effective communication skills, both verbal and written What We Look For in a Candidate Minimum Qualifications:
  • Undergraduate degree in computer science, engineering, or related field, or equivalent experience.
  • Solid understanding of information security fundamentals, host and network security hardening and requirements; networking protocols; common intrusion techniques; and common risk management concepts.
  • Analytical and problem-solving skills related to networking, operating systems, and malware analysis.
  • Candidate must possess, or be willing to pursue, applicable professional/technical certifications, such as Security , C|EH, OSCP,
  • GCIH, CISSP, GPEN, GWAPT, GISEC, CISM or CISA.
  • Candidate must be US based and able to obtain government suitability.
  • Strong oral and written communication skills and comfort with presenting technical issues to all levels of management, as well as non-technical staff.
  • Experience with cloud security and cloud service providers (e.g., AWS, Azure, Google Cloud Platform).
  • Broad technical knowledge of current and emerging technologies. Preferred Qualifications:
  • 4 years of experience in incident response, computer forensics security, risk assessments, application security or network security.
  • Experience in network and/or firewall engineering, administration, design and implementation including experience in applying methodologies and principles for all levels of security.
  • Understanding of the following tools: SIEM, IDS / IPS, host based anti-virus, or similar products.
  • Experience in network monitoring tools to monitor attacks/threats and doing the initial triage of findings.
  • Microsoft or UNIX (including Linux or other UNIX derivatives) operating system administration/support experience.
  • Experience with technologies, tools, and process controls to minimize risk and data exposure.
  • Development experience in scripting languages such as Python or Perl.
  • Experience in large enterprise or carrier data centers and/or networks.

Compensation

This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors. Location Based Pay Ranges: $82,969 - $110,625 in these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS, KY, LA, ME, MO, MS, MT, ND, NE, NM, OH, OK, PA, SC, SD, TN, UT, VT, WI, WV, and WY. $87,117 - $116,156 in these states: CO, HI, MI, MN, NC, NH, NV, OR, and RI. $91,266 - $121,688 in these states: AK, CA, CT, DC, DE, IL, MA, MD, NJ, NY, TX, VA, and WA. Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process. Learn more about Lumen's:

  • Benefits
  • Bonus Structure #LI-Remote Requisition #: 341344 Background Screening If

Apply tot his job Apply To this Job

You might also like

Regional Director - Cybersecurity job at Optiv in Philadelphia, PA, King of Prussia, PA

100% Remote Full-time

Experienced Full-Time 100% Remote Level 3 SOC Analyst – Cyber Security Operations & Incident Response for 3rd Shift (8 PM - 6 AM) in Arizona

100% Remote Full-time

Cybersecurity Operations Center Analyst L1 (Multiple Offices - Hybrid)

100% Remote Full-time

Senior Cybersecurity Analyst; SOC US Region; Remote​/Hybrid Cyber security Washington DC , N

100% Remote Full-time

Early Career Cybersecurity Researcher- Cyber Threat Center (5600) , Onsite

100% Remote Full-time

Cyber Security Operations Center (CSOC) Analyst – Tier 3

100% Remote Full-time

Cyber Security Red Team Researcher

100% Remote Full-time

[Entry Level/Remote] Aetna Careers At Home Data...

100% Remote Full-time

[Remote] Senior Cyber Threat Analyst III (No C2C, must be US Citizen)

100% Remote Full-time

Data Analyst II | Pinterest Job Advertisements | Remote (United States)

100% Remote Full-time

LCD Technical Training Consultant: Internal Only – Olympia/Telework

100% Remote Full-time

National Director of Sales

100% Remote Full-time

Weiterbildung zum Data Scientist (m/w/d) (100% förderbar)

100% Remote Full-time

Experienced Data Entry Clerk – Entry Level/No Experience – Part Time (Remote) Opportunity at arenaflex

100% Remote Full-time

Account Executive, Banking

100% Remote Full-time

Experienced Full Stack Software Engineer – Distributed Systems Development for arenaflex's Data Platform

100% Remote Full-time

Wealth Management Client Associate

100% Remote Full-time

Urgently Hiring: Direct Support Professional- Remote Support

100% Remote Full-time

Senior Product Manager

100% Remote Full-time

Remote Data Entry Specialist – Entry-Level Opportunity with Global E-Commerce Leader

100% Remote Full-time