empty

Lead Incident Response Analyst

Zayo Group

Job Description

Posted on: 
September 17, 2024

Summary and company overview

Company Description

Zayo provides mission-critical bandwidth to the world’s most impactful companies, fueling the innovations that are transforming our society. Zayo’s 141,000-mile network in North America and Europe includes extensive metro connectivity to thousands of buildings and data centers. Zayo’s communications infrastructure solutions include dark fiber, private data networks, wavelengths, Ethernet, and dedicated Internet access. Zayo serves wireless and wireline carriers, media, tech, content, finance, healthcare and other large enterprises.

Zayo is seeking a Lead Incident Response Analyst to protect Zayo computer networks from cybersecurity attacks and unauthorized access. The Lead Incident Response Analyst drives the operationalization of all cybersecurity solutions as a cohesive incident response strategy to ensure appropriate ROI is achieved. Drives implementation, manage, and monitor technical and administrative controls to protect the confidentiality, integrity, and availability of the organization’s information assets.

The Lead Incident Response Analyst develops and leads process and automation requirements for our Incident Response functions as well as leading active investigations and incidents. This position will also be responsible for driving post incident review to ensure risks identified during an indent are properly identified and mitigated. Partners with IT and Cybersecurity architects and engineers, working groups, project teams and application owners to support business and regulatory objectives.

Responsibilities

  • Troubleshoot and resolve security process and system problems.
  • Provide expert analysis and investigative support for large scale and complex security incidents.
  • Lead and mentor new team members on current processes, fostering a collaborative and high performance culture.
  • Lead the development and operationalization of new monitoring use cases in our SIEM platform.
  • Drives the coordination and completion of operations documentation and partners heavily with engineering functions to deliver process improvements.
  • Follow defined processes to deliver quality services in accordance with predefined SLAs.
  • Understand and follow documentation for information security solutions including design documents, flow diagrams, RACI matrices, and inventories to ensure proper operation and monitoring of security technology.
  • Collaborate across Cybersecurity and IT organizations to obtain, share, and acquire knowledge.
  • Develops program specific metrics and measurements.
  • Navigates the complex information security discipline to help grow the functional area’s service offering.
  • Develops and tunes new use cases for monitoring and/or automation.
  • Enables new integrations across cybersecurity solutions to mature our security posture.

Job Requirements

Required Qualifications

  • Bachelor's degree in computer science, cybersecurity, programming, database administration, or a related field
  • Possession or progress towards certifications such as CISSP, CISM, ISC2, ISACA, SANS GIAC, CompTIA, ITIL.
  • Minimum of seven (7) years of experience in systems administration and security aspects of information systems, computer networking, telecommunications, systems development and management.
  • Strong knowledge of the operation of network devices, security appliances and security technologies as well as Linux, Windows and Mac OS operating systems and ability to perform forensic analysis across those platforms and OS.
  • In-depth understanding of cybersecurity threats and countermeasures.
  • Experience leading troubleshooting bridges with other stakeholders.
  • Experience writing technical processes and automation documentation.
  • Experience leading incident response calls with technical and executive stakeholders.
  • In depth knowledge of cybersecurity platforms across multiple cybersecurity services (examples: Endpoint, Network, Automation, Application Security, IAM, Cloud Engineering, SIEM, CASB, Zero Trust solutions).
  • Strong verbal and written communication skills with attention to detail for high quality work products.

Preferred Qualifications

  • Experience with workload automation, scripting and process efficiency preferred.

Additional commentary

Base salary range:

$95,800 - $150,590 USD/annually, commensurate with experience.

#LI-NP1

Benefits, Rewards & Wellness

  • Excellent Health, Dental & Vision Insurance
  • Retirement 401(k) Savings Plan
  • Fitness membership discounts
  • Generous paid time off policy including paid parental leave

Zayo provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, provincial or local laws.

This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Summary and company overview

Company Description

Zayo provides mission-critical bandwidth to the world’s most impactful companies, fueling the innovations that are transforming our society. Zayo’s 141,000-mile network in North America and Europe includes extensive metro connectivity to thousands of buildings and data centers. Zayo’s communications infrastructure solutions include dark fiber, private data networks, wavelengths, Ethernet, and dedicated Internet access. Zayo serves wireless and wireline carriers, media, tech, content, finance, healthcare and other large enterprises.

Zayo is seeking a Lead Incident Response Analyst to protect Zayo computer networks from cybersecurity attacks and unauthorized access. The Lead Incident Response Analyst drives the operationalization of all cybersecurity solutions as a cohesive incident response strategy to ensure appropriate ROI is achieved. Drives implementation, manage, and monitor technical and administrative controls to protect the confidentiality, integrity, and availability of the organization’s information assets.

The Lead Incident Response Analyst develops and leads process and automation requirements for our Incident Response functions as well as leading active investigations and incidents. This position will also be responsible for driving post incident review to ensure risks identified during an indent are properly identified and mitigated. Partners with IT and Cybersecurity architects and engineers, working groups, project teams and application owners to support business and regulatory objectives.

Apply now