Job added in hotlist
Applied job
Contract job
90-day-old-job
part-time-job
Recruiter job
Employer job
Expanded search
Apply online not available
View more jobs in Montpelier, VT
View more jobs in Vermont

Job Details

Senior Incident Response Engineerremote virtual home office

Company name
Humana Inc.

Location
Montpelier, VT, United States

Employment Type
Full-Time

Industry
Work At Home, It, Engineering

Posted on
Feb 17, 2022

Apply for this job






Profile

Job Information

Humana

Senior Incident Response Engineer(remote virtual home office)

in

Montpelier

Vermont

Description

The Senior Incident Response Engineer will be part of a dynamic, growing team, hunting for and responding to cyber incidents stemming from internal and external threat actors. The Senior Incident Response Engineer shall provide Tier 3 services, which is coordination, execution, and implementation of all actions required for the containment, eradication, and recovery measures for cyber incidents.

Responsibilities

Responsibilities

The Senior Incident Response Engineer will be part of Humana's Cyber Incident Response team (CIR). CIR is the enterprise team responsible for the detection and response to the most sophisticated cyber threats and attacks. This role will leverage a variety of tools and resources to proactively detect, investigate, and mitigate emerging and persistent threats impacting Humana networks, systems, and applications.

Key Responsibilities:

Participate in security events and incidents, with a focus on incident response and forensics in accordance with our incident response plan.

Perform detection, analysis, and containment of an incident in both on premises and cloud.

Determine and identify severity and impact and assign appropriate priorities to all events and incidents

As a member of the core incident response team, coordinates with Privacy, Compliance Investigations, Corporate Security, and others as warranted

Utilize Humana acquired technologies to conduct large-scale investigations and examine host and network-based sources of evidence.

Analyze message headers and identify actionable indicators for remediation.

Analyze logs from SIEMs and other sources and be able to identify unauthorized activity.

Perform traffic and host analysis during an incident investigation.

Use security tools including IDS, IPS, firewalls, proxies, Web Application Firewall (WAF), etc., to triage events that may lead to incidents.

Receive on-call escalations from 24*7 security operations, providing assistance and resolution as needed.

Collaborate with forensic analysts and other analysts, law enforcement officers, and legal experts to recommend methods and procedures for recovery, preservation, and presentation of computer evidence.

Proficiency analyzing high volumes of logs, network data (e.g. NetFlow, Full Packet Capture), and other event/incident artifacts using Splunk or Sentinel in support of incident investigations.

Ability to act as the incident quarterback and/or lead investigator.

Assist with post-incident activities

Recommend and document specific counter-measures and mitigating controls.

Develop comprehensive and accurate reports and presentations for both technical and executive audiences

Improve Humana's business processes and incident response methodologies.

Regularly interact with leadership and customers

Required Qualifications

Bachelor degree or higher, technical discipline preferred, or relevant experience

Minimum 5 years working experience in IT Security, preferably with exposure to security analysis, incident response and threat intelligence analysis.

Strong sense of ethics & values, ability to handle confidential situations with discretion

Strong understanding of the cyber security capabilities and threat landscape

Strong understanding of network and computer forensics

Strong understanding of network protocols, design and operations

Ability to effectively communicate, orally and in writing, event details and technical analysis to technical audiences and business stakeholders

Vulnerability and threat analysis experience

Working knowledge of security principles, techniques and technologies

Strong analytical and problem solving skills

Ability to multi-task and prioritize workload

Willingness to learn

Preferred Qualifications

Master's Degree in a Technical Field

CISSP, GCFA, GNFA, GCIA, GCIH, OSCP and other relevant information security certifications

Big data / Analytics experience

Understanding of malware analysis and reverse engineering

Understanding of artificial intelligence algorithms and application

Experience with various security monitoring and endpoint security tools

Experience with a scripting language such as Powershell, Perl, Ruby, Python, and/or Bash

Technical expertise in at least three of the following areas:

Windows disk and memory forensics

Cloud Operations and Engineering

Network Security Monitoring (NSM), network traffic analysis, and log analysis

Unix or Linux disk and memory forensics

Static and dynamic malware analysis

NIST Kill Chain

MITRE ATT&CK

Applied knowledge in at least one scripting or development language (such as Python)

Understanding of enterprise security controls in Active Directory / Windows environments

Prior training and public speaking experience

Ability to exercise emotional intelligence and situational awareness.

Strong interpersonal communication skills.

Willingness to travel up to 10%

Additional Information

For this position, associates are required to be fully COVID vaccinated (preferred) or undergo weekly COVID testing and wear a face covering while at work. The weekly testing will need to be done through an approved Humana vendor, and unvaccinated associates should follow all social distancing and masking protocols if they are required to come into a Humana facility or work outside of their home. We are a healthcare company committed to putting health and safety first for our members, patients, associates, and the communities we serve.

If progressed to offer, you will be required to:

Provide proof of full vaccination or commit to testing protocols

*OR  *

Provide proof of applicable exemption including any required supporting documentation

​​Medical, religious, state and remote-only work exemptions are available.

Scheduled Weekly Hours

40

Company info

Humana Inc.
Website : http://www.humana.com

Similar Jobs:
Manager, Go-To-Market Engineering (REMOTE)
Location : Montpelier, VT
Manager, Go-To-Market Engineering (REMOTE) Date: Apr 15, 2022 Location: Remote, US Company: Under Armour Under Armour has one mission: to make you better. We have a commitment to innovation that lies at the heart of everything...
Description Exciting work happening at CenterWell Pharmacy Technology Group. The Lead Software Engineer codes software applications based on business requirements. The Lead Software Engineer works on problems of diverse scope and...
React JS - Lead Software Engineer
Location : Montpelier, VT
Description The Lead Software Engineer codes software applications based on business requirements. The Lead Software Engineer works on problems of diverse scope and complexity ranging from moderate to substantial. Responsibiliti...
What I liked about the service is that it had such a comprehensive collection of jobs! I was using a number of sites previously and this took up so much time, but in joining EmploymentCrossing, I was able to stop going from site to site and was able to find everything I needed on EmploymentCrossing.
John Elstner - Baltimore, MD
  • All we do is research jobs.
  • Our team of researchers, programmers, and analysts find you jobs from over 1,000 career pages and other sources
  • Our members get more interviews and jobs than people who use "public job boards"
Shoot for the moon. Even if you miss it, you will land among the stars.
InformationTechnologyCrossing - #1 Job Aggregation and Private Job-Opening Research Service — The Most Quality Jobs Anywhere
InformationTechnologyCrossing is the first job consolidation service in the employment industry to seek to include every job that exists in the world.
Copyright © 2024 InformationTechnologyCrossing - All rights reserved. 168 192