SOC - Cyber Security - Manager @ FICO
FICO (NYSE: FICO) is a leading global analytics software company, helping businesses in 100+ countries make better decisions. Join our world-class team today and fulfill your career potential!The Opportunity “This is a leadership role for our 24x7 Security Operations Center (SOC) team within our Cyber Security Center (CSC) organization. It is a key role that is a subject matter expect in running a SOC. It is an opportunity to take on an already mature SOC team and make it a NextGen SOC with timely and efficient threat detection and response at a global level." – Director, Cyber Security. What You’ll Contribute Define SOC alert handling standards and procedures.Define and improve SOC architecture, workflow and responsibilities.Supports security incident response processes.Lead and initiate efforts in reducing alert response time.Lead and oversee a 24/7 operations team ensuring coverage is available.Act as mentor for junior team members.Present related metrics to security leadership and take initiatives to improve.Investigate and respond to intrusion events/incidents using SIEM, XSOAR, file analysis, endpoint logs etc.Supports security incident response including but not limited to tracking, discovery, and mitigation of incident response workflows.Test and evaluate use-cases and work on finetuning them.Identify log sources needed for collection for both Security and Compliance for the SIEM.Generate appropriate alerting within SIEM to leverage in automation activities.Write automation in the SOAR to accelerate IR activities (Java, Python, Bash).Participate in Incident Response activities.Workflow creation and analysis.Prioritize and escalate any issues that could put business objectives, results, or processes at risk.What We’re Seeking Bachelor’s degree in computer science or related field. Proven track record of leading a SOC team and improving its operations.Understanding of incident response processes and procedures. Understanding of SOC workflow and responsibilities.Understanding of malware reverse engineering and forensics.Experience with cloud environments such as AWS, GCP.Strong understanding of root cause analysis of alerts/incidents.Preferably obtained a…
Apply To This Job