Incident Response Lead

2 weeks ago


City Of London, United Kingdom Live Nation Full time

Job Summary :The Incident Response Lead is responsible for driving the containment and eradication of threats during cyber security events and following through with supporting remediation efforts post events within a fast-paced and dynamic environment in effort to restore normal secure service delivery. This individual will act as a liaison between technical teams and leadership ensuring effective communication and alignment on cybersecurity priorities. This role will require attention to detail ability to organize and document information and in-depth knowledge of cyber security processes to support the global organization through complex and high-pressure incidents.This role is ideal for an experienced cybersecurity professional with a passion for leading technical projects fostering team alignment and delivering results in a dynamic and complex enterprise environment.WHAT THIS ROLE WILL DOCapture detailed notes and deliver precise accurate reports to stakeholders during high-pressure scenarios ensuring all action items are effectively communicated and delegated to the Cyber Defense team or partners for execution; throughout the lifecycle of an incident.Collect evidence from cyber events and utilize data to build a complete chain of eventsfrom initial access through eradication and recovery phasesAdvise and coordinate with Incident Commander by providing trusted expert advice tosupport the successful conclusion of a cyber incidentReceive and analyze signals from numerous sources to determine possible causes of alertsConduct document and report postmortem lessons learned that contribute to the improvement of the team and the organizations cyber program.Develop and communicate reports on Cyber Defense TTPs guidance and incident findings to various stakeholdersAdvise and collect forensically sound artifacts for inspection to support cyber incidentsEngage with both technical and non-technical stakeholders in a professional manner both internally and externally to the business on sensitive cybersecurity issues.Develop training and exercises to promote both team and organizational development to improve delivery during incidents through the creation and conduction of tabletops and workshops.Work as part of a global teamBe the Incident Response SMEWHAT THIS PERSON WILL BRINGBachelors degree in Computer Science Information Security or a related field5 years of experience in Cyber Security Operations type role3 years of experience specifically in Incident Response type roles that performed event investigationsExcellent communication skills with experience delivering executive-level briefings and reports.Solid understanding of cybersecurity principles including incident response policy governance and compliance requirements.Experience with security tools such as SIEMs IDS / IPS DLP and vulnerability management platforms.Strong organizational time-management and leadership skills.Experience in the application of available tooling to defend against cyber threats andhardened existing systems against further attacksExperience in response to at least one public cloud vendor (e.g. : AWS. GCP Azure etc)Experience in response to a variety of system types and applicationsMust be willing to work an on-call rotationExcellent analytical and problem-resolution skills to collect / preserve evidencefor documentation and reportingCertifications : CISSP GCIH GCFA CySAExperience working in large global enterprises with complex technical infrastructuresKnowledge of audit frameworks and regulatory compliance requirements (e.g. SOX GDPR PCI DSS)Familiarity with cloud security architectures and tools (e.g. AWS Azure GCP)Exceptional ability to remain calm and focused during high-stress situations.Strong problem-solving and conflict management skillsA collaborative team player who thrives in a global cross-functional environment.Equal OpportunitiesWe are passionate and committed to our people and go beyond the rhetoric of diversity and inclusion. You will be working in an inclusive environment and be encouraged to bring your whole self to work. We will do all that we can to help you successfully balance your work and homelife. As a growing business we will encourage you to develop your professional and personal aspirations enjoy new experiences and learn from the talented people you will be working with. Its talent that matters to us and we encourage applications from people irrespective of their gender race sexual orientation religion age disability status or caring responsibilities.Employment Type : Full-TimeVacancy : 1 #J-18808-Ljbffr



  • City Of London, United Kingdom Livenation Full time

    The Incident Response Lead is responsible for driving the containment and eradication of threats during cyber security events and following through with supporting remediation efforts post events within a fast-paced and dynamic environment in effort to restore normal secure service delivery. This individual will act as a liaison between technical teams and...

  • Global Threat

    2 weeks ago


    City Of London, United Kingdom Pinkerton Full time

    A global security services company based in London seeks a Threat and Incident Response Manager to oversee incident management and lead a diverse team. The ideal candidate will have substantial experience in crisis response and incident management in property/infrastructure contexts. This role focuses on ensuring seamless incident management through...


  • london (city of london), United Kingdom Iceberg Full time

    We are representing a consultancy that are a leader in the Cyber Security and Incident response space. If you have experience leading the legal aspects of Data Breach case this could be the role for you. This role is open to any of the multiple offices my client has across the UK. The client is looking for a Principal Associate to support and shape the...


  • City Of London, United Kingdom CFC Full time

    Incident Response ConsultantDepartment: Incident ResponseEmployment Type: Permanent - Full TimeLocation: UK - LondonReporting To: Connor RowdenAt CFC Response you will be part of a unique collaborative team of incident responders, business resumption engineers, and cybersecurity specialists whose sole responsibility it is to protect, recover, and mature the...


  • City Of London, United Kingdom The Security Event Full time

    Location(s): UK, Europe & Africa : UK : Frimley || UK, Europe & Africa : UK : London || UK, Europe & Africa : UK : Manchester BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces...


  • City Of London, United Kingdom BAE Systems (New) Full time

    Location(s): UK, Europe & Africa: UK: Frimley || UK: London || UK: Manchester BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital...


  • City Of London, United Kingdom Cyber Security training courses Full time

    Location(s): UK, Europe & Africa : UK : Frimley || UK, Europe & Africa : UK : London || UK, Europe & Africa : UK : Manchester BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces...


  • London, United Kingdom Live Nation Full time

    Job Summary:The Incident Response Lead is responsible for driving the containment and eradication of threats during cyber security events and following through with supporting remediation efforts post events within a fast-paced and dynamic environment in effort to restore normal secure service delivery. This individual will act as a liaison between technical...


  • City Of London, United Kingdom Deloitte Full time

    Role: Technical Incident Responder (Cyber incident Response)Location: UK remoteStart: ASAPDuration: 6 months (inside IR35) Overall purpose the roleOur CIR specialists are called to answer client needs regarding proactive incident response advisory services, reactive incident response, post-breach assessments, managed threat hunting as well as implementing...


  • City Of London, United Kingdom Deloitte Full time

    Role: Technical Incident Responder (Cyber incident Response)Location: UK remoteStart: ASAPDuration: 6 months (inside IR35) Overall purpose the roleOur CIR specialists are called to answer client needs regarding proactive incident response advisory services, reactive incident response, post-breach assessments, managed threat hunting as well as implementing...