Beschrijving & Vereisten
Position Summary:
The responsibilities of an Incident Response Analyst include: analyzing and triaging security incidents in our security tools, liaising with the Global Services Help Desk to resolve end user tickets, working with the business owners to resolve incidents, and report generation and root cause analysis. Analysts collaborate with Infor teams globally to drive activities focused on the continuous maturity of Infor’s SOC team and Incident Response program.
As a Incident Response Analyst, you’ll join Infor’s Information Security Office Incident Response team to respond to cybersecurity incidents, develop playbooks / runbooks working with global business to ensure timely responses to all cybersecurity incidents.
This position is for the APAC shift coverage with a on call rotation for off hours, weekends, and holidays.
What You Will Need:
Basic Qualifications:
• 3 years of experience as a security analyst in a Incident Response role
• Practical experience using vulnerability management tools, SOAR, EDR/XDR, SIEM
• Practical knowledge of network security, threats, and vulnerabilities
• Practical experience with and understanding of Windows and Linux operating systems and event logs
• Fundamental knowledge of SaaS/Cloud architecture (AWS)
• Practical experience with incident detection and response processes, security best practices
• Basic understanding of OSINT processes
• Sense of urgency
• Willingness to learn
• Ability to work overnight shift with weekend and holiday rotation
What Will Put You Ahead?
Preferred Qualifications:
- CompTIA CySA
- Security
- GIAC GISF, EC-Council CSA
- AWS Cloud Practioner
A Day in The Life Typically Includes:
• Analyzing EDR detections and taking appropriate action
• Coordinating with Infor Global Help Desk and end users to resolve tickets
• Researching security incidents an getting to root cause
• Gathering and reporting on timeline and severity of incidents.
• Partnering with the SOC team during security incidents for incident response, investigation, and recovery of systems.