Cybersecurity Incident Response Analyst (Remote)
United States (U.S.)
ID.me
ID.me Wallet simplifies how individuals discover and access benefits and services through a single login and verified identity.Company Overview
ID.me simplifies how people securely prove and share their identity online. The company empowers people to control their data through a portable and trusted login, which means they don’t need to create a new password when visiting sites that have the ID.me button.
The COVID-19 pandemic accelerated digital migration for many critical services. Those services require a trusted identity to safeguard against fraud and help ensure people are who they claim to be. With ID.me, login and identity credentials move with people, which can reduce the time and frustration of having to verify at multiple sites and set up multiple passwords.
ID.me is a credential service provider compliant with federal standards for digital identity verification.
In addition to helping people control their credentials and data, the company’s “No Identity Left Behind” initiative strives to expand access and inclusion for all people. The company offers multiple pathways to verification – online self-serve, live video chat agents, and in person. ID.me is passionate about building a robust identity network that does not compromise access for traditionally underserved groups.
Role Overview
ID.me is looking for a Cybersecurity Incident Response Analyst to add to our rapidly growing security team. If you love innovation, here's your chance to make a career of it by advancing the digital identity ecosystem. We are seeking a talented cybersecurity professional to execute processes that enable the organization to analyze and respond to computer security issues and cyber threats. This role is responsible for owning one or more functions related to incident response, threat hunting, analysis, and investigations. The Cybersecurity Incident Response Analyst maintains a high attention to detail, is very flexible, and has proficient technical aptitude.
Responsibilities
- Participate in incident response to include host and network-based forensics in support of containment, eradication, recovery and lessons learned.
- Detect, respond, and report on cyber threats/incidents that may impact the environment using security tools such as a SIEM, IDS/IPS, EDR, firewalls, and more
- Proactively search for Indicators of Compromise (IOC) and Advanced Cyber Threat tactics, techniques, and procedures (TTP)
- Participate in projects related to security monitoring and incident response
- Assist with developing threat detection signatures, analytics, and correlation rules
- Must able to work standard EST business hours and available for on-call rotation
Ideal Qualifications
The qualifications below are ideal, but not all are required. We encourage candidates to apply if they satisfy some, but not all of the qualifications.
- 3+ years of experience in information security
- 2+ years of experience demonstrated experience in handling security incidents
- 2+ years of experience in security monitoring and incident response
- 2+ years of experience with threat detection and/or threat hunting
- 1-3+ years experience in leveraging threat intelligence - adversary tactics & techniques
- Experience with Splunk or a related SIEM (Splunk preferred)
- Experience with cloud technologies such as AWS, GCP, and/or Azure
- Experience with Standard Operating Procedures for detecting, classifying, and reporting incidents under the supervision of Tier 2 and Tier 3 staff.
- Knowledge of email security, network monitoring, and Data Loss Protection.
- Bonus: Familiarity with investigations and/or forensics in a MacOS environment
- Bonus: Industry security certifications, such as GCIA/GCIH/GCFA, Security+, or related
Ideal candidate will thrive in the following culture:
- Must have an obsession for security
- Ability to thrive when there are changing priorities and shifting of gears
- Strong oral and written communication skills
- Must be a team player with a strong, self-managing work ethic
- Must be a self-starter with a passion for learning and continuous improvement
Note that candidates must be located in the continental U.S.
ID.me Covid Vaccination Requirement
All current and future employees are required to receive their COVID-19 vaccinations, unless a reasonable accommodation is approved. Employees not in compliance with this policy will be placed on leave and will be terminated if no valid reason for not getting the COVID-19 vaccine is provided.
Purpose: In accordance with ID.me's duty to provide and maintain a workplace that is free of known hazards, we are adopting this policy to safeguard the health of our employees and their families; our customers and visitors; and the community at large from COVID-19 that may be reduced by vaccinations. This policy will comply with all applicable laws and is based on guidance from the Centers for Disease Control and Prevention and local health authorities, as applicable.
Reasonable Accommodation: Current and future employees in need of an exemption from this policy due to a medical reason, or because of a sincerely held religious belief must submit a completed Request for Accommodation form to the human resources department to begin the interactive accommodation process as soon as possible after vaccination deadlines have been announced (September 13th) and an offer of employment has been made. Accommodations will be granted where they do not cause ID.me undue hardship or pose a direct threat to the health and safety of others.
Vision: To be the world's leading digital identity network empowering people to control their own information and to prove their credentials across all channels: online, call center, and in-person.
Mission: To make the world a more trusted place by delivering the highest level of security with the least amount of friction at the lowest possible cost.
People: We have an audacious mission. We aim to fix the identity layer of the internet. Billions of people will live better lives with more trust and convenience thanks to ID.me. We are like Special Forces. We take on the most difficult challenges with amazing teammates.
ID.me Core Values: *Don't be a jerk. *Always compete. *Ask questions like a 5-year old. *Inspire people with your passion. *Make something better every day. *Treat each customer like your favorite family member. *Own your mistakes so you can learn from them. *Details are everything. *Communicate like a scientist. *Be truthful (even when it's hard). *Reflect ID.me's values in your actions. *Act like an owner.
ID.me Career Site & Culture Deck: https://www.id.me/careers
ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.
Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.
ID.me participates in E-Verify.
#LI-JS1 #LI-REMOTE
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics AWS Azure CCPA Cloud Compliance EDR Firewalls Forensics GCFA GCIA GCIH GCP IDS Incident response IPS MacOS Monitoring Privacy SIEM Splunk Threat detection Threat intelligence
Perks/benefits: Career development Flex hours Health care Medical leave Salary bonus
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Information Security Specialist jobs
- Open Manager Pentest H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Principal Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Senior Information Security Analyst jobs
- Open Cybersecurity Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open IT Security Analyst jobs
- Open Chief Information Security Officer jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Security Specialist jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open Senior Security Architect jobs
- Open Security Operations Analyst jobs
- Open Clearance-related jobs
- Open ISO 27001-related jobs
- Open Windows-related jobs
- Open Application security-related jobs
- Open Network security-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open SaaS-related jobs
- Open Analytics-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Security assessment-related jobs
- Open Java-related jobs
- Open IDS-related jobs
- Open Malware-related jobs
- Open DevOps-related jobs
- Open Security Clearance-related jobs
- Open EDR-related jobs
- Open CEH-related jobs
- Open Kubernetes-related jobs
- Open IPS-related jobs