Security Incident Response Engineer
UK-Oxford (Langford Lane)
Elsevier
Elsevier ist ein globales Unternehmen für Informationsanalysen, das Institutionen und Fachleute dabei unterstützt, wissenschaftliche und medizinische Fortschritte zu erreichen und die Leistung zu verbessern.Role - Security Incident Response Engineer
Are you a champion for continuous improvement?
Are you a problem solver?
About our Team
We manage the global information security for the entire Elsevier company. We are a provider of science, technical and medical information, products, and services that help progress science and advance healthcare.
About the Role
Helping Information Security department goals and objectives through ownership of escalations and evaluation of security alerts. Identifying of new threats, detection methods, and response processes.
Responsibilities
Incident Triage: Assist in the initial assessment and classification of security incidents to determine their potential impact and priority.
Incident Investigation: Participate in the investigation of security incidents by collecting and analyzing relevant data, logs, and evidence. Help in identifying the root cause of incidents.
Supporting Automation: Assist in the implementation of automation and scripting for routine incident response tasks.
Threat Intelligence: Stay updated on the latest cybersecurity threats and trends. Work closely with our Threat Intelligence lead to integrate processes into incident response activities to improve detection and response capabilities.
Documentation: Maintain detailed records of incident response activities, actions taken, and findings. Ensure that all incident-related information is properly documented.
Communication: Support in communicating with relevant stakeholders, including team members, management, and external parties, under the guidance of senior team members.
Remediation: Help in developing and implementing remediation plans to address weaknesses and vulnerabilities that contributed to the incident.
Collaboration: Work closely with cross-functional teams, including IT, legal, public relations, and law enforcement, as needed during incident response.
Compliance and Reporting: Assist in ensuring that incident response activities comply with applicable regulations and standards. Support the preparation of incident reports and documentation for regulatory compliance.
Training and Skill Development: Continuously enhance skills and knowledge related to incident response and cybersecurity. Participate in training and knowledge-sharing activities within the team.
Awareness and Alerting: Stay informed about emerging cybersecurity threats and trends. Help develop and maintain alerting mechanisms for potential incidents.
Requirements
Hands on experience responding to operational information security alerts including EDR, Cloud Service Providers, and Phishing emails
Experience with Python, Windows & Linux shell scripting, and Regex
Experience conducting forensic and incident response investigations independently
Have knowledge of incident response processes including what actions need to be taken during different phases of the incident response lifecycle
Experience with administration of various information security tools, ie) log extraction in SIEM, configuration & policy updates in EDR, and detection rule deployment
Experience with monitoring and continuously assessing systems for security threats, including promotion of security policies and baselines
Have ability to recommend, propose, and develop security improvement plans and remediation programs
Work in a way that works for you
We promote a healthy work/life balance across the organisation. With an average length of service of 9 years, we are confident that we offer an appealing working prospect for our people. With numerous wellbeing initiatives, shared parental leave, study assistance and sabbaticals, we will help you meet your immediate responsibilities and your long-term goals.
Working flexible hours - flexing the times when you work in the day to help you fit everything in and work when you are the most productive
Working with us
We are an equal opportunity employer with a commitment to help you succeed. Here, you will find an inclusive, agile, collaborative, innovative and fun environment, where everyone has a part to play. Regardless of the team you join, we promote a diverse environment with co-workers who are passionate about what they do, and how they do it.
Working for you
At Elsevier, we know that your wellbeing and happiness are key to a long and successful career. These are some of the benefits we are delighted to offer:
Generous holiday allowance with the option to buy additional days
Health screening, eye care vouchers and private medical benefits
Wellbeing programs
Life assurance
Access to a competitive contributory pension scheme
Long service awards
Save As You Earn share option scheme
Travel Season ticket loan
Maternity, paternity and shared parental leave
Access to emergency care for both the elderly and children
RECARES days, giving you time to support the charities and causes that matter to you
Access to employee resource groups with dedicated time to volunteer
Access to extensive learning and development resources
Access to employee discounts via Perks at Work
About Us
A global leader in information and analytics, we help researchers and healthcare professionals advance science and improve health outcomes for the benefit of society. Building on our publishing heritage, we combine quality information and vast data sets with analytics to support visionary science and research, health education and interactive learning, as well as exceptional healthcare and clinical practice. At Elsevier, your work contributes to the world’s grand challenges and a more sustainable future. We harness innovative technologies to support science and healthcare to partner for a better world.
Join Us
Purposeful Work
When you work with us, your work matters. You are part of an organization that nurtures your curiosity to stimulate innovation for the communities that we serve.
Growing Every Day
Like the communities we serve, you are on a constant path of discovery to shape your career and personal development.
Colleagues Who Care
You will be part of the Elsevier family. We will support your well-being and provide the flexibility you need to thrive at work and home.
Together, we create possibilities.
Join us
-----------------------------------------------------------------------
Elsevier is an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law. We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form: https://forms.office.com/r/eVgFxjLmAK .
Please read our Candidate Privacy Policy.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Analytics Automation Cloud Compliance EDR Incident response Linux Monitoring Privacy Python Scripting SIEM Threat intelligence Vulnerabilities Windows
Perks/benefits: Career development Flex hours Health care Medical leave Parental leave Team events
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Specialist jobs
- Open IT Security Analyst jobs
- Open Senior Information Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Senior Information Security Engineer jobs
- Open Information Security Officer jobs
- Open Security Operations Engineer jobs
- Open Analyste CERT / Incident Responder junior (H/F) jobs
- Open Ingénieur DevSecops H/F jobs
- Open Staff Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Security Architect jobs
- Open Chief Information Security Officer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Analyste CERT / Incident Responder senior (H/F) jobs
- Open o365 Security Architect jobs
- Open Senior Security Analyst jobs
- Open Principal Security Engineer jobs
- Open Senior Cyber Security Engineer jobs
- Open Staff Product Security Engineer jobs
- Open Electronic Warfare Advanced Tactical Trainer jobs
- Open Product Security Engineer jobs
- Open Security Researcher jobs
- Open Cyber Security Architect jobs
- Open GCP-related jobs
- Open SOC-related jobs
- Open Risk assessment-related jobs
- Open Network security-related jobs
- Open Governance-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open CISM-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open Threat intelligence-related jobs
- Open IAM-related jobs
- Open Malware-related jobs
- Open Java-related jobs
- Open Security Clearance-related jobs
- Open Vulnerability management-related jobs
- Open CISA-related jobs
- Open DevOps-related jobs
- Open Kubernetes-related jobs
- Open Security assessment-related jobs
- Open Forensics-related jobs
- Open APIs-related jobs
- Open SQL-related jobs
- Open CI/CD-related jobs
- Open EDR-related jobs